<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:dc="https://purl.org/dc/elements/1.1/"
     xmlns:dcterms="http://purl.org/dc/terms/"
     xmlns:media="http://search.yahoo.com/mrss/"
     xmlns:atom="http://www.w3.org/2005/Atom"
     xmlns:cf="https://www.futureplc.com/rss/content-flags"
>
    <channel>
                    <atom:link href="https://www.itpro.com/feeds/articletype/news" rel="self" type="application/rss+xml" />
                            <title><![CDATA[ Latest from ITPro in News ]]></title>
                <link>https://www.itpro.com/news</link>
        <description><![CDATA[ All the latest news content from the ITPro team ]]></description>
                                    <lastBuildDate>Wed, 26 Aug 2026 15:30:25 +0000</lastBuildDate>
                            <language>en</language>
                                <item>
                                                            <title><![CDATA[ US claims Chinese hackers breached Justice Department, Federal Reserve, NASA in lengthy threat campaign ]]></title>
                                                                                                <dc:content><![CDATA[ <p>US government officials have revealed that Chinese state-sponsored hackers breached a host of federal institutions as part of a recent espionage campaign. </p><p>In a <a href="https://www.justice.gov/opa/pr/justice-department-and-fbi-seize-platforms-operated-and-used-china-state-sponsored-hackers" target="_blank"><u>statement</u></a>, the US Justice Department and FBI confirmed it has successfully seized domains used to support two hacking platforms known as ‘QScan’ and ‘QTRouter’. </p><p>These platforms were used by a state-sponsored group known as ‘QTFY’ to target critical infrastructure and “other sensitive networks”. </p><p>According to the FBI, the group successfully breached NASA, the Federal Reserve, Department of Energy, the US Senate, Department of Justice, and other agencies.</p><p>The scope and nature of the breaches has not been revealed. </p><p>“Federal law enforcement investigated and disabled the PRC’s malicious software, the latest in a series of technical operations to dismantle indiscriminate hacking activities sponsored by the People’s Republic of China,” said Attorney General Todd Blanche.</p><p>“State-sponsored malicious hackers preying on America’s critical infrastructure will be stopped and prosecuted. We are here to ensure security for the American people and will use every tool we have to keep that promise.” </p><h2 id="state-backed-operators">State-backed operators</h2><p>The QTFY group provides hacker-for-hire services to paying customers, as well as the People’s Republic of China’s (PRC) Ministry of State Security and the People’s Liberation Army (PLA), according to court documents. </p><p>QScan and QTRouter are frequently-used platforms in QTFY operations, according to the Justice Department. The first of these is used to scan for and automatically infect vulnerable <a href="https://www.itpro.com/cloud-computing/28037/what-is-iot">IoT </a>devices, which are then added to the broader QTRouter network of controlled devices. </p><p>“QTRouter consists of these compromised IoT devices, as well as commercial proxy service devices and leased virtual private servers,” the Justice Department noted. </p><p>QTRouter serves as an "obfuscation network" for the group, meaning that it enables QTFY and other "malicious cyber actors" to conceal their location and activities. </p><p>Officials noted that the seized domains were hard-coded into both QScan and QTRouter <a href="https://www.itpro.com/malware/28076/what-is-malware">malware</a>, which were then used in follow-up attacks against US government agencies. </p><h2 id="disrupting-cyber-threats">Disrupting cyber threats</h2><p>The takedown announced by the Justice Department marks the latest in a string of operations aimed at mitigating Chinese state-backed threats. </p><p>In 2025, for example, the FBI helped remove the PlugX surveillance malware from more than 4,000 computers across the US following a campaign conducted by the Mustang Panda group. </p><p>That operation came just months after a similar sting that crippled a botnet hosted by the Flax Typhoon hacker group. </p><p>“These tools were used by PRC cyber actors to hide the origin of their attacks,” said FBI Director Kash Patel. </p><p>“Thanks to the work of FBI San Diego, FBI Cyber Division, and DOJ partners, we seized adversary infrastructure and shut these platforms down.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/cyber-attacks/us-claims-chinese-hackers-breached-justice-department-federal-reserve-nasa-in-lengthy-threat-campaign</link>
                                                                            <description>
                            <![CDATA[ The state-backed QTFY group has been identified as the culprit behind the campaign ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">WTgb5mcEuGGKhaE8joQzch</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/B2K9HhHgVDEXtjMsMYMowg-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 26 Aug 2026 15:30:25 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/B2K9HhHgVDEXtjMsMYMowg-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[The flag of the People&#039;s Republic of China (PRC) and United States pictured side-by-side.]]></media:description>                                                            <media:text><![CDATA[The flag of the People&#039;s Republic of China (PRC) and United States pictured side-by-side.]]></media:text>
                                <media:title type="plain"><![CDATA[The flag of the People&#039;s Republic of China (PRC) and United States pictured side-by-side.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/B2K9HhHgVDEXtjMsMYMowg-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>US government officials have revealed that Chinese state-sponsored hackers breached a host of federal institutions as part of a recent espionage campaign. </p><p>In a <a href="https://www.justice.gov/opa/pr/justice-department-and-fbi-seize-platforms-operated-and-used-china-state-sponsored-hackers" target="_blank"><u>statement</u></a>, the US Justice Department and FBI confirmed it has successfully seized domains used to support two hacking platforms known as ‘QScan’ and ‘QTRouter’. </p><p>These platforms were used by a state-sponsored group known as ‘QTFY’ to target critical infrastructure and “other sensitive networks”. </p><p>According to the FBI, the group successfully breached NASA, the Federal Reserve, Department of Energy, the US Senate, Department of Justice, and other agencies.</p><p>The scope and nature of the breaches has not been revealed. </p><p>“Federal law enforcement investigated and disabled the PRC’s malicious software, the latest in a series of technical operations to dismantle indiscriminate hacking activities sponsored by the People’s Republic of China,” said Attorney General Todd Blanche.</p><p>“State-sponsored malicious hackers preying on America’s critical infrastructure will be stopped and prosecuted. We are here to ensure security for the American people and will use every tool we have to keep that promise.” </p><h2 id="state-backed-operators">State-backed operators</h2><p>The QTFY group provides hacker-for-hire services to paying customers, as well as the People’s Republic of China’s (PRC) Ministry of State Security and the People’s Liberation Army (PLA), according to court documents. </p><p>QScan and QTRouter are frequently-used platforms in QTFY operations, according to the Justice Department. The first of these is used to scan for and automatically infect vulnerable <a href="https://www.itpro.com/cloud-computing/28037/what-is-iot">IoT </a>devices, which are then added to the broader QTRouter network of controlled devices. </p><p>“QTRouter consists of these compromised IoT devices, as well as commercial proxy service devices and leased virtual private servers,” the Justice Department noted. </p><p>QTRouter serves as an "obfuscation network" for the group, meaning that it enables QTFY and other "malicious cyber actors" to conceal their location and activities. </p><p>Officials noted that the seized domains were hard-coded into both QScan and QTRouter <a href="https://www.itpro.com/malware/28076/what-is-malware">malware</a>, which were then used in follow-up attacks against US government agencies. </p><h2 id="disrupting-cyber-threats">Disrupting cyber threats</h2><p>The takedown announced by the Justice Department marks the latest in a string of operations aimed at mitigating Chinese state-backed threats. </p><p>In 2025, for example, the FBI helped remove the PlugX surveillance malware from more than 4,000 computers across the US following a campaign conducted by the Mustang Panda group. </p><p>That operation came just months after a similar sting that crippled a botnet hosted by the Flax Typhoon hacker group. </p><p>“These tools were used by PRC cyber actors to hide the origin of their attacks,” said FBI Director Kash Patel. </p><p>“Thanks to the work of FBI San Diego, FBI Cyber Division, and DOJ partners, we seized adversary infrastructure and shut these platforms down.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Google targets AI cost efficiency with new FinOps features for Gemini Enterprise ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Google has unveiled a series of new FinOps features for Gemini Enterprise as the tech giant aims to help developers manage surging AI costs. </p><p>Users of the AI service will be offered “expanded billing flexibility” and new <a href="https://www.itpro.com/cloud/cloud-management/short-sighted-cost-management-strategies-are-to-blame-for-spiraling-cloud-computing-bills">cost management</a> tools for agents, the company revealed. </p><p>This includes flexible payment options that allow “predictable per-user seat subscriptions” on a pay-as-you-go basis. Google said this will allow users to run agent workloads without hitting token quota limits mid-task. </p><p>A flexible savings plan option will also allow enterprises to set variable monthly spend limits to accommodate for growing use rates. This, the company claimed, will help reduce token consumption rates and overall costs.</p><p>“If your organization has steady or growing AI workloads, Gemini Enterprise Flexible Savings Plans offer a simple, spend-based commitment model across Gemini Enterprise usage,” the company said in an announcement. </p><p>“FSPs are designed to lower token costs while keeping budgets flexible.”</p><p>Elsewhere, new spending guardrails will allow teams to set “hard monthly caps” on AI spend on a project-by-project basis. These features allow users to estimate agent costs and prevent sudden budget spikes, the company said. </p><h2 id="tackling-ai-costs">Tackling AI costs</h2><p>The move by Google comes amidst growing concerns over rising AI costs in recent months. </p><p>As <a href="https://www.itpro.com/cloud/cloud-computing/agentic-ai-is-spurring-a-fundamental-shift-in-cloud-infrastructure-consumption"><u><em>ITPro </em></u><u>reported earlier this month</u></a>, Gartner projects surging agentic AI adoption rates to have a significant impact on enterprise infrastructure, with inference spending in particular expected to increase dramatically. </p><p>A key factor behind these rising costs lies in how agents operate compared to more traditional chatbot-based interactions. Agents essentially operate in loops, rather than through a single request and response-type approach with chatbots – and that requires far more processing power. </p><p><a href="https://signal65.com/wp-content/uploads/2026/05/Signal65-Insights_The-Economics-of-Agentic-AI.pdf" target="_blank"><u>Research from Signal65</u></a>, for example, found that agentic AI workloads consume anywhere between four-to-fifteen times more tokens compared to chatbots. </p><p>In July, Patrick Brogan, director of the FinOps advisory team at DevOps firm Harness told <em>ITPro </em>that <a href="https://www.itpro.com/technology/artificial-intelligence/ai-cost-management-has-the-same-problems-that-cloud-had-enterprises-are-still-facing-huge-ai-bills-thanks-to-tokenmaxxing-that-means-finops-practices-are-more-important-than-ever"><u>rising AI costs mean FinOps practices are more important than ever</u></a> and could help keep a lid on bills. </p><h2 id="developer-spending-features">Developer spending features</h2><p>Google has also sharpened its focus on developer spending rates with the integration of its Antigravity platform within Gemini Enterprise. </p><p>This will allow developers to leverage established quotas within an enterprise subscription, creating closer alignment in terms of budgeting and consumption rates. </p><p>“To be more efficient with agentic coding costs, we are pooling developer tools quota included in each Gemini Enterprise subscription and making it available across the whole Google Cloud project so your teams can benefit from the capacity you’re already purchasing,” Google said in a statement. </p><p>Tighter budget and cost controls come at a crucial time for developers, with the use of agents in this domain accelerating rapidly over the last two years. Research from Gartner projects that <a href="https://www.itpro.com/software/development/surging-ai-costs-could-exceed-developer-salaries-by-2028-analysts-say-context-engineering-could-be-the-key-to-optimizing-token-consumption"><u>AI costs could exceed the average developer salary</u></a> by 2028, as ITPro reported in July. </p><p>Speaking to <em>ITPro </em>at the time, Gartner senior principal analyst Nitish Tyagi said a stronger focus on cost optimization and budget controls will be crucial to avoid overspending by AI-savvy developer teams. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/technology/artificial-intelligence/google-targets-ai-cost-efficiency-with-new-finops-features-for-gemini-enterprise</link>
                                                                            <description>
                            <![CDATA[ New cost control features and subscription options for Gemini Enterprise look to bring down spiralling AI costs ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">9Ht6gtEjuubXEC4765hMxe</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/oz7zpuTvLvVXVHPmTP5s26-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 26 Aug 2026 13:30:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/oz7zpuTvLvVXVHPmTP5s26-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Google Gemini logo and branding pictured on a smartphone, with bar graph visuals blurred in background.]]></media:description>                                                            <media:text><![CDATA[Google Gemini logo and branding pictured on a smartphone, with bar graph visuals blurred in background.]]></media:text>
                                <media:title type="plain"><![CDATA[Google Gemini logo and branding pictured on a smartphone, with bar graph visuals blurred in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/oz7zpuTvLvVXVHPmTP5s26-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Google has unveiled a series of new FinOps features for Gemini Enterprise as the tech giant aims to help developers manage surging AI costs. </p><p>Users of the AI service will be offered “expanded billing flexibility” and new <a href="https://www.itpro.com/cloud/cloud-management/short-sighted-cost-management-strategies-are-to-blame-for-spiraling-cloud-computing-bills">cost management</a> tools for agents, the company revealed. </p><p>This includes flexible payment options that allow “predictable per-user seat subscriptions” on a pay-as-you-go basis. Google said this will allow users to run agent workloads without hitting token quota limits mid-task. </p><p>A flexible savings plan option will also allow enterprises to set variable monthly spend limits to accommodate for growing use rates. This, the company claimed, will help reduce token consumption rates and overall costs.</p><p>“If your organization has steady or growing AI workloads, Gemini Enterprise Flexible Savings Plans offer a simple, spend-based commitment model across Gemini Enterprise usage,” the company said in an announcement. </p><p>“FSPs are designed to lower token costs while keeping budgets flexible.”</p><p>Elsewhere, new spending guardrails will allow teams to set “hard monthly caps” on AI spend on a project-by-project basis. These features allow users to estimate agent costs and prevent sudden budget spikes, the company said. </p><h2 id="tackling-ai-costs">Tackling AI costs</h2><p>The move by Google comes amidst growing concerns over rising AI costs in recent months. </p><p>As <a href="https://www.itpro.com/cloud/cloud-computing/agentic-ai-is-spurring-a-fundamental-shift-in-cloud-infrastructure-consumption"><u><em>ITPro </em></u><u>reported earlier this month</u></a>, Gartner projects surging agentic AI adoption rates to have a significant impact on enterprise infrastructure, with inference spending in particular expected to increase dramatically. </p><p>A key factor behind these rising costs lies in how agents operate compared to more traditional chatbot-based interactions. Agents essentially operate in loops, rather than through a single request and response-type approach with chatbots – and that requires far more processing power. </p><p><a href="https://signal65.com/wp-content/uploads/2026/05/Signal65-Insights_The-Economics-of-Agentic-AI.pdf" target="_blank"><u>Research from Signal65</u></a>, for example, found that agentic AI workloads consume anywhere between four-to-fifteen times more tokens compared to chatbots. </p><p>In July, Patrick Brogan, director of the FinOps advisory team at DevOps firm Harness told <em>ITPro </em>that <a href="https://www.itpro.com/technology/artificial-intelligence/ai-cost-management-has-the-same-problems-that-cloud-had-enterprises-are-still-facing-huge-ai-bills-thanks-to-tokenmaxxing-that-means-finops-practices-are-more-important-than-ever"><u>rising AI costs mean FinOps practices are more important than ever</u></a> and could help keep a lid on bills. </p><h2 id="developer-spending-features">Developer spending features</h2><p>Google has also sharpened its focus on developer spending rates with the integration of its Antigravity platform within Gemini Enterprise. </p><p>This will allow developers to leverage established quotas within an enterprise subscription, creating closer alignment in terms of budgeting and consumption rates. </p><p>“To be more efficient with agentic coding costs, we are pooling developer tools quota included in each Gemini Enterprise subscription and making it available across the whole Google Cloud project so your teams can benefit from the capacity you’re already purchasing,” Google said in a statement. </p><p>Tighter budget and cost controls come at a crucial time for developers, with the use of agents in this domain accelerating rapidly over the last two years. Research from Gartner projects that <a href="https://www.itpro.com/software/development/surging-ai-costs-could-exceed-developer-salaries-by-2028-analysts-say-context-engineering-could-be-the-key-to-optimizing-token-consumption"><u>AI costs could exceed the average developer salary</u></a> by 2028, as ITPro reported in July. </p><p>Speaking to <em>ITPro </em>at the time, Gartner senior principal analyst Nitish Tyagi said a stronger focus on cost optimization and budget controls will be crucial to avoid overspending by AI-savvy developer teams. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Hackers have breached hundreds of Zimbra servers, despite a patch having been available for weeks ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Hundreds of internet-facing Zimbra instances have been compromised through a vulnerability that was patched last month, researchers have warned. </p><p>The Zimbra Collaboration Suite (ZCS) hosts email, calendars, contacts, and administrative services. It has hundreds of millions of users, including thousands of businesses and hundreds of government agencies worldwide.</p><p>The security flaw, tracked as CVE-2026-73570 and rated high severity with a CVSS score of 8.9, allows unauthenticated attackers to execute malicious code remotely.</p><p>It works by exploiting a command injection weakness in the SNMP monitoring component when SNMP notifications are enabled, and affects Zimbra Collaboration's Simple Network Management Protocol (SNMP). </p><p>This is a monitoring functionality in deployments where the optional zimbra-snmp package is installed and SNMP notifications are enabled.</p><p>"This vulnerability could allow an unauthenticated attacker to send specially crafted SMTP requests, potentially resulting in the execution of arbitrary operating system commands as the Zimbra user when the optional zimbra-snmp package is installed and SNMP notifications are enabled," <a href="https://www.hkcert.org/security-bulletin/zimbra-multiple-vulnerabilities_20260824" target="_blank"><u>warned </u></a>the Hong Hong Computer Emergency Response Team (HKCert) this week. </p><p>Hackers can then establish persistence, access email accounts, harvest credentials, and move laterally to other systems. Synacor, the company behind the collaboration suite, was first made aware of the issue in June, issued a temporary mitigation, and fixed it with the release of ZCS version 10.1.20 on July 20.</p><h2 id="agencies-issue-zimbra-flaw-warnings">Agencies issue Zimbra flaw warnings</h2><p>The US <a href="https://www.itpro.com/security/what-is-cisa">Cybersecurity and Infrastructure Security Agency (CISA)</a> last week <a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog" target="_blank"><u>added</u></a> the flaw to its Known Exploited Vulnerabilities (KEV) list and ordered US federal civilian agencies to address it within three days.  </p><p>However, it appears that the vulnerability is still being actively exploited.</p><p>Non-profit security organization Shadowserver said it has <a href="https://dashboard.shadowserver.org/statistics/combined/tree/?date_range=1&source=http_vulnerable&source=http_vulnerable6&tag=possible-cve-2026-73570%2B&data_set=count&scale=log&auto_update=on" target="_blank"><u>spotted</u></a> at least 274 internet-exposed Zimbra instances that have been breached. </p><p>Meanwhile, at least 8,200 organizations worldwide are still using vulnerable versions, although this doesn't mean they're exploitable as the vulnerability may be in a non-default configuration.</p><p>Dray Agha, senior manager of Huntress’ EMEA security operations center, said the exploitation of the flaw highlights the importance of <a href="https://www.itpro.com/software/ios/apples-ios-update-cycle-overhaul-how-security-teams-should-react">rapid patching</a>. </p><p>"This widespread compromise of Zimbra servers is a textbook example of the enterprise patching gap. The patch for CVE-2026-73570 was released in July, yet weeks later, attackers are still easily finding hundreds of vulnerable instances to exploit," he said. </p><p>"When dealing with an unauthenticated, remote code execution flaw on an internet-facing email server, the window for remediation isn't measured in weeks or days, it’s honestly measured in hours. Organizations need to treat collaboration suites as highly critical perimeter infrastructure and patch them with zero delay."</p><p>It's not clear who is behind the attacks, but exploitation of Zimbra vulnerabilities has in the past been linked to Russian state-sponsored hackers, including APT28, APT29, and Winter Vivern. </p><p>These groups have targeted military and diplomatic intelligence, alongside opportunistic cybercriminals seeking financial gain. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/cyber-attacks/hackers-have-breached-hundreds-of-zimbra-servers-despite-a-patch-having-been-available-for-weeks</link>
                                                                            <description>
                            <![CDATA[ The flaw allows attackers to trigger cross-site scripting, sensitive information disclosure, security restriction bypass, and remote code execution ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">sRkCh47T7zx7J2wdFNm3eH</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/R9xjBCdRw6ruDKaYUtp4c4-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 26 Aug 2026 10:53:53 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/R9xjBCdRw6ruDKaYUtp4c4-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Cybersecurity alert concept image showing a red glowing warning symbol placed on top of a digital interface.]]></media:description>                                                            <media:text><![CDATA[Cybersecurity alert concept image showing a red glowing warning symbol placed on top of a digital interface.]]></media:text>
                                <media:title type="plain"><![CDATA[Cybersecurity alert concept image showing a red glowing warning symbol placed on top of a digital interface.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/R9xjBCdRw6ruDKaYUtp4c4-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Hundreds of internet-facing Zimbra instances have been compromised through a vulnerability that was patched last month, researchers have warned. </p><p>The Zimbra Collaboration Suite (ZCS) hosts email, calendars, contacts, and administrative services. It has hundreds of millions of users, including thousands of businesses and hundreds of government agencies worldwide.</p><p>The security flaw, tracked as CVE-2026-73570 and rated high severity with a CVSS score of 8.9, allows unauthenticated attackers to execute malicious code remotely.</p><p>It works by exploiting a command injection weakness in the SNMP monitoring component when SNMP notifications are enabled, and affects Zimbra Collaboration's Simple Network Management Protocol (SNMP). </p><p>This is a monitoring functionality in deployments where the optional zimbra-snmp package is installed and SNMP notifications are enabled.</p><p>"This vulnerability could allow an unauthenticated attacker to send specially crafted SMTP requests, potentially resulting in the execution of arbitrary operating system commands as the Zimbra user when the optional zimbra-snmp package is installed and SNMP notifications are enabled," <a href="https://www.hkcert.org/security-bulletin/zimbra-multiple-vulnerabilities_20260824" target="_blank"><u>warned </u></a>the Hong Hong Computer Emergency Response Team (HKCert) this week. </p><p>Hackers can then establish persistence, access email accounts, harvest credentials, and move laterally to other systems. Synacor, the company behind the collaboration suite, was first made aware of the issue in June, issued a temporary mitigation, and fixed it with the release of ZCS version 10.1.20 on July 20.</p><h2 id="agencies-issue-zimbra-flaw-warnings">Agencies issue Zimbra flaw warnings</h2><p>The US <a href="https://www.itpro.com/security/what-is-cisa">Cybersecurity and Infrastructure Security Agency (CISA)</a> last week <a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog" target="_blank"><u>added</u></a> the flaw to its Known Exploited Vulnerabilities (KEV) list and ordered US federal civilian agencies to address it within three days.  </p><p>However, it appears that the vulnerability is still being actively exploited.</p><p>Non-profit security organization Shadowserver said it has <a href="https://dashboard.shadowserver.org/statistics/combined/tree/?date_range=1&source=http_vulnerable&source=http_vulnerable6&tag=possible-cve-2026-73570%2B&data_set=count&scale=log&auto_update=on" target="_blank"><u>spotted</u></a> at least 274 internet-exposed Zimbra instances that have been breached. </p><p>Meanwhile, at least 8,200 organizations worldwide are still using vulnerable versions, although this doesn't mean they're exploitable as the vulnerability may be in a non-default configuration.</p><p>Dray Agha, senior manager of Huntress’ EMEA security operations center, said the exploitation of the flaw highlights the importance of <a href="https://www.itpro.com/software/ios/apples-ios-update-cycle-overhaul-how-security-teams-should-react">rapid patching</a>. </p><p>"This widespread compromise of Zimbra servers is a textbook example of the enterprise patching gap. The patch for CVE-2026-73570 was released in July, yet weeks later, attackers are still easily finding hundreds of vulnerable instances to exploit," he said. </p><p>"When dealing with an unauthenticated, remote code execution flaw on an internet-facing email server, the window for remediation isn't measured in weeks or days, it’s honestly measured in hours. Organizations need to treat collaboration suites as highly critical perimeter infrastructure and patch them with zero delay."</p><p>It's not clear who is behind the attacks, but exploitation of Zimbra vulnerabilities has in the past been linked to Russian state-sponsored hackers, including APT28, APT29, and Winter Vivern. </p><p>These groups have targeted military and diplomatic intelligence, alongside opportunistic cybercriminals seeking financial gain. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘A striking finding this year is the gap between individual gains and enterprise impact’: McKinsey says AI is finally paying off for enterprises – but rising costs and ‘constrained’ efficiency boosts are still a major hurdle ]]></title>
                                                                                                <dc:content><![CDATA[ <p>New research from McKinsey suggests enterprises are finally reporting benefits from AI, but cost-related concerns and “constrained” productivity gains still weigh heavy on the minds of IT leaders.</p><p>Figures from the consultancy’s <a href="https://www.mckinsey.com/capabilities/quantumblack/our-insights/the-state-of-ai" target="_blank"><u><em>State of AI in 2026</em></u></a> report show more than one-third (37%) of respondents recorded “some” earnings impact with the technology, although that marks the same share from last year’s report. </p><p>Meanwhile, “AI high performers” said AI is now having a “significant” impact on operational efficiency and earnings. </p><p>The report suggests that enterprise AI maturity is rising, with an increasing number of enterprises now successfully scaling the technology. Improvements in this regard are being reported across the board, McKinsey noted, with respondents scaling chatbots, coding agents, and more sophisticated AI agents. </p><p>The use of agentic AI has increased significantly, for example, with 40% of large enterprises scaling agents, up from 27% last year. Meanwhile, around two-in-ten are actively scaling software coding agents. </p><p>“Among <a href="https://www.itpro.com/technology/artificial-intelligence/amazing-ai-tools-to-try-today">AI tools</a>, chatbots are the most widely scaled, with 47 percent of respondents saying their organizations are scaling them across the enterprise,” the report states. </p><p>“About two-in-ten respondents report reaching the scaling phase across their organization with AI agents and a similar share report the same with software coding agents.”</p><h2 id="mismatched-ai-productivity">Mismatched AI productivity</h2><p>Workforce productivity gains rank among the most notable improvements for enterprises, according to McKinsey. </p><p>Around 80% of respondents said that AI has improved individual productivity, while 50% report that AI helps them “make better decisions”. Crucially, however, McKinsey warned that “the experience is not universally positive”. </p><p>Mid-level managers and individual workers are more likely than executives to report AI-related problems. McKinsey said this shows that AI impact “remains concentrated” among certain groups within the enterprise. </p><p>This is by no means the first study to highlight this trend. Research from Accenture in April this year found <a href="https://www.itpro.com/business/business-strategy/ai-productivity-challenges-accenture-generating-impact-study"><u>many enterprises are dealing with mismatched AI productivity gains</u></a>. </p><p>Similar to McKinsey, the report found that workers are reporting benefits with the technology such as higher-quality output levels and faster project delivery times. </p><p>Yet the report pointed to a “widening gap” between the basic use of the technology and its wider enterprise impact. A key factor, Accenture said, lies in the fact that organizations' process changes are “lagging behind” integration rates. </p><p>Similarly, many AI strategies typically fail to modernize underlying IT infrastructure or workflows to accommodate the technology. </p><p>“A striking finding this year is the gap between individual gains and enterprise impact. At the individual level, AI is clearly a boon: 80 percent of survey respondents say it has improved their productivity and half say it helps them make better decisions,” said Dan Tinkoff, senior partner at McKinsey. </p><p>“Yet, only 37 percent of organizations report any positive EBIT contribution, essentially flat compared with last year.”</p><h2 id="ai-costs-are-taking-the-shine-off-enterprise-gains">AI costs are taking the shine off enterprise gains</h2><p>Cost-related concerns continue to weigh heavy on IT leaders’ minds, according to McKinsey. Around 20% of respondents said that AI-related operating costs have “constrained their AI use”. </p><p>“Those cost constraints are being reported across the full range of AI tools. For each of three tools – <a href="https://www.itpro.com/technology/artificial-intelligence-ai/369979/chatgpt-vs-chatbots-whats-the-difference">AI chatbots</a>, AI agents, and software <a href="https://www.itpro.com/software/development/while-the-engineers-slept-the-agents-kept-building-aws-uk-chief-touts-big-gains-with-ai-powered-coding">coding agents</a> – about one-in-ten respondents say their organizations’ use has been constrained by costs,” the report states. </p><p>McKinsey also highlighted <a href="https://www.itpro.com/technology/artificial-intelligence/it-leaders-are-being-stung-by-unexpected-ai-costs">token-related cost concerns</a>. This has become a recurring pain point for some businesses over the last year as firms ramp up adoption of the technology. </p><p>The ‘tokenmaxxing’ trend, for example, has prompted a surge in usage and landed some firms with hefty bills. </p><p>As <em>ITPro </em>previously reported, <a href="https://www.itpro.com/technology/artificial-intelligence/what-were-seeing-right-now-is-just-rapid-escalation-in-ai-token-spend-accenture-tells-staff-to-stop-using-ai-for-unnecessary-tasks-amid-surging-costs">Accenture asked workers to stop using AI for basic tasks</a> amidst skyrocketing costs while Uber revealed it <a href="https://www.itpro.com/technology/artificial-intelligence/ubers-eye-watering-ai-bill-shows-enterprises-are-still-measuring-ai-success-through-consumption-rather-than-outcomes-and-its-warping-our-perception-of-roi-and-productivity">blew through its entire annual AI budget in just four months</a>. </p><p>Rising operational costs haven’t dampened investment rates, however. More than one-quarter (28%) of respondents said their organisation is now spending more than 10% of their total IT budget on AI tools. </p><p>“Looking ahead, 60 percent of respondents expect their organizations to increase their AI investments over the next year,” McKinsey noted. </p><p>“Respondents in pharmaceuticals and medical products, insurance, and banking and other financial institutions are the most likely to expect increasing investment.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/business-strategy/a-striking-finding-this-year-is-the-gap-between-individual-gains-and-enterprise-impact-mckinsey-says-ai-is-finally-paying-off-for-enterprises-but-rising-costs-and-constrained-efficiency-boosts-are-still-a-major-hurdle</link>
                                                                            <description>
                            <![CDATA[ Rising operational costs, mismatched productivity gains, and sluggish revenue improvements haven’t dampened the mood for investment ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">N4J9ZD6uBp52jNHWfAkGYJ</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/kBTuBeV7BUJXkLLS7QbGjV-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 26 Aug 2026 09:44:09 +0000</pubDate>                                                                                                                                <updated>Wed, 26 Aug 2026 09:44:37 +0000</updated>
                                                                                                                                            <category><![CDATA[Business Strategy]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/kBTuBeV7BUJXkLLS7QbGjV-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Digital transformation concept image showing two horizontal pillars separated with new blocks branching out to connect both.]]></media:description>                                                            <media:text><![CDATA[Digital transformation concept image showing two horizontal pillars separated with new blocks branching out to connect both.]]></media:text>
                                <media:title type="plain"><![CDATA[Digital transformation concept image showing two horizontal pillars separated with new blocks branching out to connect both.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/kBTuBeV7BUJXkLLS7QbGjV-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>New research from McKinsey suggests enterprises are finally reporting benefits from AI, but cost-related concerns and “constrained” productivity gains still weigh heavy on the minds of IT leaders.</p><p>Figures from the consultancy’s <a href="https://www.mckinsey.com/capabilities/quantumblack/our-insights/the-state-of-ai" target="_blank"><u><em>State of AI in 2026</em></u></a> report show more than one-third (37%) of respondents recorded “some” earnings impact with the technology, although that marks the same share from last year’s report. </p><p>Meanwhile, “AI high performers” said AI is now having a “significant” impact on operational efficiency and earnings. </p><p>The report suggests that enterprise AI maturity is rising, with an increasing number of enterprises now successfully scaling the technology. Improvements in this regard are being reported across the board, McKinsey noted, with respondents scaling chatbots, coding agents, and more sophisticated AI agents. </p><p>The use of agentic AI has increased significantly, for example, with 40% of large enterprises scaling agents, up from 27% last year. Meanwhile, around two-in-ten are actively scaling software coding agents. </p><p>“Among <a href="https://www.itpro.com/technology/artificial-intelligence/amazing-ai-tools-to-try-today">AI tools</a>, chatbots are the most widely scaled, with 47 percent of respondents saying their organizations are scaling them across the enterprise,” the report states. </p><p>“About two-in-ten respondents report reaching the scaling phase across their organization with AI agents and a similar share report the same with software coding agents.”</p><h2 id="mismatched-ai-productivity">Mismatched AI productivity</h2><p>Workforce productivity gains rank among the most notable improvements for enterprises, according to McKinsey. </p><p>Around 80% of respondents said that AI has improved individual productivity, while 50% report that AI helps them “make better decisions”. Crucially, however, McKinsey warned that “the experience is not universally positive”. </p><p>Mid-level managers and individual workers are more likely than executives to report AI-related problems. McKinsey said this shows that AI impact “remains concentrated” among certain groups within the enterprise. </p><p>This is by no means the first study to highlight this trend. Research from Accenture in April this year found <a href="https://www.itpro.com/business/business-strategy/ai-productivity-challenges-accenture-generating-impact-study"><u>many enterprises are dealing with mismatched AI productivity gains</u></a>. </p><p>Similar to McKinsey, the report found that workers are reporting benefits with the technology such as higher-quality output levels and faster project delivery times. </p><p>Yet the report pointed to a “widening gap” between the basic use of the technology and its wider enterprise impact. A key factor, Accenture said, lies in the fact that organizations' process changes are “lagging behind” integration rates. </p><p>Similarly, many AI strategies typically fail to modernize underlying IT infrastructure or workflows to accommodate the technology. </p><p>“A striking finding this year is the gap between individual gains and enterprise impact. At the individual level, AI is clearly a boon: 80 percent of survey respondents say it has improved their productivity and half say it helps them make better decisions,” said Dan Tinkoff, senior partner at McKinsey. </p><p>“Yet, only 37 percent of organizations report any positive EBIT contribution, essentially flat compared with last year.”</p><h2 id="ai-costs-are-taking-the-shine-off-enterprise-gains">AI costs are taking the shine off enterprise gains</h2><p>Cost-related concerns continue to weigh heavy on IT leaders’ minds, according to McKinsey. Around 20% of respondents said that AI-related operating costs have “constrained their AI use”. </p><p>“Those cost constraints are being reported across the full range of AI tools. For each of three tools – <a href="https://www.itpro.com/technology/artificial-intelligence-ai/369979/chatgpt-vs-chatbots-whats-the-difference">AI chatbots</a>, AI agents, and software <a href="https://www.itpro.com/software/development/while-the-engineers-slept-the-agents-kept-building-aws-uk-chief-touts-big-gains-with-ai-powered-coding">coding agents</a> – about one-in-ten respondents say their organizations’ use has been constrained by costs,” the report states. </p><p>McKinsey also highlighted <a href="https://www.itpro.com/technology/artificial-intelligence/it-leaders-are-being-stung-by-unexpected-ai-costs">token-related cost concerns</a>. This has become a recurring pain point for some businesses over the last year as firms ramp up adoption of the technology. </p><p>The ‘tokenmaxxing’ trend, for example, has prompted a surge in usage and landed some firms with hefty bills. </p><p>As <em>ITPro </em>previously reported, <a href="https://www.itpro.com/technology/artificial-intelligence/what-were-seeing-right-now-is-just-rapid-escalation-in-ai-token-spend-accenture-tells-staff-to-stop-using-ai-for-unnecessary-tasks-amid-surging-costs">Accenture asked workers to stop using AI for basic tasks</a> amidst skyrocketing costs while Uber revealed it <a href="https://www.itpro.com/technology/artificial-intelligence/ubers-eye-watering-ai-bill-shows-enterprises-are-still-measuring-ai-success-through-consumption-rather-than-outcomes-and-its-warping-our-perception-of-roi-and-productivity">blew through its entire annual AI budget in just four months</a>. </p><p>Rising operational costs haven’t dampened investment rates, however. More than one-quarter (28%) of respondents said their organisation is now spending more than 10% of their total IT budget on AI tools. </p><p>“Looking ahead, 60 percent of respondents expect their organizations to increase their AI investments over the next year,” McKinsey noted. </p><p>“Respondents in pharmaceuticals and medical products, insurance, and banking and other financial institutions are the most likely to expect increasing investment.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Most business leaders aren't completely sure what 'sovereign AI' means – but they’re starting to understand its importance ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Most business and IT leaders believe that <a href="https://www.itpro.com/technology/artificial-intelligence/uk-firms-accelerate-sovereign-ai-plans-amid-concerns-over-dependence-on-overseas-tech">sovereign AI</a> is important, but they're not so clear on what it actually is and what it means for their business.</p><p>IDC defines sovereign AI as the ability for an organization to have “free choice and control over the design, development, deployment, accessibility, operation, maintenance, and governance of its AI systems and applications, as well as the underlying technology foundations they depend on”.</p><p>However, in a <a href="https://cohere.com/blog/state-of-sovereign-ai-adoption-2026" target="_blank"><u>survey </u></a>conducted by IDC on behalf of <a href="https://www.itpro.com/technology/artificial-intelligence/cohere-aleph-alpha-merger-sovereign-ai">Cohere</a>, researchers found that one-in-three had difficulty describing sovereign AI in their own words. </p><p>Of those who could, 52% of leaders explicitly described it in terms of local or national control, with 35% invoking digital independence.</p><p>Individual roles made a difference here, with line-of-business (LOB) leaders primarily viewing sovereign AI as a means for managing business risk, including data security, privacy, and cost controls. </p><p>IT leaders, by contrast, focused on regulatory compliance, ensuring that systems meet national and regional requirements. IT professionals were twice as aware as LOB leaders.</p><p>IDC predicts that by 2028, CIOs at multinational organizations will boost investments in modular, sovereign-ready cloud and data localization environments by 65% in a bid to future-proof operations against <a href="https://www.itpro.com/cloud/cloud-computing/post-cloud-strategy-what-comes-after-hyperscale">rising sovereignty demands</a>.</p><p>Yet adoption remains uneven, according to IDC. The study pointed to a lack of a clear blueprint for operationalizing sovereignty, a fragmented and inconsistent grasp of the concept, and a lack of strategic vision.</p><h2 id="on-the-right-track-with-sovereign-ai">On the right track with sovereign AI </h2><p>Even without an agreed-upon definition, researchers found a clear consensus on the importance of privacy and security.</p><p>"Across every industry surveyed, enterprise leaders identified data leakage, privacy, compliance, and regulatory risk as the top concerns that sovereign AI initiatives can address, they said. "Furthermore, the largest enterprises with $20 billion in revenue are much more risk-aware than small firms."</p><p>Many see sovereign AI as presenting a competitive advantage - 35% in Canada, 28% in the US, 23% in Germany and 18% in the UK. This is most evident within the telco sector, at 37%, followed by manufacturing at 32%, healthcare at 28%, and  financial services and energy, both at 21%.</p><p>“Across regulated industries and geopolitically sensitive markets, enterprises are re-architecting their digital operating models — shifting from a global-by-default posture to a deliberately sovereign-by-design approach,” researchers said.</p><h2 id="defining-sovereign-ai">Defining sovereign AI</h2><p>Cohere said enterprises and governments should define sovereign AI in operational terms, quantify its business value, establish ownership across leadership teams, and build systems that remain available and secure regardless of external events.</p><p>Late last year, a global <a href="https://www.mckinsey.com/capabilities/tech-and-ai/our-insights/tech-forward/the-sovereign-ai-agenda-moving-from-ambition-to-reality"><u>survey</u></a> from McKinsey found that 71% of executives, investors, and government officials characterized sovereign AI as an 'existential concern' or 'strategic imperative' to their organizational goals. </p><p>As a result, the firm projected that sovereign AI could become a $600 billion market by 2030, driven largely by investment in the public sector and regulated industries. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/technology/artificial-intelligence/most-business-leaders-arent-completely-sure-what-sovereign-ai-means-but-theyre-starting-to-understand-its-importance</link>
                                                                            <description>
                            <![CDATA[ A new study finds that few organizations fully understand the concept of sovereign AI, and many are making AI investment decisions without sufficient context ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">dRzgsPZBd8ynFLHkQ63o6j</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/4k5sqaFTSYzmJVJsTq3VXE-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 26 Aug 2026 09:34:39 +0000</pubDate>                                                                                                                                <updated>Wed, 26 Aug 2026 12:39:42 +0000</updated>
                                                                                                                                            <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/4k5sqaFTSYzmJVJsTq3VXE-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Sovereign AI concept image showing an artificial digitized brain absorbing data from multiple different directions. ]]></media:description>                                                            <media:text><![CDATA[Sovereign AI concept image showing an artificial digitized brain absorbing data from multiple different directions. ]]></media:text>
                                <media:title type="plain"><![CDATA[Sovereign AI concept image showing an artificial digitized brain absorbing data from multiple different directions. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/4k5sqaFTSYzmJVJsTq3VXE-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Most business and IT leaders believe that <a href="https://www.itpro.com/technology/artificial-intelligence/uk-firms-accelerate-sovereign-ai-plans-amid-concerns-over-dependence-on-overseas-tech">sovereign AI</a> is important, but they're not so clear on what it actually is and what it means for their business.</p><p>IDC defines sovereign AI as the ability for an organization to have “free choice and control over the design, development, deployment, accessibility, operation, maintenance, and governance of its AI systems and applications, as well as the underlying technology foundations they depend on”.</p><p>However, in a <a href="https://cohere.com/blog/state-of-sovereign-ai-adoption-2026" target="_blank"><u>survey </u></a>conducted by IDC on behalf of <a href="https://www.itpro.com/technology/artificial-intelligence/cohere-aleph-alpha-merger-sovereign-ai">Cohere</a>, researchers found that one-in-three had difficulty describing sovereign AI in their own words. </p><p>Of those who could, 52% of leaders explicitly described it in terms of local or national control, with 35% invoking digital independence.</p><p>Individual roles made a difference here, with line-of-business (LOB) leaders primarily viewing sovereign AI as a means for managing business risk, including data security, privacy, and cost controls. </p><p>IT leaders, by contrast, focused on regulatory compliance, ensuring that systems meet national and regional requirements. IT professionals were twice as aware as LOB leaders.</p><p>IDC predicts that by 2028, CIOs at multinational organizations will boost investments in modular, sovereign-ready cloud and data localization environments by 65% in a bid to future-proof operations against <a href="https://www.itpro.com/cloud/cloud-computing/post-cloud-strategy-what-comes-after-hyperscale">rising sovereignty demands</a>.</p><p>Yet adoption remains uneven, according to IDC. The study pointed to a lack of a clear blueprint for operationalizing sovereignty, a fragmented and inconsistent grasp of the concept, and a lack of strategic vision.</p><h2 id="on-the-right-track-with-sovereign-ai">On the right track with sovereign AI </h2><p>Even without an agreed-upon definition, researchers found a clear consensus on the importance of privacy and security.</p><p>"Across every industry surveyed, enterprise leaders identified data leakage, privacy, compliance, and regulatory risk as the top concerns that sovereign AI initiatives can address, they said. "Furthermore, the largest enterprises with $20 billion in revenue are much more risk-aware than small firms."</p><p>Many see sovereign AI as presenting a competitive advantage - 35% in Canada, 28% in the US, 23% in Germany and 18% in the UK. This is most evident within the telco sector, at 37%, followed by manufacturing at 32%, healthcare at 28%, and  financial services and energy, both at 21%.</p><p>“Across regulated industries and geopolitically sensitive markets, enterprises are re-architecting their digital operating models — shifting from a global-by-default posture to a deliberately sovereign-by-design approach,” researchers said.</p><h2 id="defining-sovereign-ai">Defining sovereign AI</h2><p>Cohere said enterprises and governments should define sovereign AI in operational terms, quantify its business value, establish ownership across leadership teams, and build systems that remain available and secure regardless of external events.</p><p>Late last year, a global <a href="https://www.mckinsey.com/capabilities/tech-and-ai/our-insights/tech-forward/the-sovereign-ai-agenda-moving-from-ambition-to-reality"><u>survey</u></a> from McKinsey found that 71% of executives, investors, and government officials characterized sovereign AI as an 'existential concern' or 'strategic imperative' to their organizational goals. </p><p>As a result, the firm projected that sovereign AI could become a $600 billion market by 2030, driven largely by investment in the public sector and regulated industries. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Apple targets developer AI performance gains with new M6 Mac Mini and M5 Ultra Mac Studio devices ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Apple has unveiled new <a href="https://www.itpro.com/hardware/the-apple-mac-mini-m4-is-an-affordable-powerhouse-thats-perfect-for-any-office-desk-and-its-also-utterly-adorable">Mac Mini</a> and Mac Studio models, boasting an “extraordinary leap in performance and AI capabilities”. </p><p>The new devices wil be equipped with Apple’s M6 and M5 Ultra chips, the latter of which is described as its most powerful to date. </p><p>“Today we’re debuting the next giant leap in performance and AI compute for Apple silicon with the incredibly advanced M6 and the most powerful M-series chip yet,” M5 Ultra,” said Sri Santhanam, Apple’s vice president of Silicon Engineering Group.</p><p>The move by Apple comes amidst a sharpened focus on local, on-device AI capabilities for developers globally. The Mac Mini, for example, has emerged as a go-to option on this front, enabling users to run agentic workflows locally. </p><p>Santhanam said the new Mac Studio M5 Ultra, for example,  will provide the “ultimate desktop performance and the ability to run massive AI models” on the device. </p><h2 id="under-the-hood-of-the-m6-mac-mini">Under the hood of the M6 Mac Mini</h2><p>The new Mac Mini will feature Apple’s M6 chip, which is built using a 2-nanometer process. This will boast a 12-core GPU, two more than the M5, along with a neural accelerator in each core. </p><p>Using this design, Apple said this will deliver a near 30% increase in GPU performance for AI compared to the M5, and more than eight-times compared to the M1. </p><figure role="gallery"><figure><img src="https://cdn.mos.cms.futurecdn.net/oXQRcNmcJFUe6WUMUEnVDe.jpg" alt="The Apple Mac Mini with M6 chip pictured against a white background with cartoon on screen." /><figcaption><small role="credit">Apple</small></figcaption></figure><figure><img src="https://cdn.mos.cms.futurecdn.net/Fznf5VgnbfZnaGBgoKNADe.jpg" alt="The Apple Mac Mini with M6 chip pictured against a white background with Apple Xcode application pictured on a desktop monitor." /><figcaption><small role="credit">Apple</small></figcaption></figure></figure><p>“The super cores blaze through single-threaded workloads, the performance cores use less power and join the super cores to run demanding multithreaded workloads, and the efficiency cores handle everyday background tasks — all with industry-leading performance per watt,” Apple said in a <a href="https://www.apple.com/newsroom/2026/08/apple-introduces-m6-and-m5-ultra-for-a-big-leap-in-performance-and-ai-compute/" target="_blank">blog post</a>.</p><p>Elsewhere, the Mac Mini M6 will support up to 32GB of unified memory, along with 170GB/s of unified memory bandwidth. The firm said this marks a 10% increase over the M5 and will help users run LLMs on the device more efficiently. </p><h2 id="the-m5-pro-mac-mini">The M5 Pro Mac Mini</h2><p>Alongside the new M6 range, Apple also unveiled the Mac Mini equipped with an M5 Pro chip. This will boast a CPU ranging up to 18-cores alongside a 20-core GPU, and is catered specifically for complex tasks such as 3D design, VFX, and game development. </p><p>The device also supports up to 64GB of unified memory, alongside 307GB/s of unified memory bandwidth. Once again, Apple touted the device's capabilities in terms of local AI orchestration. </p><p>"With industry-leading performance per watt, Mac mini with M5 Pro is quiet, efficient, and ideal as an always-on desktop for AI agents or creative workflows," the company said in a <a href="https://www.apple.com/newsroom/2026/08/apple-unveils-a-more-powerful-mac-mini-featuring-the-all-new-m6-and-m5-pro/" target="_blank">blog post</a>. </p><h2 id="what-to-expect-with-the-m5-ultra-mac-studio">What to expect with the M5 Ultra Mac Studio</h2><p>According to Apple, the new Mac Studio featuring the M5 Ultra chip is the “ultimate powerhouse for pro workflows” - again placing a strong emphasis on local AI capabilities. </p><p>The M5 boasts a next-gen GPU with up to 80 cores, with each also boasting a neural accelerator to provide up to 4.5-times the GPU performance compared to the <a href="https://www.itpro.com/hardware/laptops/apple-m3-macbook-pro-review-opt-for-the-lower-spec-sets-and-you-have-an-affordable-powerhouse-with-heaps-of-battery-life">M3 Ultra</a> chip, and over six-times that of the M1 Ultra. </p><p>“The <a href="https://www.itpro.com/hardware/30399/what-is-a-gpu">GPU </a>includes Apple’s latest shader core with second-generation Dynamic Caching, as well as hardware-accelerated mesh shading and third-generation ray tracing, delivering up to 40 percent faster graphics performance than M3 Ultra,” the company said in a blog post.</p><figure role="gallery"><figure><img src="https://cdn.mos.cms.futurecdn.net/tpw47yzLHswP8ymGEeBGu8.jpg" alt="The Apple Mac Studio with M5 Ultra chip pictured against a white background with video editing software on desktop monitor." /><figcaption><small role="credit">Apple</small></figcaption></figure><figure><img src="https://cdn.mos.cms.futurecdn.net/anQSRXUL9kvgvuYnFfCxm8.jpg" alt="The Apple Mac Studio with M5 Ultra chip pictured against a white background with desktop monitor showing data analysis tools. " /><figcaption><small role="credit">Apple</small></figcaption></figure></figure><p>On the memory front, the new device also boasts significant improvements, featuring up to 512GB of unified memory and 1.2TB/s of unified memory bandwidth. </p><p>Apple said this will enable users to “store huge datasets entirely in local memory” and run LLMs ranging in the hundreds of billions of parameters locally. </p><h2 id="what-to-expect-with-pricing">What to expect with pricing</h2><p>Customers looking to get their hands on the Mac Mini with M6 or M5 Pro chips can pre-order today (25 August), although the devices will set you back. </p><p>In terms of pricing, the Mac Mini with M6 will start at $899 in the US, although users in education can get it for a reduced price of $799. The Mac Mini with M5 Pro, meanwhile, starts at $1,699  and $1,599 for education.</p><p>Elsewhere, the Mac Studio with M5 Ultra starts at a whopping $5,499  and $5,099 for education.</p><h2 id="designed-for-devs">Designed for devs</h2><p>Notably, Apple’s various developer frameworks and tools, such as Core AI, Core ML, and <a href="https://www.itpro.com/development/software-development/368930/apple-expands-xcode-cloud-platform-with-launch-of-paid-subscriptions">Xcode</a>, will “tap directly” into both chips. </p><p>This offers marked advantages in terms of local AI orchestration, the company said. </p><p>“With these frameworks and new chips, developers can run and fine-tune large AI models locally on their Mac,” Apple said in a blog post. </p><p>“Apple’s developer tools and frameworks automatically optimize performance across the CPU, GPU, and Neural Engine, and give developers the ability to use Apple Foundation Models, App Intents to tap into Apple Intelligence features, or their own proprietary AI models to build and run powerful AI workloads entirely on device.”</p><h2 id="another-pint-sized-powerhouse">Another pint-sized powerhouse</h2><p>Apple’s pint-sized powerhouse, the Mac Mini, is back with an M6 chip – and it comes at a time when mini PCs are having their moment. </p><p>Smaller players from China such as Geekom and Beelink are finding more and more markets with their innovative and powerful desktop boxes, but they will struggle to match the pulling power of Apple. </p><p>And they won’t be anywhere near as adorable as the Mac Mini. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/software/apple/apple-targets-developer-ai-performance-gains-with-new-m6-mac-mini-and-m5-ultra-mac-studio-devices</link>
                                                                            <description>
                            <![CDATA[ The new devices, powered by the M6 and M5 Ultra chips, offer huge local AI performance capabilities ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">up7vGb8ddKBniEszEtNmK6</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/ctCNjPr78hVBQJhaMRSgpR-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 25 Aug 2026 15:15:02 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Apple]]></category>
                                                    <category><![CDATA[Software]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/ctCNjPr78hVBQJhaMRSgpR-1280-80.jpg">
                                                            <media:credit><![CDATA[Apple]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[The Apple Mac Mini with M6 chip pictured against a white background with a desktop monitor featuring Adobe Photoshop.]]></media:description>                                                            <media:text><![CDATA[The Apple Mac Mini with M6 chip pictured against a white background with a desktop monitor featuring Adobe Photoshop.]]></media:text>
                                <media:title type="plain"><![CDATA[The Apple Mac Mini with M6 chip pictured against a white background with a desktop monitor featuring Adobe Photoshop.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/ctCNjPr78hVBQJhaMRSgpR-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Apple has unveiled new <a href="https://www.itpro.com/hardware/the-apple-mac-mini-m4-is-an-affordable-powerhouse-thats-perfect-for-any-office-desk-and-its-also-utterly-adorable">Mac Mini</a> and Mac Studio models, boasting an “extraordinary leap in performance and AI capabilities”. </p><p>The new devices wil be equipped with Apple’s M6 and M5 Ultra chips, the latter of which is described as its most powerful to date. </p><p>“Today we’re debuting the next giant leap in performance and AI compute for Apple silicon with the incredibly advanced M6 and the most powerful M-series chip yet,” M5 Ultra,” said Sri Santhanam, Apple’s vice president of Silicon Engineering Group.</p><p>The move by Apple comes amidst a sharpened focus on local, on-device AI capabilities for developers globally. The Mac Mini, for example, has emerged as a go-to option on this front, enabling users to run agentic workflows locally. </p><p>Santhanam said the new Mac Studio M5 Ultra, for example,  will provide the “ultimate desktop performance and the ability to run massive AI models” on the device. </p><h2 id="under-the-hood-of-the-m6-mac-mini">Under the hood of the M6 Mac Mini</h2><p>The new Mac Mini will feature Apple’s M6 chip, which is built using a 2-nanometer process. This will boast a 12-core GPU, two more than the M5, along with a neural accelerator in each core. </p><p>Using this design, Apple said this will deliver a near 30% increase in GPU performance for AI compared to the M5, and more than eight-times compared to the M1. </p><figure role="gallery"><figure><img src="https://cdn.mos.cms.futurecdn.net/oXQRcNmcJFUe6WUMUEnVDe.jpg" alt="The Apple Mac Mini with M6 chip pictured against a white background with cartoon on screen." /><figcaption><small role="credit">Apple</small></figcaption></figure><figure><img src="https://cdn.mos.cms.futurecdn.net/Fznf5VgnbfZnaGBgoKNADe.jpg" alt="The Apple Mac Mini with M6 chip pictured against a white background with Apple Xcode application pictured on a desktop monitor." /><figcaption><small role="credit">Apple</small></figcaption></figure></figure><p>“The super cores blaze through single-threaded workloads, the performance cores use less power and join the super cores to run demanding multithreaded workloads, and the efficiency cores handle everyday background tasks — all with industry-leading performance per watt,” Apple said in a <a href="https://www.apple.com/newsroom/2026/08/apple-introduces-m6-and-m5-ultra-for-a-big-leap-in-performance-and-ai-compute/" target="_blank">blog post</a>.</p><p>Elsewhere, the Mac Mini M6 will support up to 32GB of unified memory, along with 170GB/s of unified memory bandwidth. The firm said this marks a 10% increase over the M5 and will help users run LLMs on the device more efficiently. </p><h2 id="the-m5-pro-mac-mini">The M5 Pro Mac Mini</h2><p>Alongside the new M6 range, Apple also unveiled the Mac Mini equipped with an M5 Pro chip. This will boast a CPU ranging up to 18-cores alongside a 20-core GPU, and is catered specifically for complex tasks such as 3D design, VFX, and game development. </p><p>The device also supports up to 64GB of unified memory, alongside 307GB/s of unified memory bandwidth. Once again, Apple touted the device's capabilities in terms of local AI orchestration. </p><p>"With industry-leading performance per watt, Mac mini with M5 Pro is quiet, efficient, and ideal as an always-on desktop for AI agents or creative workflows," the company said in a <a href="https://www.apple.com/newsroom/2026/08/apple-unveils-a-more-powerful-mac-mini-featuring-the-all-new-m6-and-m5-pro/" target="_blank">blog post</a>. </p><h2 id="what-to-expect-with-the-m5-ultra-mac-studio">What to expect with the M5 Ultra Mac Studio</h2><p>According to Apple, the new Mac Studio featuring the M5 Ultra chip is the “ultimate powerhouse for pro workflows” - again placing a strong emphasis on local AI capabilities. </p><p>The M5 boasts a next-gen GPU with up to 80 cores, with each also boasting a neural accelerator to provide up to 4.5-times the GPU performance compared to the <a href="https://www.itpro.com/hardware/laptops/apple-m3-macbook-pro-review-opt-for-the-lower-spec-sets-and-you-have-an-affordable-powerhouse-with-heaps-of-battery-life">M3 Ultra</a> chip, and over six-times that of the M1 Ultra. </p><p>“The <a href="https://www.itpro.com/hardware/30399/what-is-a-gpu">GPU </a>includes Apple’s latest shader core with second-generation Dynamic Caching, as well as hardware-accelerated mesh shading and third-generation ray tracing, delivering up to 40 percent faster graphics performance than M3 Ultra,” the company said in a blog post.</p><figure role="gallery"><figure><img src="https://cdn.mos.cms.futurecdn.net/tpw47yzLHswP8ymGEeBGu8.jpg" alt="The Apple Mac Studio with M5 Ultra chip pictured against a white background with video editing software on desktop monitor." /><figcaption><small role="credit">Apple</small></figcaption></figure><figure><img src="https://cdn.mos.cms.futurecdn.net/anQSRXUL9kvgvuYnFfCxm8.jpg" alt="The Apple Mac Studio with M5 Ultra chip pictured against a white background with desktop monitor showing data analysis tools. " /><figcaption><small role="credit">Apple</small></figcaption></figure></figure><p>On the memory front, the new device also boasts significant improvements, featuring up to 512GB of unified memory and 1.2TB/s of unified memory bandwidth. </p><p>Apple said this will enable users to “store huge datasets entirely in local memory” and run LLMs ranging in the hundreds of billions of parameters locally. </p><h2 id="what-to-expect-with-pricing">What to expect with pricing</h2><p>Customers looking to get their hands on the Mac Mini with M6 or M5 Pro chips can pre-order today (25 August), although the devices will set you back. </p><p>In terms of pricing, the Mac Mini with M6 will start at $899 in the US, although users in education can get it for a reduced price of $799. The Mac Mini with M5 Pro, meanwhile, starts at $1,699  and $1,599 for education.</p><p>Elsewhere, the Mac Studio with M5 Ultra starts at a whopping $5,499  and $5,099 for education.</p><h2 id="designed-for-devs">Designed for devs</h2><p>Notably, Apple’s various developer frameworks and tools, such as Core AI, Core ML, and <a href="https://www.itpro.com/development/software-development/368930/apple-expands-xcode-cloud-platform-with-launch-of-paid-subscriptions">Xcode</a>, will “tap directly” into both chips. </p><p>This offers marked advantages in terms of local AI orchestration, the company said. </p><p>“With these frameworks and new chips, developers can run and fine-tune large AI models locally on their Mac,” Apple said in a blog post. </p><p>“Apple’s developer tools and frameworks automatically optimize performance across the CPU, GPU, and Neural Engine, and give developers the ability to use Apple Foundation Models, App Intents to tap into Apple Intelligence features, or their own proprietary AI models to build and run powerful AI workloads entirely on device.”</p><h2 id="another-pint-sized-powerhouse">Another pint-sized powerhouse</h2><p>Apple’s pint-sized powerhouse, the Mac Mini, is back with an M6 chip – and it comes at a time when mini PCs are having their moment. </p><p>Smaller players from China such as Geekom and Beelink are finding more and more markets with their innovative and powerful desktop boxes, but they will struggle to match the pulling power of Apple. </p><p>And they won’t be anywhere near as adorable as the Mac Mini. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ How much electricity are your workers chewing through with AI, and should you be worried? ]]></title>
                                                                                                <dc:content><![CDATA[ <p>British tech workers are using AI for 35 tasks per day across their teams, new research suggests. While that works out to just a handful of prompts for most employees per day, it's starting to build up to serious electricity usage. </p><p>That's according to Uswitch Business Energy, which found the average workplace team generates 24 prompts per day, including writing emails, automating admin tasks and analysing data. </p><p>But that's across the whole team, not per worker. Instead, Uswitch combined its data with YouGov research for some back-of-the-envelope extrapolations. </p><p>Survey data shows 32% of British workers use AI at work, and with an average team size of 12, and an estimated average AI prompt generation of two per day, that adds up to an estimated 22 million AI prompts every working day. </p><p>That sounds like a lot, but there's just shy of 26 million full-time workers in the UK, and not all of them are sitting at computers. </p><p>IT and telecoms workers account the most prompts, at 35 per team, followed by finance at 29, Education at 22, and healthcare at 21, the report found. </p><p>Workers aged 25-34 had an average of 30 AI-assisted tasks on their teams each day, versus 27 for younger workers and just 18 for those aged over 55. </p><h2 id="are-energy-concerns-warranted">Are energy concerns warranted?</h2><p>Uswitch's energy division warned that the shift to AI is eating up a fair amount of electricity. </p><p>The switching company points to Google's own estimate that a Gemini text prompt uses 0.24 watt-hours (Wh) of energy, meaning British employees are using 5.28 MWh of electricity each and every work day, or about 1.37 gigawatt-hours (GWh) each year. </p><p>That works out to enough electricity to power 508 British homes annually. Of course, that energy use is over in a Google data center, rather than at point of use. </p><p>"AI has rapidly evolved from an emerging technology into an everyday business tool," said Ben Gallizzi, energy expert at Uswitch. "As more organizations adopt AI to support tasks such as content creation, customer service and administration, the cumulative energy demand from these tools will continue to grow."</p><p>Developing and training a model is an energy hungry process, with <a href="https://epoch.ai/gradient-updates/how-much-energy-does-chatgpt-use" target="_blank"><u>estimates</u></a> that training current cutting edge models uses between 20-25MW of power over three months, or between 43 GWh and 54 GWh in total. </p><p>However, research by<a href="https://www.technologyreview.com/2025/05/20/1116327/ai-energy-usage-climate-footprint-big-tech/" target="_blank"><u> MIT Technology Review</u></a> suggests that those massive figures make up a small amount of the total energy use of AI. </p><p>As much as 90% of its footprint lies in <a href="https://www.itpro.com/infrastructure/the-role-of-the-cpu-in-the-ai-era">inference</a>, with small text based queries, image generation, and the rest adding up when used by so many people. </p><p>"Although each prompt uses a relatively small amount of energy, the scale of adoption means businesses are collectively generating billions of AI interactions every week," said Gallizzi, although the billions would be globally, not just in the UK.</p><p>Indeed, OpenAI said last year that it was seeing 2.5 billion <a href="https://www.itpro.com/technology/artificial-intelligence/openai-just-revealed-what-people-really-use-chatgpt-for-and-70-percent-of-queries-have-nothing-to-do-with-work">queries on ChatGPT each day</a>. </p><p>Gallizzi added: "As organizations continue to embrace AI, understanding the impact this could have on future electricity demand will become increasingly important."</p><h2 id="time-to-track">Time to track</h2><p>Uswitch suggested businesses need to be aware of these figures, just as they track energy use from more mundane aspects of their offices. As noted, this usage will be off-site in a data center run by AI companies, so it's more about considering overall usage and impact than direct costs. </p><p>"Businesses already carefully monitor energy use from equipment, heating and lighting," Gallizzi said. "As AI becomes more deeply embedded in workplace processes, organizations may also need to consider how digital tools contribute to their overall energy footprint."</p><p>Wanton AI use could be reined in — not by electricity footprint concerns, but by <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained"><u>rising prices and shifting billing models</u></a>. That's led to companies pushing to <a href="https://www.itpro.com/technology/artificial-intelligence/the-end-of-tokenmaxxing-and-what-comes-next"><u>end so-called "tokenmaxxxing"</u></a> and encouraging more sensible use of AI credits. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/technology/artificial-intelligence/how-much-electricity-are-your-workers-chewing-through-with-ai-and-should-you-be-worried</link>
                                                                            <description>
                            <![CDATA[ British businesses have been warned about the energy impact associated with AI use, but it's not a straightforward debate ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">DjDh22FeHBNEW3uSh6Sq2B</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Jdq8t7jhAQQ5T2yCtBsdgM-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 25 Aug 2026 10:47:17 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Jdq8t7jhAQQ5T2yCtBsdgM-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Data center server rack with a plume of cloudy smoke emanating from the top.]]></media:description>                                                            <media:text><![CDATA[Data center server rack with a plume of cloudy smoke emanating from the top.]]></media:text>
                                <media:title type="plain"><![CDATA[Data center server rack with a plume of cloudy smoke emanating from the top.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Jdq8t7jhAQQ5T2yCtBsdgM-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>British tech workers are using AI for 35 tasks per day across their teams, new research suggests. While that works out to just a handful of prompts for most employees per day, it's starting to build up to serious electricity usage. </p><p>That's according to Uswitch Business Energy, which found the average workplace team generates 24 prompts per day, including writing emails, automating admin tasks and analysing data. </p><p>But that's across the whole team, not per worker. Instead, Uswitch combined its data with YouGov research for some back-of-the-envelope extrapolations. </p><p>Survey data shows 32% of British workers use AI at work, and with an average team size of 12, and an estimated average AI prompt generation of two per day, that adds up to an estimated 22 million AI prompts every working day. </p><p>That sounds like a lot, but there's just shy of 26 million full-time workers in the UK, and not all of them are sitting at computers. </p><p>IT and telecoms workers account the most prompts, at 35 per team, followed by finance at 29, Education at 22, and healthcare at 21, the report found. </p><p>Workers aged 25-34 had an average of 30 AI-assisted tasks on their teams each day, versus 27 for younger workers and just 18 for those aged over 55. </p><h2 id="are-energy-concerns-warranted">Are energy concerns warranted?</h2><p>Uswitch's energy division warned that the shift to AI is eating up a fair amount of electricity. </p><p>The switching company points to Google's own estimate that a Gemini text prompt uses 0.24 watt-hours (Wh) of energy, meaning British employees are using 5.28 MWh of electricity each and every work day, or about 1.37 gigawatt-hours (GWh) each year. </p><p>That works out to enough electricity to power 508 British homes annually. Of course, that energy use is over in a Google data center, rather than at point of use. </p><p>"AI has rapidly evolved from an emerging technology into an everyday business tool," said Ben Gallizzi, energy expert at Uswitch. "As more organizations adopt AI to support tasks such as content creation, customer service and administration, the cumulative energy demand from these tools will continue to grow."</p><p>Developing and training a model is an energy hungry process, with <a href="https://epoch.ai/gradient-updates/how-much-energy-does-chatgpt-use" target="_blank"><u>estimates</u></a> that training current cutting edge models uses between 20-25MW of power over three months, or between 43 GWh and 54 GWh in total. </p><p>However, research by<a href="https://www.technologyreview.com/2025/05/20/1116327/ai-energy-usage-climate-footprint-big-tech/" target="_blank"><u> MIT Technology Review</u></a> suggests that those massive figures make up a small amount of the total energy use of AI. </p><p>As much as 90% of its footprint lies in <a href="https://www.itpro.com/infrastructure/the-role-of-the-cpu-in-the-ai-era">inference</a>, with small text based queries, image generation, and the rest adding up when used by so many people. </p><p>"Although each prompt uses a relatively small amount of energy, the scale of adoption means businesses are collectively generating billions of AI interactions every week," said Gallizzi, although the billions would be globally, not just in the UK.</p><p>Indeed, OpenAI said last year that it was seeing 2.5 billion <a href="https://www.itpro.com/technology/artificial-intelligence/openai-just-revealed-what-people-really-use-chatgpt-for-and-70-percent-of-queries-have-nothing-to-do-with-work">queries on ChatGPT each day</a>. </p><p>Gallizzi added: "As organizations continue to embrace AI, understanding the impact this could have on future electricity demand will become increasingly important."</p><h2 id="time-to-track">Time to track</h2><p>Uswitch suggested businesses need to be aware of these figures, just as they track energy use from more mundane aspects of their offices. As noted, this usage will be off-site in a data center run by AI companies, so it's more about considering overall usage and impact than direct costs. </p><p>"Businesses already carefully monitor energy use from equipment, heating and lighting," Gallizzi said. "As AI becomes more deeply embedded in workplace processes, organizations may also need to consider how digital tools contribute to their overall energy footprint."</p><p>Wanton AI use could be reined in — not by electricity footprint concerns, but by <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained"><u>rising prices and shifting billing models</u></a>. That's led to companies pushing to <a href="https://www.itpro.com/technology/artificial-intelligence/the-end-of-tokenmaxxing-and-what-comes-next"><u>end so-called "tokenmaxxxing"</u></a> and encouraging more sensible use of AI credits. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ IT leaders need to stop ‘pushing AI for the sake of AI’ ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Enterprises are falling into a trap of using AI when it’s not necessarily needed, and it’s costing them dearly, according to Roger Lee, AVP of solutions consulting at Appian.</p><p>Speaking to <em>ITPro</em>, Lee said the hype surrounding AI - particularly agents - is pushing some IT leaders to apply the technology in an ‘AI for the sake of AI’ type approach. </p><p>“I think a lot of organizations and a lot of senior executives and staff within organizations have been told to ‘do AI’,” he said. </p><p>“So rather than just pushing AI for the sake of AI, look at what the decisions are we’re trying to improve, what data we are using, and where does that human oversight sit.”</p><p>Lee’s comments come after Accenture <a href="https://www.itpro.com/technology/artificial-intelligence/what-were-seeing-right-now-is-just-rapid-escalation-in-ai-token-spend-accenture-tells-staff-to-stop-using-ai-for-unnecessary-tasks-amid-surging-costs"><u>told staff to stop using AI for unnecessary tasks</u></a> amid surging costs. As adoption of the technology accelerates, he told <em>ITPro </em>that enterprises need to have a serious conversation on how they integrate <a href="https://www.itpro.com/technology/artificial-intelligence/amazing-ai-tools-to-try-today">AI tools</a>.  </p><h2 id="agents-vs-business-rules">Agents vs business rules</h2><p>Pursuing the ‘AI for the sake of AI’ approach means that many businesses aren’t just incurring huge costs, but adding needless complexity to processes that were already streamlined prior to the generative AI race. </p><p>“The key thing is really trying to identify the right place for AI versus just trying to use AI to solve everything,” he said. </p><p>“In many cases, if it’s straightforward automation, if there’s a business rule where you’ve got a definitive yes or no answer, then sometimes business rules and workflows that result in a definitive answer are the right way to go.”</p><p>Admittedly, Lee said there are instances where agents are necessary, especially with regard to research or complex problem solving tasks. Acknowledging that this is a case of different strokes is crucial, however. </p><p>“I take an example from insurance with an automation claim, where you wanted to do some research and do some work, then an AI agent might be the right solution for that,” he said. </p><p>“But it's really understanding the right place to use a role versus an AI agent, and the impact that that can give.”</p><p>This is particularly relevant in regulated industries, Lee said, where margins of error can have huge ramifications. </p><p>Agents are highly effective in terms of dynamic reasoning, he noted, but in cases where businesses need a “really definitive zero error response” then IT leaders need to know where and <em>when </em>to automate. </p><p>“Regulated industries is another area where humans in the loop are really important,” he said. </p><p>“It's what makes processes accountable. So to ensure that not everything is automated, where you have things that are exceptions or outliers, that you absolutely have humans in the loop to respond to those.”</p><h2 id="shoehorning-ai-into-processes">Shoehorning AI into processes</h2><p>Enterprises have found themselves <a href="https://www.itpro.com/business/business-strategy/enterprises-need-to-stop-shoehorning-ai-where-it-isnt-needed"><u>shoehorning AI into areas and processes that aren’t applicable</u></a>, research from Gartner shows. Moreover, they’re expecting near-immediate returns with the technology. </p><p>Ironically, a key factor behind this lies in the desire to deliver returns on investment with AI. Yet by doing so they’re less likely to unlock any benefits. </p><p>Speaking at the time, Melanie Freeze, director of research at Gartner, said that many AI initiatives are “overly ambitious or poorly scoped” and don’t align with “real operational needs”.</p><p>Ultimately, Lee told <em>ITPro </em>that as with any adoption process, AI should still be viewed as a “business pull rather than technology push” approach. </p><p>“I think that the whole value that you can get from AI within an organization is all around what the business needs, rather than what the technology can push to the organisation,” he said. </p><p>“First and foremost, what problems are we trying to solve, rather than where can we use AI, and that changes the perspective on what we're trying to do,” Lee added.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/business-strategy/it-leaders-need-to-stop-pushing-ai-for-the-sake-of-ai</link>
                                                                            <description>
                            <![CDATA[ As enterprise adoption of AI agents continues, IT leaders need to know where and when to apply the technology ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">49UZGoqtpFRhamJeXZfBrN</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/4CeYDBXGHtWfkgtgjJ2dUi-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 25 Aug 2026 10:41:06 +0000</pubDate>                                                                                                                                <updated>Tue, 25 Aug 2026 10:41:23 +0000</updated>
                                                                                                                                            <category><![CDATA[Business Strategy]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/4CeYDBXGHtWfkgtgjJ2dUi-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A wide angle shot of IT workers in an office, lit by large modern windows showing a business park behind them.]]></media:description>                                                            <media:text><![CDATA[A wide angle shot of IT workers in an office, lit by large modern windows showing a business park behind them.]]></media:text>
                                <media:title type="plain"><![CDATA[A wide angle shot of IT workers in an office, lit by large modern windows showing a business park behind them.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/4CeYDBXGHtWfkgtgjJ2dUi-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Enterprises are falling into a trap of using AI when it’s not necessarily needed, and it’s costing them dearly, according to Roger Lee, AVP of solutions consulting at Appian.</p><p>Speaking to <em>ITPro</em>, Lee said the hype surrounding AI - particularly agents - is pushing some IT leaders to apply the technology in an ‘AI for the sake of AI’ type approach. </p><p>“I think a lot of organizations and a lot of senior executives and staff within organizations have been told to ‘do AI’,” he said. </p><p>“So rather than just pushing AI for the sake of AI, look at what the decisions are we’re trying to improve, what data we are using, and where does that human oversight sit.”</p><p>Lee’s comments come after Accenture <a href="https://www.itpro.com/technology/artificial-intelligence/what-were-seeing-right-now-is-just-rapid-escalation-in-ai-token-spend-accenture-tells-staff-to-stop-using-ai-for-unnecessary-tasks-amid-surging-costs"><u>told staff to stop using AI for unnecessary tasks</u></a> amid surging costs. As adoption of the technology accelerates, he told <em>ITPro </em>that enterprises need to have a serious conversation on how they integrate <a href="https://www.itpro.com/technology/artificial-intelligence/amazing-ai-tools-to-try-today">AI tools</a>.  </p><h2 id="agents-vs-business-rules">Agents vs business rules</h2><p>Pursuing the ‘AI for the sake of AI’ approach means that many businesses aren’t just incurring huge costs, but adding needless complexity to processes that were already streamlined prior to the generative AI race. </p><p>“The key thing is really trying to identify the right place for AI versus just trying to use AI to solve everything,” he said. </p><p>“In many cases, if it’s straightforward automation, if there’s a business rule where you’ve got a definitive yes or no answer, then sometimes business rules and workflows that result in a definitive answer are the right way to go.”</p><p>Admittedly, Lee said there are instances where agents are necessary, especially with regard to research or complex problem solving tasks. Acknowledging that this is a case of different strokes is crucial, however. </p><p>“I take an example from insurance with an automation claim, where you wanted to do some research and do some work, then an AI agent might be the right solution for that,” he said. </p><p>“But it's really understanding the right place to use a role versus an AI agent, and the impact that that can give.”</p><p>This is particularly relevant in regulated industries, Lee said, where margins of error can have huge ramifications. </p><p>Agents are highly effective in terms of dynamic reasoning, he noted, but in cases where businesses need a “really definitive zero error response” then IT leaders need to know where and <em>when </em>to automate. </p><p>“Regulated industries is another area where humans in the loop are really important,” he said. </p><p>“It's what makes processes accountable. So to ensure that not everything is automated, where you have things that are exceptions or outliers, that you absolutely have humans in the loop to respond to those.”</p><h2 id="shoehorning-ai-into-processes">Shoehorning AI into processes</h2><p>Enterprises have found themselves <a href="https://www.itpro.com/business/business-strategy/enterprises-need-to-stop-shoehorning-ai-where-it-isnt-needed"><u>shoehorning AI into areas and processes that aren’t applicable</u></a>, research from Gartner shows. Moreover, they’re expecting near-immediate returns with the technology. </p><p>Ironically, a key factor behind this lies in the desire to deliver returns on investment with AI. Yet by doing so they’re less likely to unlock any benefits. </p><p>Speaking at the time, Melanie Freeze, director of research at Gartner, said that many AI initiatives are “overly ambitious or poorly scoped” and don’t align with “real operational needs”.</p><p>Ultimately, Lee told <em>ITPro </em>that as with any adoption process, AI should still be viewed as a “business pull rather than technology push” approach. </p><p>“I think that the whole value that you can get from AI within an organization is all around what the business needs, rather than what the technology can push to the organisation,” he said. </p><p>“First and foremost, what problems are we trying to solve, rather than where can we use AI, and that changes the perspective on what we're trying to do,” Lee added.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ UK gov floats new essential services measures in Cyber Security and Resilience Bill – including a potential ban on buying from risky vendors ]]></title>
                                                                                                <dc:content><![CDATA[ <p>The government has outlined proposals for new powers under the <a href="https://www.itpro.com/business/policy-and-legislation/how-the-cybersecurity-and-resilience-bill-could-impact-msps">Cyber Security and Resilience Bill</a> aimed at boosting cyber defences for the UK's essential services.</p><p>With hostile cyber attacks and sabotage on essential services like energy, water, transport, and healthcare on the rise globally, vendors and companies with connections to hostile states pose a 'growing and serious' threat to the UK’s security.  </p><p>The idea is for the government to be able to step in when essential service providers are looking to buy equipment or technology from suppliers that could pose a critical national security risk. </p><p>"These new powers mean we can act before a threat materializes, not just after the damage is done. By working together with industry, we're putting national security at the heart of how essential services choose their suppliers," said cyber security minister Liz Lloyd.</p><p>"This is about staying ahead of a growing threat, and giving the public confidence that the everyday services we depend on like water and energy supplies, our transport network and hospitals, are protected." </p><p>New cyber safe procurement guidance would be made available for all essential service providers to help them secure their supply chains. Providers will be able to refer themselves for a risk assessment if they're unsure about a vendor – and be given advice on how to mitigate any risks.</p><p>Meanwhile, the package would grant the government new legal powers to issue binding directions to essential service providers, including requiring extra security measures, a phased withdrawal, or in the most serious cases, an outright ban on acquiring a vendor or supplier's products or services.</p><h2 id="growing-state-backed-threats">Growing state-backed threats</h2><p>The proposals come amidst growing concerns over the impact of state-sponsored <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>threats. </p><p>Earlier this year, the <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do">National Cyber Security Centre (NCSC)</a> warned that the UK is experiencing <a href="https://www.ncsc.gov.uk/news/ncsc-advises-uk-organisations-take-action-following-conflict-in-middle-east">increased threats from Iranian-backed cyber groups</a>, with a heightened risk of indirect threats for organizations with a presence, or supply chains, in the Middle East.</p><p>Government figures indicate that an outage caused by a cyber attack on London and Southeast England's electricity networks could potentially cost the economy up to £442 billion over the following five years.</p><p>Just this week, the vulnerability of key UK infrastructure was brought into focus by the news that Iranian-linked hackers were been able to <a href="https://www.itpro.com/security/cyber-attacks/iranian-cyber-attack-on-uk-power-plant-should-concern-every-organization-responsible-for-keeping-this-country-running">knock a small power plant offline for four days</a>.</p><p>The attack, which targeted internet-exposed programmable logic controllers (PLCs), is believed to be the first of its kind in the UK.</p><p>The amendments to the bill were laid before Parliament on Monday, ahead of Lords Committee stage scrutiny, which is set to begin in September.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/policy-and-legislation/uk-gov-floats-new-essential-services-measures-in-cyber-security-and-resilience-bill-including-a-potential-ban-on-buying-from-risky-vendors</link>
                                                                            <description>
                            <![CDATA[ With attacks on critical infrastructure on the rise, the government is looking to add new measures to the Cyber Security and Resilience Bill ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">DFno49QnqaFVQJd4WikTvk</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/aXognGP4UVUiWoAxxh57qJ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 25 Aug 2026 10:37:16 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Policy and Legislation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/aXognGP4UVUiWoAxxh57qJ-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A hand touching a glowing white padlock in a dark environment, to represent living off the land cyber attacks.]]></media:description>                                                            <media:text><![CDATA[A hand touching a glowing white padlock in a dark environment, to represent living off the land cyber attacks.]]></media:text>
                                <media:title type="plain"><![CDATA[A hand touching a glowing white padlock in a dark environment, to represent living off the land cyber attacks.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/aXognGP4UVUiWoAxxh57qJ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The government has outlined proposals for new powers under the <a href="https://www.itpro.com/business/policy-and-legislation/how-the-cybersecurity-and-resilience-bill-could-impact-msps">Cyber Security and Resilience Bill</a> aimed at boosting cyber defences for the UK's essential services.</p><p>With hostile cyber attacks and sabotage on essential services like energy, water, transport, and healthcare on the rise globally, vendors and companies with connections to hostile states pose a 'growing and serious' threat to the UK’s security.  </p><p>The idea is for the government to be able to step in when essential service providers are looking to buy equipment or technology from suppliers that could pose a critical national security risk. </p><p>"These new powers mean we can act before a threat materializes, not just after the damage is done. By working together with industry, we're putting national security at the heart of how essential services choose their suppliers," said cyber security minister Liz Lloyd.</p><p>"This is about staying ahead of a growing threat, and giving the public confidence that the everyday services we depend on like water and energy supplies, our transport network and hospitals, are protected." </p><p>New cyber safe procurement guidance would be made available for all essential service providers to help them secure their supply chains. Providers will be able to refer themselves for a risk assessment if they're unsure about a vendor – and be given advice on how to mitigate any risks.</p><p>Meanwhile, the package would grant the government new legal powers to issue binding directions to essential service providers, including requiring extra security measures, a phased withdrawal, or in the most serious cases, an outright ban on acquiring a vendor or supplier's products or services.</p><h2 id="growing-state-backed-threats">Growing state-backed threats</h2><p>The proposals come amidst growing concerns over the impact of state-sponsored <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>threats. </p><p>Earlier this year, the <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do">National Cyber Security Centre (NCSC)</a> warned that the UK is experiencing <a href="https://www.ncsc.gov.uk/news/ncsc-advises-uk-organisations-take-action-following-conflict-in-middle-east">increased threats from Iranian-backed cyber groups</a>, with a heightened risk of indirect threats for organizations with a presence, or supply chains, in the Middle East.</p><p>Government figures indicate that an outage caused by a cyber attack on London and Southeast England's electricity networks could potentially cost the economy up to £442 billion over the following five years.</p><p>Just this week, the vulnerability of key UK infrastructure was brought into focus by the news that Iranian-linked hackers were been able to <a href="https://www.itpro.com/security/cyber-attacks/iranian-cyber-attack-on-uk-power-plant-should-concern-every-organization-responsible-for-keeping-this-country-running">knock a small power plant offline for four days</a>.</p><p>The attack, which targeted internet-exposed programmable logic controllers (PLCs), is believed to be the first of its kind in the UK.</p><p>The amendments to the bill were laid before Parliament on Monday, ahead of Lords Committee stage scrutiny, which is set to begin in September.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ US lawmakers say CISA cuts raise ‘serious concerns about the agency's ability to fulfil its mission’ ]]></title>
                                                                                                <dc:content><![CDATA[ <p>US lawmakers are pushing back against the Trump administration's decision to reduce headcount at the <a href="https://www.itpro.com/security/what-is-cisa">Cybersecurity and Infrastructure Security Agency (CISA)</a>.</p><p>Five Democrats have <a href="https://walkinshaw.house.gov/uploadedfiles/2026.08.20_final_letter_to_gao_re_cisa_cuts.pdf" target="_blank"><u>written</u></a> to the Government Accountability Office (GAO), calling on it to look into the effects of the cuts on the agency's ability to protect critical infrastructure and respond to evolving cyber threats.</p><p>The group has requested an investigation into how CISA’s workforce has changed over the past five years, including its size, composition, geographic distribution and number of contractors. </p><p>They also want the GAO to identify which programs have been affected by the cuts, what the effects have been, what data CISA collects and analyzes for workforce planning and whether it uses that data to align resources with agency priorities.</p><p>"At precisely the moment when our adversaries are accelerating <a href="https://www.itpro.com/security/cyber-attacks/why-attacks-against-critical-national-infrastructure-cni-are-such-a-threat">attacks against critical infrastructure</a>, the Department of Homeland Security's Cybersecurity and Infrastructure Security Agency (CISA), the nation's lead civilian cyber defense agency, has lost nearly one-third of its workforce, raising serious concerns about the agency's ability to fulfil its mission," they wrote.</p><p>"Little is known about the impact of these workforce reductions on CISA’s programs and services or what processes and plans the agency has in place to ensure the agency is hiring the right people to address lost skill sets and meet mission demands."</p><h2 id="cisa-cuts-run-deep">CISA cuts run deep</h2><p>The latest changes were announced in June as part of the 2027 budget proposal. CISA is set for a cut in funding of around $700 million - with the White House claiming that it's been functioning “as a hub in the Censorship Industrial Complex, conspiring against the First Amendment rights”.</p><p>The cuts would refocus CISA on its core mission – Federal network defense and coordinating with critical infrastructure partners – while eliminating waste by consolidating redundant security advisors and programs. Around 900 jobs are expected to go.</p><p>CISA lost nearly 1,000 employees, or about a third of its workforce, in the first half of 2025 - although the agency has since made moves to try and boost staffing again. </p><p>It's also seen cutbacks to its work on election security. And all this has come as its work has expanded more than ever, thanks to an accelerating threat environment.</p><p>Gene Moody, field CTO at Action1, said the cuts show a lack of awareness over the critical work conducted by the agency. </p><p>"In many respects, vulnerability analysis is further behind the curve than it has ever been. And it is being attacked by its own governing bodies out of ignorance and misunderstanding. This is an existential threat to cybersecurity," Moody commented. </p><p>"When analysts and programs are overloaded, the ecosystem gets noisier: important vulnerabilities compete with an enormous amount of lower-value information, prioritization becomes harder, and defenders have less confidence about what actually deserves immediate attention."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/us-lawmakers-say-cisa-cuts-raise-serious-concerns-about-the-agencys-ability-to-fulfil-its-mission</link>
                                                                            <description>
                            <![CDATA[ With hundreds more jobs set to go, concerns are rising about whether the agency can continue its critical work defending organizations ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">NjytsAjXnN7uybfGo5Umz9</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/dFiSMke7iCE59e29NuVMg8-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 25 Aug 2026 09:49:02 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/dFiSMke7iCE59e29NuVMg8-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Insignia of the Cybersecurity and Infrastructure Security Agency (CISA) pictured on a smartphone screen.]]></media:description>                                                            <media:text><![CDATA[Insignia of the Cybersecurity and Infrastructure Security Agency (CISA) pictured on a smartphone screen.]]></media:text>
                                <media:title type="plain"><![CDATA[Insignia of the Cybersecurity and Infrastructure Security Agency (CISA) pictured on a smartphone screen.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/dFiSMke7iCE59e29NuVMg8-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>US lawmakers are pushing back against the Trump administration's decision to reduce headcount at the <a href="https://www.itpro.com/security/what-is-cisa">Cybersecurity and Infrastructure Security Agency (CISA)</a>.</p><p>Five Democrats have <a href="https://walkinshaw.house.gov/uploadedfiles/2026.08.20_final_letter_to_gao_re_cisa_cuts.pdf" target="_blank"><u>written</u></a> to the Government Accountability Office (GAO), calling on it to look into the effects of the cuts on the agency's ability to protect critical infrastructure and respond to evolving cyber threats.</p><p>The group has requested an investigation into how CISA’s workforce has changed over the past five years, including its size, composition, geographic distribution and number of contractors. </p><p>They also want the GAO to identify which programs have been affected by the cuts, what the effects have been, what data CISA collects and analyzes for workforce planning and whether it uses that data to align resources with agency priorities.</p><p>"At precisely the moment when our adversaries are accelerating <a href="https://www.itpro.com/security/cyber-attacks/why-attacks-against-critical-national-infrastructure-cni-are-such-a-threat">attacks against critical infrastructure</a>, the Department of Homeland Security's Cybersecurity and Infrastructure Security Agency (CISA), the nation's lead civilian cyber defense agency, has lost nearly one-third of its workforce, raising serious concerns about the agency's ability to fulfil its mission," they wrote.</p><p>"Little is known about the impact of these workforce reductions on CISA’s programs and services or what processes and plans the agency has in place to ensure the agency is hiring the right people to address lost skill sets and meet mission demands."</p><h2 id="cisa-cuts-run-deep">CISA cuts run deep</h2><p>The latest changes were announced in June as part of the 2027 budget proposal. CISA is set for a cut in funding of around $700 million - with the White House claiming that it's been functioning “as a hub in the Censorship Industrial Complex, conspiring against the First Amendment rights”.</p><p>The cuts would refocus CISA on its core mission – Federal network defense and coordinating with critical infrastructure partners – while eliminating waste by consolidating redundant security advisors and programs. Around 900 jobs are expected to go.</p><p>CISA lost nearly 1,000 employees, or about a third of its workforce, in the first half of 2025 - although the agency has since made moves to try and boost staffing again. </p><p>It's also seen cutbacks to its work on election security. And all this has come as its work has expanded more than ever, thanks to an accelerating threat environment.</p><p>Gene Moody, field CTO at Action1, said the cuts show a lack of awareness over the critical work conducted by the agency. </p><p>"In many respects, vulnerability analysis is further behind the curve than it has ever been. And it is being attacked by its own governing bodies out of ignorance and misunderstanding. This is an existential threat to cybersecurity," Moody commented. </p><p>"When analysts and programs are overloaded, the ecosystem gets noisier: important vulnerabilities compete with an enormous amount of lower-value information, prioritization becomes harder, and defenders have less confidence about what actually deserves immediate attention."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Semiconductor revenue doubles as AI data center build-outs surge ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Semiconductor revenue is set to almost double this year as the AI sector continues to reshape the market – and drive up prices for in-demand components. </p><p>New figures from Gartner project global semiconductor revenue growth to top 92% this year, reaching $1.6 trillion over last year's $809 trillion. In 2027, that’s expected to climb further to $1.9 trillion, the company said. </p><p>"The semiconductor industry is entering a fundamentally new phase of growth," said Ben Lee, Director Analyst at Gartner. "The pace of industry expansion is accelerating dramatically, driven by sustained investment in AI infrastructure and a stronger-than-anticipated memory pricing cycle."</p><p>That's good news for those manufacturing semiconductors, but the rise of AI – and the surge in demand that it's sparked for components – has led to price rises across a range of industries. </p><p>In the cloud market, a host of providers have <a href="https://www.itpro.com/hardware/ovhcloud-chief-issues-customer-price-warning-amid-surging-hardware-costs"><u>issued price hike warnings</u></a>. Meanwhile, consumer electronics are being hit hard by rising hardware costs. Apple recently <a href="https://www.itpro.com/hardware/mobile-phones/ai-demand-driving-up-apple-prices-says-cook"><u>warned that prices will rise</u></a> this year, for example, while <a href="https://www.itpro.com/hardware/this-is-the-lowest-level-of-device-shipments-witnessed-in-over-a-decade-memory-cost-increases-have-reached-a-critical-level-pc-sales-are-set-to-drop-by-10-percent-in-2026-as-enterprises-stretch-out-device-lifetimes"><u>PC shipments have hit record lows</u></a>. </p><h2 id="memory-and-beyond">Memory and beyond</h2><p>Semiconductor gains are largely driven by memory revenue, with prices for the key component skyrocketing because of AI demand. Some <a href="https://www.itpro.com/hardware/how-enterprise-storage-vendors-are-responding-to-the-memory-crunch"><u>predictions suggest that AI will consume a fifth</u></a> of all DRAM capacity in 2026. </p><p>That shortage is <a href="https://www.itpro.com/hardware/should-businesses-worry-about-rise-in-ram-prices"><u>sending prices skyrocketing</u></a> and already <a href="https://www.itpro.com/business/digital-transformation/memory-cost-it-impact-digital-transformation-projects"><u>impacting businesses' plans to upgrade tech</u></a>. </p><p>This trend is expected to continue, according to Gartner. The firm predicted DRAM revenue would increase 246.6% this year, with NAND flash revenue up by 371.9% – and that’s despite additional capacity being made available.</p><p>Memory now makes up 54% of total semiconductor revenue, a huge leap from 27% last year. Revenue for memory will top $837bn this year and $1trn next year, Gartner predicts. </p><p>"<a href="https://www.itpro.com/infrastructure/ai-infrastructure-global-divide">AI infrastructure</a> has fundamentally changed the dynamics of the memory market,” said Shrish Pant, Director Analyst at Gartner. </p><p>“While pricing expansion is accelerating growth in 2026, continued AI infrastructure deployments, higher memory content per AI server and sustained demand for high-bandwidth memory (HBM) will support memory revenue growth through 2027 and beyond."</p><p>While semiconductor revenue growth is dominated by memory price rises and demand, Gartner noted that the AI roll-out is benefiting all aspects of the industry, as AI data centers need CPUs, networking, power management, and more. </p><p>"<a href="https://www.itpro.com/technology/artificial-intelligence">AI </a>is expanding the semiconductor opportunity across the entire infrastructure stack rather than benefiting a single device category," said Lee. </p><p>Gartner said semiconductor revenue growth excluding memory would grow from $589 billion in 2025 to $718 billion in 2026, an increase of 21.9% – and reach $864 billion in 2027.</p><h2 id="ai-data-centers">AI data centers</h2><p>Notably, the mass buildout of data centers is changing how semiconductors are used and where they end up, according to Gartner. </p><p>"As AI infrastructure scales, it is not only reshaping investment across the semiconductor ecosystem but also redefining the industry’s application mix," said Lee, saying Gartner sees a "a structural shift in where semiconductor value is created and how demand is evolving across the industry.”</p><p>Gartner predicted that the AI data center ecosystem would make up over a third (36.5%) of semiconductor revenue this year, climbing to more than half (53%) by 2030. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/infrastructure/semiconductor-revenue-doubles-as-ai-data-center-build-outs-surge</link>
                                                                            <description>
                            <![CDATA[ Gartner predicts revenue growth of 92% for semiconductors, with half of that made up of AI data centers by 2030 ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">2WPKqAfKjSPhAQmNLTimYW</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/LgwczdK5agmQFVjMJpvYBH-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 25 Aug 2026 09:39:12 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Infrastructure]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/LgwczdK5agmQFVjMJpvYBH-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A data center under red light]]></media:description>                                                            <media:text><![CDATA[A data center under red light]]></media:text>
                                <media:title type="plain"><![CDATA[A data center under red light]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/LgwczdK5agmQFVjMJpvYBH-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Semiconductor revenue is set to almost double this year as the AI sector continues to reshape the market – and drive up prices for in-demand components. </p><p>New figures from Gartner project global semiconductor revenue growth to top 92% this year, reaching $1.6 trillion over last year's $809 trillion. In 2027, that’s expected to climb further to $1.9 trillion, the company said. </p><p>"The semiconductor industry is entering a fundamentally new phase of growth," said Ben Lee, Director Analyst at Gartner. "The pace of industry expansion is accelerating dramatically, driven by sustained investment in AI infrastructure and a stronger-than-anticipated memory pricing cycle."</p><p>That's good news for those manufacturing semiconductors, but the rise of AI – and the surge in demand that it's sparked for components – has led to price rises across a range of industries. </p><p>In the cloud market, a host of providers have <a href="https://www.itpro.com/hardware/ovhcloud-chief-issues-customer-price-warning-amid-surging-hardware-costs"><u>issued price hike warnings</u></a>. Meanwhile, consumer electronics are being hit hard by rising hardware costs. Apple recently <a href="https://www.itpro.com/hardware/mobile-phones/ai-demand-driving-up-apple-prices-says-cook"><u>warned that prices will rise</u></a> this year, for example, while <a href="https://www.itpro.com/hardware/this-is-the-lowest-level-of-device-shipments-witnessed-in-over-a-decade-memory-cost-increases-have-reached-a-critical-level-pc-sales-are-set-to-drop-by-10-percent-in-2026-as-enterprises-stretch-out-device-lifetimes"><u>PC shipments have hit record lows</u></a>. </p><h2 id="memory-and-beyond">Memory and beyond</h2><p>Semiconductor gains are largely driven by memory revenue, with prices for the key component skyrocketing because of AI demand. Some <a href="https://www.itpro.com/hardware/how-enterprise-storage-vendors-are-responding-to-the-memory-crunch"><u>predictions suggest that AI will consume a fifth</u></a> of all DRAM capacity in 2026. </p><p>That shortage is <a href="https://www.itpro.com/hardware/should-businesses-worry-about-rise-in-ram-prices"><u>sending prices skyrocketing</u></a> and already <a href="https://www.itpro.com/business/digital-transformation/memory-cost-it-impact-digital-transformation-projects"><u>impacting businesses' plans to upgrade tech</u></a>. </p><p>This trend is expected to continue, according to Gartner. The firm predicted DRAM revenue would increase 246.6% this year, with NAND flash revenue up by 371.9% – and that’s despite additional capacity being made available.</p><p>Memory now makes up 54% of total semiconductor revenue, a huge leap from 27% last year. Revenue for memory will top $837bn this year and $1trn next year, Gartner predicts. </p><p>"<a href="https://www.itpro.com/infrastructure/ai-infrastructure-global-divide">AI infrastructure</a> has fundamentally changed the dynamics of the memory market,” said Shrish Pant, Director Analyst at Gartner. </p><p>“While pricing expansion is accelerating growth in 2026, continued AI infrastructure deployments, higher memory content per AI server and sustained demand for high-bandwidth memory (HBM) will support memory revenue growth through 2027 and beyond."</p><p>While semiconductor revenue growth is dominated by memory price rises and demand, Gartner noted that the AI roll-out is benefiting all aspects of the industry, as AI data centers need CPUs, networking, power management, and more. </p><p>"<a href="https://www.itpro.com/technology/artificial-intelligence">AI </a>is expanding the semiconductor opportunity across the entire infrastructure stack rather than benefiting a single device category," said Lee. </p><p>Gartner said semiconductor revenue growth excluding memory would grow from $589 billion in 2025 to $718 billion in 2026, an increase of 21.9% – and reach $864 billion in 2027.</p><h2 id="ai-data-centers">AI data centers</h2><p>Notably, the mass buildout of data centers is changing how semiconductors are used and where they end up, according to Gartner. </p><p>"As AI infrastructure scales, it is not only reshaping investment across the semiconductor ecosystem but also redefining the industry’s application mix," said Lee, saying Gartner sees a "a structural shift in where semiconductor value is created and how demand is evolving across the industry.”</p><p>Gartner predicted that the AI data center ecosystem would make up over a third (36.5%) of semiconductor revenue this year, climbing to more than half (53%) by 2030. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Freeths names new CTO in digital transformation push ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Freeths has announced the appointment of John Jones as its new <a href="https://www.itpro.com/strategy/28237/cto-job-description-what-does-a-cto-do">chief technology officer (CTO)</a>, in a move the law firm said will strengthen its leadership bench and growth ambitions.</p><p>Jones will work across Freeths’ twelve offices located across the UK and will oversee the shaping and delivery of its technology strategy.</p><p>His remit will include ensuring the business has secure, resilient, and future-ready technology platforms that support employees, improve the client experience, and enable operational efficiency.</p><p>In an announcement, Freeths national managing partner Karl Jansen said the appointment comes at an “important point” in the company’s ongoing growth and development.</p><p>“Technology is central to how we support our people, serve our clients and operate as a modern law firm,” he commented. </p><p>“John’s depth of experience, combined with his pragmatic and inclusive leadership style, will be instrumental as we continue to build scalable, resilient and innovative technology foundations across the firm.”</p><p>Headquartered in Nottingham, Freeths is a UK commercial law firm serving private and public sector clients, including organizations such as Centrica, Aldi, Mercedes-Benz UK, Tarmac, Experian, and Harworth.</p><p>Jones joins the business with more than 30 years’ experience across technology and professional services. Most recently, he served as CTO at Forvis Mazars and previously held senior tech roles at BDO.</p><p>He began his <a href="https://www.itpro.com/business-strategy/careers-training/356509/how-to-become-a-software-developer">career as a software developer</a> working on business-critical applications before moving into senior technology leadership positions within the professional services sector.</p><p>Jones’ experience includes working with enterprise platforms such as Microsoft, Workday, and legal-specific technologies, while his expertise spans data, digital skills, large-scale transformation programs, as well as the safe and effective use of emerging technologies such as AI.</p><p>Commenting on his new role, Jones said he was impressed by Freeths’ existing technology platforms, as well as the clarity of its plans for the future.</p><p>“Professional services, and the legal sector in particular, is going through significant change, and technology has a vital role to play in enabling better outcomes for clients and colleagues,” he explained.</p><p>“I’m excited to be joining Freeths and to be working closely with teams across the business to support the next stage of the firm’s journey.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/leadership/freeths-names-new-cto-in-digital-transformation-push</link>
                                                                            <description>
                            <![CDATA[ The former Forvis Mazars executive will lead the law firm’s technology strategy as it continues to invest in digital transformation ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">9cddZ4TqKNWNtbQarqqsji</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/nfTbQxADbYBGFm86FNFt4i-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 25 Aug 2026 07:25:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Leadership]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (Daniel Todd) ]]></author>                    <dc:creator><![CDATA[ Daniel Todd ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/SRyC34qeLpNDj3dJtsVDhT.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/nfTbQxADbYBGFm86FNFt4i-1280-80.jpg">
                                                            <media:credit><![CDATA[Freeths]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Freeths chief technology officer (CTO) John Jones pictured wearing a suit with open collar shirt.]]></media:description>                                                            <media:text><![CDATA[Freeths chief technology officer (CTO) John Jones pictured wearing a suit with open collar shirt.]]></media:text>
                                <media:title type="plain"><![CDATA[Freeths chief technology officer (CTO) John Jones pictured wearing a suit with open collar shirt.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/nfTbQxADbYBGFm86FNFt4i-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Freeths has announced the appointment of John Jones as its new <a href="https://www.itpro.com/strategy/28237/cto-job-description-what-does-a-cto-do">chief technology officer (CTO)</a>, in a move the law firm said will strengthen its leadership bench and growth ambitions.</p><p>Jones will work across Freeths’ twelve offices located across the UK and will oversee the shaping and delivery of its technology strategy.</p><p>His remit will include ensuring the business has secure, resilient, and future-ready technology platforms that support employees, improve the client experience, and enable operational efficiency.</p><p>In an announcement, Freeths national managing partner Karl Jansen said the appointment comes at an “important point” in the company’s ongoing growth and development.</p><p>“Technology is central to how we support our people, serve our clients and operate as a modern law firm,” he commented. </p><p>“John’s depth of experience, combined with his pragmatic and inclusive leadership style, will be instrumental as we continue to build scalable, resilient and innovative technology foundations across the firm.”</p><p>Headquartered in Nottingham, Freeths is a UK commercial law firm serving private and public sector clients, including organizations such as Centrica, Aldi, Mercedes-Benz UK, Tarmac, Experian, and Harworth.</p><p>Jones joins the business with more than 30 years’ experience across technology and professional services. Most recently, he served as CTO at Forvis Mazars and previously held senior tech roles at BDO.</p><p>He began his <a href="https://www.itpro.com/business-strategy/careers-training/356509/how-to-become-a-software-developer">career as a software developer</a> working on business-critical applications before moving into senior technology leadership positions within the professional services sector.</p><p>Jones’ experience includes working with enterprise platforms such as Microsoft, Workday, and legal-specific technologies, while his expertise spans data, digital skills, large-scale transformation programs, as well as the safe and effective use of emerging technologies such as AI.</p><p>Commenting on his new role, Jones said he was impressed by Freeths’ existing technology platforms, as well as the clarity of its plans for the future.</p><p>“Professional services, and the legal sector in particular, is going through significant change, and technology has a vital role to play in enabling better outcomes for clients and colleagues,” he explained.</p><p>“I’m excited to be joining Freeths and to be working closely with teams across the business to support the next stage of the firm’s journey.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Why you need to start ‘storagemaxxing’ ]]></title>
                                                                                                <dc:content><![CDATA[ <p>While tokenmaxxing has taken the tech industry by storm in 2026, it’s time enterprises start ‘storagemaxxing’ to avoid being hit with huge infrastructure costs.</p><p>That’s according to David Boland, VP of cloud strategy at <a href="https://www.itpro.com/hardware/storage/wasabi-technologies-emea-partner-program-2026">Wasabi</a>. Speaking to <em>ITPro</em>, Boland believes that a confluence of industry trends means IT leaders need to sharpen their focus on <a href="https://www.itpro.com/business/data-and-insights/data-storage-is-dead-long-live-data-management">storage optimization</a>. </p><p>Hardware supply chain issues and <a href="https://www.itpro.com/hardware/this-is-the-lowest-level-of-device-shipments-witnessed-in-over-a-decade-memory-cost-increases-have-reached-a-critical-level-pc-sales-are-set-to-drop-by-10-percent-in-2026-as-enterprises-stretch-out-device-lifetimes">rising prices</a> are an area of acute concern for IT leaders in 2026 and are forcing some to alter strategies to compensate for growing costs, he said. </p><p>“We all know that the supply chain issue for storage is big news,” Boland told <em>ITPro</em>. “It’s really hard for organizations, especially if they don’t have deep pockets or are large, well-known organizations; it’s always difficult for them to get the hardware that they need.”</p><p>The result, according to Boland, is that they “need to look elsewhere” for alternatives or maximize the use of their existing infrastructure. </p><p>With AI in the equation, this adds a new layer of complexity to storage optimization, Boland noted. Simply put, there are a “ton of different storage options out there” yet each AI use case has different requirements from a storage perspective. </p><p>“Whether it’s inexpensive, long-term storage for compliance and regulatory reasons, or in the training process or the preparation process, [such as] storing checkpoints of training,” he explains. “Each one of these, let’s call them phases, in the AI lifecycle have a different storage need.”</p><p>Given the varied storage requirements when it comes to AI data sets, Boland said that some enterprises find their existing infrastructure isn’t compatible. </p><p>“Some high performance, expensive storage is not a great fit for your long term archiving, so therefore knowing where to put your data at which phase of that AI pipeline helps you maximize your investment or maximize the amount of money you spend.”</p><h2 id="storagemaxxing-explained">Storagemaxxing explained</h2><p>Storagemaxxing is essentially a term designed to “give some new life” to traditional storage optimization processes, Boland said, and one that is inspired by various social media ‘maxxing’ trends. </p><p>We’ve all seen them online: ‘looksmaxxing’, ‘tokenmaxxing’, <a href="https://www.theguardian.com/lifeandstyle/2026/jul/10/from-hobbitmaxxing-to-catholicmaxxing-how-well-do-you-know-your-maxxes" target="_blank"><u>even ‘hobbitmaxxing</u></a>’. </p><p>With storagemaxxing, this is primarily about streamlining storage to accommodate for various stages of the AI lifecycle, be that from data collection to training, deployment, and retention. </p><p>The aim here is to ensure that data stays “AI-ready, secure, cost-predictable, and free to move between cloud and compute providers as workloads change”, Boland noted in a recent <a href="https://wasabi.com/blog/industry-trends/ai-storagemaxxing-the-hottest-ai-strategy-you-ve-never-heard-of" target="_blank"><u>blog post</u></a>. </p><p>Notably, this has a critical impact on both AI and cost efficiency. AI tools need swift access to the data that feeds them. Ensuring seamless access by optimizing storage also reduces the strain placed on infrastructure. </p><h2 id="costly-changes">Costly changes</h2><p>Being “free to move” data between cloud and compute providers is an area Boland said many enterprises have been caught off guard with in recent months. </p><p>Many enterprises didn’t anticipate certain costs associated with storage, he said – be that storing data on the wrong platform or in the wrong cloud tier. </p><p>This has a direct impact on costs, he said. Even simply accessing that data or moving it can incur further charges due to egress fees. Indeed, Wasabi’s <em>2026 Cloud Storage Index</em> survey found 48% of storage costs now go toward fees rather than actual capacity. </p><p>As <a href="https://www.itpro.com/cloud/cloud-storage/costly-cloud-storage-fees-are-pushing-it-budgets-to-breaking-point"><u><em>ITPro </em></u><u>reported at the time</u></a>, this is severely impacting IT budgets and forcing a rethink of storage strategies. </p><p>“Being locked into a storage solution because you can't afford to move that data out, either through <a href="https://www.itpro.com/cloud/cloud-computing/aws-and-google-are-leading-by-example-with-data-transfer-policies-but-how-will-microsoft-respond">egress charges</a> or retrieval fees, is an issue,” he said. </p><p>“I see that becoming more of an issue in the AI space. What's nice about hyperscalers is they have a broad range of services that go from GPU to CPU to high-performance storage to low-cost object storage,” Boland added. </p><p>“If there comes a point when a customer wants to move that data to another provider for either a better GPU cost or for availability of services, then they get hit with fees that they don't anticipate.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/hardware/storage/why-you-need-to-start-storagemaxxing</link>
                                                                            <description>
                            <![CDATA[ Rising hardware costs and AI infrastructure requirements mean IT leaders should sharpen their focus on optimization ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">KyYmQDhU6W3ujQbEcWzZL</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/XX3cM6cQzu8aXoa83YYUPE-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 24 Aug 2026 23:01:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Storage]]></category>
                                                    <category><![CDATA[Hardware]]></category>
                                                    <category><![CDATA[Desktops]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/XX3cM6cQzu8aXoa83YYUPE-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Cloud storage concept image showing a cloud symbol placed on top of microchips connected to a digital interface.]]></media:description>                                                            <media:text><![CDATA[Cloud storage concept image showing a cloud symbol placed on top of microchips connected to a digital interface.]]></media:text>
                                <media:title type="plain"><![CDATA[Cloud storage concept image showing a cloud symbol placed on top of microchips connected to a digital interface.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/XX3cM6cQzu8aXoa83YYUPE-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>While tokenmaxxing has taken the tech industry by storm in 2026, it’s time enterprises start ‘storagemaxxing’ to avoid being hit with huge infrastructure costs.</p><p>That’s according to David Boland, VP of cloud strategy at <a href="https://www.itpro.com/hardware/storage/wasabi-technologies-emea-partner-program-2026">Wasabi</a>. Speaking to <em>ITPro</em>, Boland believes that a confluence of industry trends means IT leaders need to sharpen their focus on <a href="https://www.itpro.com/business/data-and-insights/data-storage-is-dead-long-live-data-management">storage optimization</a>. </p><p>Hardware supply chain issues and <a href="https://www.itpro.com/hardware/this-is-the-lowest-level-of-device-shipments-witnessed-in-over-a-decade-memory-cost-increases-have-reached-a-critical-level-pc-sales-are-set-to-drop-by-10-percent-in-2026-as-enterprises-stretch-out-device-lifetimes">rising prices</a> are an area of acute concern for IT leaders in 2026 and are forcing some to alter strategies to compensate for growing costs, he said. </p><p>“We all know that the supply chain issue for storage is big news,” Boland told <em>ITPro</em>. “It’s really hard for organizations, especially if they don’t have deep pockets or are large, well-known organizations; it’s always difficult for them to get the hardware that they need.”</p><p>The result, according to Boland, is that they “need to look elsewhere” for alternatives or maximize the use of their existing infrastructure. </p><p>With AI in the equation, this adds a new layer of complexity to storage optimization, Boland noted. Simply put, there are a “ton of different storage options out there” yet each AI use case has different requirements from a storage perspective. </p><p>“Whether it’s inexpensive, long-term storage for compliance and regulatory reasons, or in the training process or the preparation process, [such as] storing checkpoints of training,” he explains. “Each one of these, let’s call them phases, in the AI lifecycle have a different storage need.”</p><p>Given the varied storage requirements when it comes to AI data sets, Boland said that some enterprises find their existing infrastructure isn’t compatible. </p><p>“Some high performance, expensive storage is not a great fit for your long term archiving, so therefore knowing where to put your data at which phase of that AI pipeline helps you maximize your investment or maximize the amount of money you spend.”</p><h2 id="storagemaxxing-explained">Storagemaxxing explained</h2><p>Storagemaxxing is essentially a term designed to “give some new life” to traditional storage optimization processes, Boland said, and one that is inspired by various social media ‘maxxing’ trends. </p><p>We’ve all seen them online: ‘looksmaxxing’, ‘tokenmaxxing’, <a href="https://www.theguardian.com/lifeandstyle/2026/jul/10/from-hobbitmaxxing-to-catholicmaxxing-how-well-do-you-know-your-maxxes" target="_blank"><u>even ‘hobbitmaxxing</u></a>’. </p><p>With storagemaxxing, this is primarily about streamlining storage to accommodate for various stages of the AI lifecycle, be that from data collection to training, deployment, and retention. </p><p>The aim here is to ensure that data stays “AI-ready, secure, cost-predictable, and free to move between cloud and compute providers as workloads change”, Boland noted in a recent <a href="https://wasabi.com/blog/industry-trends/ai-storagemaxxing-the-hottest-ai-strategy-you-ve-never-heard-of" target="_blank"><u>blog post</u></a>. </p><p>Notably, this has a critical impact on both AI and cost efficiency. AI tools need swift access to the data that feeds them. Ensuring seamless access by optimizing storage also reduces the strain placed on infrastructure. </p><h2 id="costly-changes">Costly changes</h2><p>Being “free to move” data between cloud and compute providers is an area Boland said many enterprises have been caught off guard with in recent months. </p><p>Many enterprises didn’t anticipate certain costs associated with storage, he said – be that storing data on the wrong platform or in the wrong cloud tier. </p><p>This has a direct impact on costs, he said. Even simply accessing that data or moving it can incur further charges due to egress fees. Indeed, Wasabi’s <em>2026 Cloud Storage Index</em> survey found 48% of storage costs now go toward fees rather than actual capacity. </p><p>As <a href="https://www.itpro.com/cloud/cloud-storage/costly-cloud-storage-fees-are-pushing-it-budgets-to-breaking-point"><u><em>ITPro </em></u><u>reported at the time</u></a>, this is severely impacting IT budgets and forcing a rethink of storage strategies. </p><p>“Being locked into a storage solution because you can't afford to move that data out, either through <a href="https://www.itpro.com/cloud/cloud-computing/aws-and-google-are-leading-by-example-with-data-transfer-policies-but-how-will-microsoft-respond">egress charges</a> or retrieval fees, is an issue,” he said. </p><p>“I see that becoming more of an issue in the AI space. What's nice about hyperscalers is they have a broad range of services that go from GPU to CPU to high-performance storage to low-cost object storage,” Boland added. </p><p>“If there comes a point when a customer wants to move that data to another provider for either a better GPU cost or for availability of services, then they get hit with fees that they don't anticipate.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Researchers warn thousands of active AWS access keys are publicly exposed ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Tens of thousands of previously-exposed AWS access keys are still active and valid, researchers have warned, with hundreds holding full admin rights.</p><p>Truffle Security <a href="https://trufflesecurity.com/blog/leaked-corporate-aws-keys-held-full-admin-rights" target="_blank"><u>said</u></a> its scanners verified 64,024 unique AWS key pairs across 431,875 public findings that surfaced publicly between August 2022 and August this year.</p><p>This includes git history, <a href="https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime">Hugging Face</a> datasets, Docker images, package registries, and CI logs, the company said. </p><p>It then re-verified the 10,616 leaked keys with complete credentials and found that 88% still authenticate, including 526 root keys and 242 <a href="https://www.itpro.com/security/how-to-implement-identity-and-access-management-iam-effectively-in-your-business">identity and access management (IAM)</a> users holding AdministratorAccess - which have full admin rights.</p><p>"The largest single source is Hugging Face. AWS credentials are the second most common secret type we verify there, with 8,482 unique live keys across 3,394 public datasets," said the firm. </p><p>"Hugging Face keys also skew privileged: 17.9% are root, the highest share of any source we track. Most of those datasets are snapshots of public code repackaged for training."</p><p>Of the live keys with creation dates, the median age was 1,831 days. Half are over five years old. The oldest was 17.4 years, nearly as old as IAM itself.</p><p>"Only 25 keys (0.9%) were created in the last 30 days. Almost none of this population leaked recently. The count has been building for years," Truffle Security said.</p><p>"Rotation is the rarer event. Of the keys where we could enumerate the user's access keys, only 13.7% (398 of 2,903) have any newer key alongside the leaked one. The other 86% were never rotated, superseded, or cleaned up."</p><p>Of the 7,590 active IAM users, 929 carry AWS's own AWSCompromisedKeyQuarantine policy, and were detected by AWS as exposed and restricted. Of these, 112 carry the original version, which AWS stopped applying in 2023. </p><p>Researchers noted that they were flagged at least three years ago and their owners notified by AWS. However, no action was apparently taken and the keys still authenticate.</p><h2 id="tighter-access-controls">Tighter access controls</h2><p>Truffle Security said organizations delete root access keys. One-in-six leaked keys is root, for example, and as such there is no longer any legitimate reason for a root access key to exist in 2026.</p><p>They should also sort their IAM keys by age and set a budget alarm, even a small one, to catch cryptomining early - 90.5% of leaked-key accounts have none. </p><p>Elsewhere, researchers said security teams should assume that committed means leaked. Nearly half (43%) of keys were sighted more than once across repos, datasets, and images. Deleting the file does not help once it is in a training corpus.</p><p>"Any time AWS is aware of exposed keys, we notify the affected customers. We also thoroughly investigate all reports of exposed keys and quickly take any necessary actions, such as applying quarantine policies to minimize risks for customers without disrupting their IT environment," an AWS spokesperson told <em>ITPro</em>. </p><p>"As always, customers can contact AWS Support with any questions or concerns about the security of their account."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/researchers-warn-thousands-of-active-aws-access-keys-are-publicly-exposed</link>
                                                                            <description>
                            <![CDATA[ In hundreds of cases, the keys could give attackers complete administrative control ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">4kPptzQTbXTwcCpoauExJE</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/i2VUb2oLPjFFkMn6CA4Huj-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 24 Aug 2026 11:16:36 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/i2VUb2oLPjFFkMn6CA4Huj-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Amazon Web Services (AWS) logo and branding pictured at the Hannover Messe industrial trade fair for mechanical and electrical engineering and digital industries.]]></media:description>                                                            <media:text><![CDATA[Amazon Web Services (AWS) logo and branding pictured at the Hannover Messe industrial trade fair for mechanical and electrical engineering and digital industries.]]></media:text>
                                <media:title type="plain"><![CDATA[Amazon Web Services (AWS) logo and branding pictured at the Hannover Messe industrial trade fair for mechanical and electrical engineering and digital industries.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/i2VUb2oLPjFFkMn6CA4Huj-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Tens of thousands of previously-exposed AWS access keys are still active and valid, researchers have warned, with hundreds holding full admin rights.</p><p>Truffle Security <a href="https://trufflesecurity.com/blog/leaked-corporate-aws-keys-held-full-admin-rights" target="_blank"><u>said</u></a> its scanners verified 64,024 unique AWS key pairs across 431,875 public findings that surfaced publicly between August 2022 and August this year.</p><p>This includes git history, <a href="https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime">Hugging Face</a> datasets, Docker images, package registries, and CI logs, the company said. </p><p>It then re-verified the 10,616 leaked keys with complete credentials and found that 88% still authenticate, including 526 root keys and 242 <a href="https://www.itpro.com/security/how-to-implement-identity-and-access-management-iam-effectively-in-your-business">identity and access management (IAM)</a> users holding AdministratorAccess - which have full admin rights.</p><p>"The largest single source is Hugging Face. AWS credentials are the second most common secret type we verify there, with 8,482 unique live keys across 3,394 public datasets," said the firm. </p><p>"Hugging Face keys also skew privileged: 17.9% are root, the highest share of any source we track. Most of those datasets are snapshots of public code repackaged for training."</p><p>Of the live keys with creation dates, the median age was 1,831 days. Half are over five years old. The oldest was 17.4 years, nearly as old as IAM itself.</p><p>"Only 25 keys (0.9%) were created in the last 30 days. Almost none of this population leaked recently. The count has been building for years," Truffle Security said.</p><p>"Rotation is the rarer event. Of the keys where we could enumerate the user's access keys, only 13.7% (398 of 2,903) have any newer key alongside the leaked one. The other 86% were never rotated, superseded, or cleaned up."</p><p>Of the 7,590 active IAM users, 929 carry AWS's own AWSCompromisedKeyQuarantine policy, and were detected by AWS as exposed and restricted. Of these, 112 carry the original version, which AWS stopped applying in 2023. </p><p>Researchers noted that they were flagged at least three years ago and their owners notified by AWS. However, no action was apparently taken and the keys still authenticate.</p><h2 id="tighter-access-controls">Tighter access controls</h2><p>Truffle Security said organizations delete root access keys. One-in-six leaked keys is root, for example, and as such there is no longer any legitimate reason for a root access key to exist in 2026.</p><p>They should also sort their IAM keys by age and set a budget alarm, even a small one, to catch cryptomining early - 90.5% of leaked-key accounts have none. </p><p>Elsewhere, researchers said security teams should assume that committed means leaked. Nearly half (43%) of keys were sighted more than once across repos, datasets, and images. Deleting the file does not help once it is in a training corpus.</p><p>"Any time AWS is aware of exposed keys, we notify the affected customers. We also thoroughly investigate all reports of exposed keys and quickly take any necessary actions, such as applying quarantine policies to minimize risks for customers without disrupting their IT environment," an AWS spokesperson told <em>ITPro</em>. </p><p>"As always, customers can contact AWS Support with any questions or concerns about the security of their account."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Iranian cyber attack on UK power plant ‘should concern every organization responsible for keeping this country running’ ]]></title>
                                                                                                <dc:content><![CDATA[ <p>A small UK power plant was reportedly shut down for four days last month following a cyber attack attributed to Iranian hackers.</p><p>The incident appears to have affected a small-scale gas generator, rather than a large power station, and did not affect the wider grid. </p><p>According to the <a href="https://www.telegraph.co.uk/news/2026/08/22/iranian-hackers-shut-down-uk-power-plant/" target="_blank"><u><em>Daily Telegraph</em></u></a><em>,</em> the government has contacted the chief executives of power companies following the incident and has written to businesses with advice on the steps they should take to protect themselves.</p><p>The attack has been attributed to hackers affiliated to the Iranian government, and is believed to be the first of its kind in the UK.</p><p>Graeme Stewart, head of public sector at Check Point, said the incident highlights the potential risks posed by threats to critical infrastructure. </p><p>“This marks a grave escalation in the <a href="https://www.itpro.com/technology/artificial-intelligence/its-destructive-not-ransomware-security-experts-weigh-in-on-motivation-behind-stryker-cyber-attack">Iran conflict</a> because a hostile state-linked cyber threat has reportedly reached into UK energy infrastructure and caused a physical shutdown lasting four days,” he said. </p><p>“That should concern every organization responsible for keeping this country running. For most Brits, the Iran conflict is happening thousands of miles away and cyber warfare probably still conjures up images of stolen passwords, leaked data and companies being held to ransom,” Stewart added. </p><p>“The prospect of a hostile state being able to reach into the infrastructure beneath our everyday lives changes that dramatically."</p><h2 id="rising-state-sponsored-threats">Rising state-sponsored threats</h2><p>Notably, the incident coincided with a <a href="https://www.itpro.com/security/cyber-attacks/attacks-on-us-water-systems-could-be-the-tip-of-the-iceberg-cyber-experts-warn"><u>series of attacks on US water supply infrastructure</u></a> in recent weeks. More than a dozen states were affected in the campaign, which is believed to be linked to Iranian-backed threat groups. </p><p>The attacks <a href="https://www.itpro.com/security/an-evolution-in-threat-actor-capabilities-cisa-warns-hackers-are-targeting-siemens-industrial-controllers-and-theyre-using-ai-generated-code"><u>targeted internet-exposed programmable logic controllers (PLCs),</u></a> with the attackers remotely changing IP addresses and turning on and setting passwords. </p><p>Several water firms were left unable to view connected equipment, and in some cases it was shut down. </p><p>The FBI has <a href="https://www.fbi.gov/investigate/cyber/alerts/2026/malicious-cyber-actors-targeting-water-and-wastewater-sector-internet--facing-programmable-logic-controllers-causing-operational-disruptions" target="_blank"><u>recommended</u></a> disconnecting PLCs from the public-facing internet, strictly controlling access to them, tightening up passwords, and reviewing project files running on PLCs for unauthorized changes.</p><h2 id="uk-infrastructure-in-the-crosshairs">UK infrastructure in the crosshairs</h2><p>According to the <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do"><u>National Cyber Security Centre (NCSC)</u></a>, the UK is experiencing increased threats from Iranian-backed cyber groups. </p><p>Earlier this year, the agency <a href="https://www.ncsc.gov.uk/news/ncsc-advises-uk-organisations-take-action-following-conflict-in-middle-east"><u>issued a warning</u></a> over heightened risk of indirect threats for organizations with a presence, or supply chains, in the Middle East. </p><p>Stewart suggested that the impact of an attack on larger power supply operators or other critical infrastructure firms could be disastrous. </p><p>"We have to ask what happens if the next target is bigger, more critical or more deeply connected to the services millions of people rely on. Britain’s critical national infrastructure underpins almost every part of modern life, including electricity, water, transport and communications, and those systems are increasingly digital, interconnected and dependent on one another," he said. </p><p>"The question now has to be whether Britain is genuinely ready if something more serious follows.”</p><p>A spokesperson for the UK government told ITPro that it's working on an Energy Resilience Strategy. Set for publication later this year, this will outline plans for ensuring the energy system remains stable and secure. </p><p>"The UK has a highly resilience energy system. We work closely with the energy sector to protect infrastructure and ensure the highest standards of security," the spokesperson added.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/cyber-attacks/iranian-cyber-attack-on-uk-power-plant-should-concern-every-organization-responsible-for-keeping-this-country-running</link>
                                                                            <description>
                            <![CDATA[ The attack is believed to be the first of its kind in the UK ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">a3KtrhTkLYTLzbspGv6TUX</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/9Aj26fi5g7AJFcmpsnt24C-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 24 Aug 2026 09:58:17 +0000</pubDate>                                                                                                                                <updated>Mon, 24 Aug 2026 10:00:36 +0000</updated>
                                                                                                                                            <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/9Aj26fi5g7AJFcmpsnt24C-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Map of the United Kingdom and Northern Ireland on a digital interface.]]></media:description>                                                            <media:text><![CDATA[Map of the United Kingdom and Northern Ireland on a digital interface.]]></media:text>
                                <media:title type="plain"><![CDATA[Map of the United Kingdom and Northern Ireland on a digital interface.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/9Aj26fi5g7AJFcmpsnt24C-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A small UK power plant was reportedly shut down for four days last month following a cyber attack attributed to Iranian hackers.</p><p>The incident appears to have affected a small-scale gas generator, rather than a large power station, and did not affect the wider grid. </p><p>According to the <a href="https://www.telegraph.co.uk/news/2026/08/22/iranian-hackers-shut-down-uk-power-plant/" target="_blank"><u><em>Daily Telegraph</em></u></a><em>,</em> the government has contacted the chief executives of power companies following the incident and has written to businesses with advice on the steps they should take to protect themselves.</p><p>The attack has been attributed to hackers affiliated to the Iranian government, and is believed to be the first of its kind in the UK.</p><p>Graeme Stewart, head of public sector at Check Point, said the incident highlights the potential risks posed by threats to critical infrastructure. </p><p>“This marks a grave escalation in the <a href="https://www.itpro.com/technology/artificial-intelligence/its-destructive-not-ransomware-security-experts-weigh-in-on-motivation-behind-stryker-cyber-attack">Iran conflict</a> because a hostile state-linked cyber threat has reportedly reached into UK energy infrastructure and caused a physical shutdown lasting four days,” he said. </p><p>“That should concern every organization responsible for keeping this country running. For most Brits, the Iran conflict is happening thousands of miles away and cyber warfare probably still conjures up images of stolen passwords, leaked data and companies being held to ransom,” Stewart added. </p><p>“The prospect of a hostile state being able to reach into the infrastructure beneath our everyday lives changes that dramatically."</p><h2 id="rising-state-sponsored-threats">Rising state-sponsored threats</h2><p>Notably, the incident coincided with a <a href="https://www.itpro.com/security/cyber-attacks/attacks-on-us-water-systems-could-be-the-tip-of-the-iceberg-cyber-experts-warn"><u>series of attacks on US water supply infrastructure</u></a> in recent weeks. More than a dozen states were affected in the campaign, which is believed to be linked to Iranian-backed threat groups. </p><p>The attacks <a href="https://www.itpro.com/security/an-evolution-in-threat-actor-capabilities-cisa-warns-hackers-are-targeting-siemens-industrial-controllers-and-theyre-using-ai-generated-code"><u>targeted internet-exposed programmable logic controllers (PLCs),</u></a> with the attackers remotely changing IP addresses and turning on and setting passwords. </p><p>Several water firms were left unable to view connected equipment, and in some cases it was shut down. </p><p>The FBI has <a href="https://www.fbi.gov/investigate/cyber/alerts/2026/malicious-cyber-actors-targeting-water-and-wastewater-sector-internet--facing-programmable-logic-controllers-causing-operational-disruptions" target="_blank"><u>recommended</u></a> disconnecting PLCs from the public-facing internet, strictly controlling access to them, tightening up passwords, and reviewing project files running on PLCs for unauthorized changes.</p><h2 id="uk-infrastructure-in-the-crosshairs">UK infrastructure in the crosshairs</h2><p>According to the <a href="https://www.itpro.com/security/what-is-the-national-cyber-security-centre-ncsc-and-what-does-it-do"><u>National Cyber Security Centre (NCSC)</u></a>, the UK is experiencing increased threats from Iranian-backed cyber groups. </p><p>Earlier this year, the agency <a href="https://www.ncsc.gov.uk/news/ncsc-advises-uk-organisations-take-action-following-conflict-in-middle-east"><u>issued a warning</u></a> over heightened risk of indirect threats for organizations with a presence, or supply chains, in the Middle East. </p><p>Stewart suggested that the impact of an attack on larger power supply operators or other critical infrastructure firms could be disastrous. </p><p>"We have to ask what happens if the next target is bigger, more critical or more deeply connected to the services millions of people rely on. Britain’s critical national infrastructure underpins almost every part of modern life, including electricity, water, transport and communications, and those systems are increasingly digital, interconnected and dependent on one another," he said. </p><p>"The question now has to be whether Britain is genuinely ready if something more serious follows.”</p><p>A spokesperson for the UK government told ITPro that it's working on an Energy Resilience Strategy. Set for publication later this year, this will outline plans for ensuring the energy system remains stable and secure. </p><p>"The UK has a highly resilience energy system. We work closely with the energy sector to protect infrastructure and ensure the highest standards of security," the spokesperson added.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘We are about to see the greatest boom in people starting smaller businesses that we’ve ever seen’: OpenAI CEO Sam Altman thinks AI will spark a new wave of entrepreneurship ]]></title>
                                                                                                <dc:content><![CDATA[ <p>OpenAI CEO Sam Altman believes AI could spark a new wave of small businesses, but the tech industry has a lot of work to do convincing entrepreneurs how the technology can help. </p><p>Speaking on the <a href="https://www.youtube.com/watch?v=kG8AoExkX40" target="_blank"><u>David Senra podcast</u></a>, Altman suggested AI could help break down traditional barriers for entrepreneurs, particularly in terms of financing and technical capabilities. </p><p>“Even if most people don’t want to start really big companies, a lot of people want to start smaller companies, and that has been hard,” he said. </p><p>“That has been something that has required a fair amount of privilege, and luck, and resources to be able to do. We are about to see the greatest boom in people starting smaller businesses that we have ever seen,” Altman added. “I think AI is empowering that.”</p><p>Altman’s optimistic outlook on this front is reflected in recent research conducted by OpenAI. As <a href="https://www.itpro.com/technology/artificial-intelligence/openai-says-ai-tools-are-paying-dividends-for-small-businesses-but-uptake-is-sluggish-in-several-uk-regions"><u><em>ITPro </em></u><u>reported in March</u></a>, a survey by the firm highlighted a strong appetite for <a href="https://www.itpro.com/technology/artificial-intelligence/amazing-ai-tools-to-try-today"><u>AI tools</u></a> among small businesses across the UK. </p><p>Eight-in-ten small businesses across the country now use the technology in daily operations, OpenAI found, although the study warned that uptake varies wildly on a region-by-region basis. </p><p>Notably, Altman told Senra that OpenAI and the broader tech industry hasn’t quite emphasized the potential benefits of AI to entrepreneurs and small businesses in recent years. </p><p>The focus has largely been on larger organizations and how the technology is impacting operations in these domains. </p><p>“For some reason the field, including us, has not talked about that enough, even though we see all the signs of it,” he said. “We have not built enough products to accelerate that, but I think we’re going to see a lot more of that."</p><h2 id="some-smbs-are-pulling-ahead">Some SMBs are pulling ahead</h2><p>Altman’s comments come in the wake of recent <a href="https://www.itpro.com/business/business-strategy/flexibility-is-a-huge-advantage-for-small-businesses-adopting-ai-but-clear-strategy-and-bold-leadership-is-critical"><u>research from Dell Technologies</u></a> which found small and medium-sized businesses (SMBs) are increasingly optimistic about the impact of AI. </p><p>The study found two-thirds (66%) of UK small businesses view AI as a “route to growth” while more than half (56%) believe the technology will give them a competitive advantage. </p><p>Brian Horsburgh, UK small business country manager at Dell Technologies, told <em>ITPro </em>that small businesses have a huge advantage over larger companies in terms of adoption. </p><p>Smaller firms are far more agile and typically more flexible in how they integrate the technology in daily operations. This, the study found, is highlighted in the rate of successful adoption projects. </p><p>Indeed, larger companies tend to cite a broader range of barriers when it comes to adoption, including lengthy approval processes, fear of failure, or resistance to change across the workforce. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/we-are-about-to-see-the-greatest-boom-in-people-starting-smaller-businesses-that-weve-ever-seen-openai-ceo-sam-altman-thinks-ai-will-spark-a-new-wave-of-entrepreneurship</link>
                                                                            <description>
                            <![CDATA[ The OpenAI chief executive thinks the tech industry needs to get better at selling the benefits of AI to small businesses and entrepreneurs ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">ZU76ERZMpmJb6gx9Cq2tCE</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Qt2sKwuHXnFVHSX5uqCX8W-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 24 Aug 2026 09:39:22 +0000</pubDate>                                                                                                                                <updated>Mon, 24 Aug 2026 11:16:55 +0000</updated>
                                                                                                                                            <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Qt2sKwuHXnFVHSX5uqCX8W-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[OpenAI CEO Sam Altman pictured during a presentation at the 2026 BlackRock Infrastructure Summit in Washington DC.]]></media:description>                                                            <media:text><![CDATA[OpenAI CEO Sam Altman pictured during a presentation at the 2026 BlackRock Infrastructure Summit in Washington DC.]]></media:text>
                                <media:title type="plain"><![CDATA[OpenAI CEO Sam Altman pictured during a presentation at the 2026 BlackRock Infrastructure Summit in Washington DC.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Qt2sKwuHXnFVHSX5uqCX8W-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>OpenAI CEO Sam Altman believes AI could spark a new wave of small businesses, but the tech industry has a lot of work to do convincing entrepreneurs how the technology can help. </p><p>Speaking on the <a href="https://www.youtube.com/watch?v=kG8AoExkX40" target="_blank"><u>David Senra podcast</u></a>, Altman suggested AI could help break down traditional barriers for entrepreneurs, particularly in terms of financing and technical capabilities. </p><p>“Even if most people don’t want to start really big companies, a lot of people want to start smaller companies, and that has been hard,” he said. </p><p>“That has been something that has required a fair amount of privilege, and luck, and resources to be able to do. We are about to see the greatest boom in people starting smaller businesses that we have ever seen,” Altman added. “I think AI is empowering that.”</p><p>Altman’s optimistic outlook on this front is reflected in recent research conducted by OpenAI. As <a href="https://www.itpro.com/technology/artificial-intelligence/openai-says-ai-tools-are-paying-dividends-for-small-businesses-but-uptake-is-sluggish-in-several-uk-regions"><u><em>ITPro </em></u><u>reported in March</u></a>, a survey by the firm highlighted a strong appetite for <a href="https://www.itpro.com/technology/artificial-intelligence/amazing-ai-tools-to-try-today"><u>AI tools</u></a> among small businesses across the UK. </p><p>Eight-in-ten small businesses across the country now use the technology in daily operations, OpenAI found, although the study warned that uptake varies wildly on a region-by-region basis. </p><p>Notably, Altman told Senra that OpenAI and the broader tech industry hasn’t quite emphasized the potential benefits of AI to entrepreneurs and small businesses in recent years. </p><p>The focus has largely been on larger organizations and how the technology is impacting operations in these domains. </p><p>“For some reason the field, including us, has not talked about that enough, even though we see all the signs of it,” he said. “We have not built enough products to accelerate that, but I think we’re going to see a lot more of that."</p><h2 id="some-smbs-are-pulling-ahead">Some SMBs are pulling ahead</h2><p>Altman’s comments come in the wake of recent <a href="https://www.itpro.com/business/business-strategy/flexibility-is-a-huge-advantage-for-small-businesses-adopting-ai-but-clear-strategy-and-bold-leadership-is-critical"><u>research from Dell Technologies</u></a> which found small and medium-sized businesses (SMBs) are increasingly optimistic about the impact of AI. </p><p>The study found two-thirds (66%) of UK small businesses view AI as a “route to growth” while more than half (56%) believe the technology will give them a competitive advantage. </p><p>Brian Horsburgh, UK small business country manager at Dell Technologies, told <em>ITPro </em>that small businesses have a huge advantage over larger companies in terms of adoption. </p><p>Smaller firms are far more agile and typically more flexible in how they integrate the technology in daily operations. This, the study found, is highlighted in the rate of successful adoption projects. </p><p>Indeed, larger companies tend to cite a broader range of barriers when it comes to adoption, including lengthy approval processes, fear of failure, or resistance to change across the workforce. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ AI-assisted software development means security teams need an ‘engineering-first’ mindset ]]></title>
                                                                                                <dc:content><![CDATA[ <p>AI represents a prime opportunity for security teams to keep pace with accelerating development timelines, according to GitLab CISO Chaim Mazal. But this will require tweaks to traditional processes. </p><p>The use of AI in software development is fast approaching near-universal levels, with figures from Stack Overflow’s 2025 <a href="https://survey.stackoverflow.co/2025/ai" target="_blank"><u><em>Developer Survey</em></u></a> showing 84% of developers have adopted the technology. </p><p>While AI is helping speed up code production, streamline development lifecycles, and drive productivity, Mazal told <em>ITPro </em>it’s also creating new security risks. </p><p>“Businesses have decided that in order to be successful in this next wave of the journey, AI has to be leveraged and teams have to go full bore,” he said. </p><p>“I think in tandem and parallel, security teams have been working on figuring out how they can build appropriate solutions to be able to enable their organizations to do that.”</p><p>Mazal noted that enterprises are still working around the “same practices and principles that we’ve historically followed” - robust testing, reviews, and security checks. </p><p>But with the advent of agentic AI and the pace of change, there’s a risk that blind spots could emerge somewhere in the process.</p><p>Indeed, it’s an issue that GitLab recently highlighted in a study. <a href="https://www.itpro.com/software/development/enterprises-are-shipping-so-much-ai-generated-code-they-cant-control-or-secure-it"><u>Analysis from the company</u></a> in June warned that eight-in-ten organizations are adopting AI tools faster than they can develop policies to govern them. </p><p>The influx of AI-generated code is also proving troublesome for enterprises, with a <a href="https://www.itpro.com/software/development/enterprises-are-shipping-huge-volumes-of-untested-ai-generated-code-experts-warn-it-will-cause-major-security-issues-and-have-huge-financial-repercussions"><u>study from Tricentis</u></a> showing that roughly 60% of organizations have shipped untested code. </p><p>The result here is that security teams now face a confluence of challenges. Potentially dangerous AI-generated code and increasingly fast development timelines are placing huge pressure on teams to ensure products ship in both a timely and secure manner. </p><h2 id="an-engineering-first-approach">An engineering-first approach</h2><p>Keeping pace with AI-powered development will mean security teams essentially have to start operating more like their counterparts in development in an ‘engineering-first’ approach. </p><p>This is an operating model that takes core engineering principles such as automated testing and <a href="https://www.itpro.com/business/digital-transformation/cicd-comes-into-focus-as-enterprises-ramp-up-application-modernization-efforts">CI/CD </a>pipeline techniques and embeds them within security processes. Simply put, rather than acting like manual auditors and policy enforcers, they play a more involved role in development processes. </p><p>Moreover, they build parallel products designed to support development from the get-go. Fundamentally, this is about being a “first-level contributor” in software development, Mazal said. </p><p>“As our engineering teams move fast, having the security team have the ability to contribute code, make iterative adjustments, and be part and parcel with the development process is key to our success,” he told <em>ITPro</em>. </p><p>“Being able to move fast, iterate fast, and not just be consultative in nature, and being able to really roll up our sleeves and work alongside the rest of the teams to build that secure path and the secure guardrails is something I think most modern security teams don’t have the luxury of foregoing.” </p><p>When it comes to AI, what’s good for the goose is good for the gander. Security teams should view the technology as a means to keep up with development processes – as with developers, teams need to automate where they can. </p><h2 id="humans-in-the-loop">Humans in the loop</h2><p>Ensuring humans remain in the loop throughout the development and testing process will still be vital moving forward, according to Mazal. The exact scope of human involvement is still up for debate, however, and the long-term goal is to automate as much as possible in the safest way </p><p>“I think most organizations who make commercial-level software want to get to a place where there are only humans in the loop in places that it’s absolutely necessary, based on the risk to the organization,” he said. </p><p>“They’d like to be able to have the overwhelming majority of their code auto-generated and auto-reviewed.”</p><p>Mazal said this has the potential to pose new challenges for developers, testers, and security teams alike. Fully-automated pipelines are still evolving, and as <a href="https://www.itpro.com/software/software-teams-should-take-a-leaf-out-of-manufacturers-books-when-it-comes-to-ai-generated-code"><u><em>ITPro </em></u><u>recently reported</u></a>, some enterprises are exploring the concept of ‘dark testing factories’ to ramp up automation with little human input. </p><p>“Collectively we’re still trying to figure out as an industry what those best practices are, but we’re definitely making very big leaps and bounds in very short periods of time.”</p><p>GitLab itself is ramping up the use of agents in a software factory approach, Mazal noted, focusing intently on a security-conscious strategy. Agents need strict guardrails, and enterprises need to implement certain restrictions from the get-go. </p><p>“How we’re thinking about this at GitLab from a software factory perspective is that you have the ability from the very initial inception of design to bake in those security guardrails and requirements,” he explained. </p><p>“You can go ahead and create and craft them and define them based on the data sensitivity and requirements that you have, and you can uniformly implement governance controls across the board.”</p><p>These processes will naturally evolve as requirements change, Mazal said, and teams will “continuously make adjustments along the way”. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/software/development/ai-assisted-software-development-means-security-teams-need-an-engineering-first-mindset</link>
                                                                            <description>
                            <![CDATA[ As AI-powered coding accelerates, security teams need to start operating like developers ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">e35qmwsZr2ozEw7wjELqT7</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/joTCHrxyPvfn3ZLe4VTU6e-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 21 Aug 2026 15:28:38 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Development]]></category>
                                                    <category><![CDATA[Software]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/joTCHrxyPvfn3ZLe4VTU6e-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Female software engineer working on a desktop computer in an office space while male colleague stands over desk checking work on a tablet.]]></media:description>                                                            <media:text><![CDATA[Female software engineer working on a desktop computer in an office space while male colleague stands over desk checking work on a tablet.]]></media:text>
                                <media:title type="plain"><![CDATA[Female software engineer working on a desktop computer in an office space while male colleague stands over desk checking work on a tablet.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/joTCHrxyPvfn3ZLe4VTU6e-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>AI represents a prime opportunity for security teams to keep pace with accelerating development timelines, according to GitLab CISO Chaim Mazal. But this will require tweaks to traditional processes. </p><p>The use of AI in software development is fast approaching near-universal levels, with figures from Stack Overflow’s 2025 <a href="https://survey.stackoverflow.co/2025/ai" target="_blank"><u><em>Developer Survey</em></u></a> showing 84% of developers have adopted the technology. </p><p>While AI is helping speed up code production, streamline development lifecycles, and drive productivity, Mazal told <em>ITPro </em>it’s also creating new security risks. </p><p>“Businesses have decided that in order to be successful in this next wave of the journey, AI has to be leveraged and teams have to go full bore,” he said. </p><p>“I think in tandem and parallel, security teams have been working on figuring out how they can build appropriate solutions to be able to enable their organizations to do that.”</p><p>Mazal noted that enterprises are still working around the “same practices and principles that we’ve historically followed” - robust testing, reviews, and security checks. </p><p>But with the advent of agentic AI and the pace of change, there’s a risk that blind spots could emerge somewhere in the process.</p><p>Indeed, it’s an issue that GitLab recently highlighted in a study. <a href="https://www.itpro.com/software/development/enterprises-are-shipping-so-much-ai-generated-code-they-cant-control-or-secure-it"><u>Analysis from the company</u></a> in June warned that eight-in-ten organizations are adopting AI tools faster than they can develop policies to govern them. </p><p>The influx of AI-generated code is also proving troublesome for enterprises, with a <a href="https://www.itpro.com/software/development/enterprises-are-shipping-huge-volumes-of-untested-ai-generated-code-experts-warn-it-will-cause-major-security-issues-and-have-huge-financial-repercussions"><u>study from Tricentis</u></a> showing that roughly 60% of organizations have shipped untested code. </p><p>The result here is that security teams now face a confluence of challenges. Potentially dangerous AI-generated code and increasingly fast development timelines are placing huge pressure on teams to ensure products ship in both a timely and secure manner. </p><h2 id="an-engineering-first-approach">An engineering-first approach</h2><p>Keeping pace with AI-powered development will mean security teams essentially have to start operating more like their counterparts in development in an ‘engineering-first’ approach. </p><p>This is an operating model that takes core engineering principles such as automated testing and <a href="https://www.itpro.com/business/digital-transformation/cicd-comes-into-focus-as-enterprises-ramp-up-application-modernization-efforts">CI/CD </a>pipeline techniques and embeds them within security processes. Simply put, rather than acting like manual auditors and policy enforcers, they play a more involved role in development processes. </p><p>Moreover, they build parallel products designed to support development from the get-go. Fundamentally, this is about being a “first-level contributor” in software development, Mazal said. </p><p>“As our engineering teams move fast, having the security team have the ability to contribute code, make iterative adjustments, and be part and parcel with the development process is key to our success,” he told <em>ITPro</em>. </p><p>“Being able to move fast, iterate fast, and not just be consultative in nature, and being able to really roll up our sleeves and work alongside the rest of the teams to build that secure path and the secure guardrails is something I think most modern security teams don’t have the luxury of foregoing.” </p><p>When it comes to AI, what’s good for the goose is good for the gander. Security teams should view the technology as a means to keep up with development processes – as with developers, teams need to automate where they can. </p><h2 id="humans-in-the-loop">Humans in the loop</h2><p>Ensuring humans remain in the loop throughout the development and testing process will still be vital moving forward, according to Mazal. The exact scope of human involvement is still up for debate, however, and the long-term goal is to automate as much as possible in the safest way </p><p>“I think most organizations who make commercial-level software want to get to a place where there are only humans in the loop in places that it’s absolutely necessary, based on the risk to the organization,” he said. </p><p>“They’d like to be able to have the overwhelming majority of their code auto-generated and auto-reviewed.”</p><p>Mazal said this has the potential to pose new challenges for developers, testers, and security teams alike. Fully-automated pipelines are still evolving, and as <a href="https://www.itpro.com/software/software-teams-should-take-a-leaf-out-of-manufacturers-books-when-it-comes-to-ai-generated-code"><u><em>ITPro </em></u><u>recently reported</u></a>, some enterprises are exploring the concept of ‘dark testing factories’ to ramp up automation with little human input. </p><p>“Collectively we’re still trying to figure out as an industry what those best practices are, but we’re definitely making very big leaps and bounds in very short periods of time.”</p><p>GitLab itself is ramping up the use of agents in a software factory approach, Mazal noted, focusing intently on a security-conscious strategy. Agents need strict guardrails, and enterprises need to implement certain restrictions from the get-go. </p><p>“How we’re thinking about this at GitLab from a software factory perspective is that you have the ability from the very initial inception of design to bake in those security guardrails and requirements,” he explained. </p><p>“You can go ahead and create and craft them and define them based on the data sensitivity and requirements that you have, and you can uniformly implement governance controls across the board.”</p><p>These processes will naturally evolve as requirements change, Mazal said, and teams will “continuously make adjustments along the way”. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ AMD talks up sustainability efforts with rack-scale energy efficiency gains ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.itpro.com/business/business-strategy/everything-you-need-to-know-about-amd">AMD </a>has boosted rack efficiency four-fold since 2024, and the company claims it’s on track to upping it by 20 times by the end of the decade.</p><p>The chipmaker revealed it recently exceeded its 2026 target of a three-fold improvement in rack-scale energy efficiency for AI training and inference. </p><p>Two 2030 AMD racks are now expected to deliver the same compute as roughly 570 racks did in 2024, enabling a 20x reduction in use-phase electricity and a 28x reduction in carbon intensity.</p><p>Alternatively, efficiency gains are expected to enable 20-times more compute, measured in floating point operations per second (FLOPs) per watt, using the same amount of energy.</p><p>AMD said energy improved energy efficiency delivers a range of environmental benefits, but also in helping to improve AI performance without increasing power, improving <a href="https://www.itpro.com/business-operations/30025/what-is-total-cost-of-ownership">total cost of ownership</a>, and helping customers scale faster.</p><p>“The next wave of AI efficiency will depend on tighter co-optimization across compute silicon, memory, interconnects, software and rack-scale system design," said Sam Naffziger, senior vice president and corporate fellow at AMD. </p><p>"Our estimated 4x improvement through 2026 reflects the strength of our approach and the progress AMD is making across the full system, putting us ahead of our projected pace toward the 2030 goal.”</p><p>The improvements in performance come down to compute capability, memory bandwidth, and interconnect bandwidth, according to AMD. </p><p>Advanced process technology and architectural improvements help increase floating-point compute performance per watt, advanced architectures and memory integration improve bandwidth, and high-speed interconnects and tighter integration increase the network bandwidths.</p><p>High-bandwidth memory, larger caches, and tighter integration between memory and compute can reduce unnecessary data movement, which uses energy. Meanwhile, high-speed scale-up interconnects help larger systems reduce bottlenecks and share data more efficiently.</p><h2 id="amd-s-rocm-software-driving-gains">AMD’s ROCm software driving gains</h2><p>Elsewhere, AMD claimed its <a href="https://www.itpro.com/hardware/amd-expands-its-software-stack-with-rocm-ai">ROCm software stack </a>and open standards help developers and organizations deploy <a href="https://www.itpro.com/cloud/hybrid-cloud/growing-ai-workloads-are-causing-hybrid-cloud-headaches">AI workloads</a> more efficiently on AMD platforms, with open ecosystems also supporting broader optimization across AI and <a href="https://www.itpro.com/infrastructure/what-is-high-performance-computing-hpc">high-performance computing (HPC)</a> deployments.</p><p>"The projected rack-scale efficiency gains AMD has set forth can enable AI and HPC customers to achieve data center-level gains in power and cooling infrastructure, which can be limiting factors to increasing compute performance," said the firm. </p><p>"Better energy efficiency can help reduce operational electricity use, improve total cost of ownership, and support more sustainable AI and HPC growth."</p><p>AMD has also published its <a href="https://www.amd.com/content/dam/amd/en/documents/corporate/cr/corporate-responsibility-report.pdf" target="_blank"><u><em>2025-26 Corporate Responsibility Report</em></u></a>, detailing its progress across product efficiency, operations, supply chain responsibility, and community impact.</p><p>It reduced operational greenhouse gas emissions by 30% from 2020 to 2025, sourced 58% of global AMD electricity from renewable sources and audited 99% of its manufacturing supplier factories for responsible business practices. </p><p>"We aim to cut operational greenhouse gas (GHG) emissions in half from 2020 to 2030 as we expand our use of renewable energy. In 2025, 100% of AMD manufacturing suppliers maintained public GHG reduction targets and 82% sourced renewable energy, said AMD chair and chief executive officer Lisa Su. </p><p>"The AI era is still in its early stages. Working closely with industry, government and academia, we will keep building the high-performance, energy-efficient compute foundation it requires."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/infrastructure/amd-talks-up-sustainability-efforts-with-rack-scale-energy-efficiency-gains</link>
                                                                            <description>
                            <![CDATA[ The company says it can help deliver more AI performance without increasing power, improve cost of ownership, and help customers scale faster ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">P5MwGM8shA7nJjzo7GC63j</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/9UYzc2inFPC7jftqaavwmP-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 21 Aug 2026 11:03:24 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Infrastructure]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/9UYzc2inFPC7jftqaavwmP-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[AMD logo and branding pictured on a dark reflective surface with faint blue lighting in background.]]></media:description>                                                            <media:text><![CDATA[AMD logo and branding pictured on a dark reflective surface with faint blue lighting in background.]]></media:text>
                                <media:title type="plain"><![CDATA[AMD logo and branding pictured on a dark reflective surface with faint blue lighting in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/9UYzc2inFPC7jftqaavwmP-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/business/business-strategy/everything-you-need-to-know-about-amd">AMD </a>has boosted rack efficiency four-fold since 2024, and the company claims it’s on track to upping it by 20 times by the end of the decade.</p><p>The chipmaker revealed it recently exceeded its 2026 target of a three-fold improvement in rack-scale energy efficiency for AI training and inference. </p><p>Two 2030 AMD racks are now expected to deliver the same compute as roughly 570 racks did in 2024, enabling a 20x reduction in use-phase electricity and a 28x reduction in carbon intensity.</p><p>Alternatively, efficiency gains are expected to enable 20-times more compute, measured in floating point operations per second (FLOPs) per watt, using the same amount of energy.</p><p>AMD said energy improved energy efficiency delivers a range of environmental benefits, but also in helping to improve AI performance without increasing power, improving <a href="https://www.itpro.com/business-operations/30025/what-is-total-cost-of-ownership">total cost of ownership</a>, and helping customers scale faster.</p><p>“The next wave of AI efficiency will depend on tighter co-optimization across compute silicon, memory, interconnects, software and rack-scale system design," said Sam Naffziger, senior vice president and corporate fellow at AMD. </p><p>"Our estimated 4x improvement through 2026 reflects the strength of our approach and the progress AMD is making across the full system, putting us ahead of our projected pace toward the 2030 goal.”</p><p>The improvements in performance come down to compute capability, memory bandwidth, and interconnect bandwidth, according to AMD. </p><p>Advanced process technology and architectural improvements help increase floating-point compute performance per watt, advanced architectures and memory integration improve bandwidth, and high-speed interconnects and tighter integration increase the network bandwidths.</p><p>High-bandwidth memory, larger caches, and tighter integration between memory and compute can reduce unnecessary data movement, which uses energy. Meanwhile, high-speed scale-up interconnects help larger systems reduce bottlenecks and share data more efficiently.</p><h2 id="amd-s-rocm-software-driving-gains">AMD’s ROCm software driving gains</h2><p>Elsewhere, AMD claimed its <a href="https://www.itpro.com/hardware/amd-expands-its-software-stack-with-rocm-ai">ROCm software stack </a>and open standards help developers and organizations deploy <a href="https://www.itpro.com/cloud/hybrid-cloud/growing-ai-workloads-are-causing-hybrid-cloud-headaches">AI workloads</a> more efficiently on AMD platforms, with open ecosystems also supporting broader optimization across AI and <a href="https://www.itpro.com/infrastructure/what-is-high-performance-computing-hpc">high-performance computing (HPC)</a> deployments.</p><p>"The projected rack-scale efficiency gains AMD has set forth can enable AI and HPC customers to achieve data center-level gains in power and cooling infrastructure, which can be limiting factors to increasing compute performance," said the firm. </p><p>"Better energy efficiency can help reduce operational electricity use, improve total cost of ownership, and support more sustainable AI and HPC growth."</p><p>AMD has also published its <a href="https://www.amd.com/content/dam/amd/en/documents/corporate/cr/corporate-responsibility-report.pdf" target="_blank"><u><em>2025-26 Corporate Responsibility Report</em></u></a>, detailing its progress across product efficiency, operations, supply chain responsibility, and community impact.</p><p>It reduced operational greenhouse gas emissions by 30% from 2020 to 2025, sourced 58% of global AMD electricity from renewable sources and audited 99% of its manufacturing supplier factories for responsible business practices. </p><p>"We aim to cut operational greenhouse gas (GHG) emissions in half from 2020 to 2030 as we expand our use of renewable energy. In 2025, 100% of AMD manufacturing suppliers maintained public GHG reduction targets and 82% sourced renewable energy, said AMD chair and chief executive officer Lisa Su. </p><p>"The AI era is still in its early stages. Working closely with industry, government and academia, we will keep building the high-performance, energy-efficient compute foundation it requires."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Vantage and Nebius move first in South Wales AI Growth Zone deployment ]]></title>
                                                                                                <dc:content><![CDATA[ <p>AI cloud firm Nebius is leasing high-density capacity at Vantage Data Centers' Newport campus, marking the first commercial capacity commitment in the South Wales AI Growth Zone.</p><p>Under the agreement, Nebius will lease Nvidia-powered capacity at Nebius's CWL1 facility to support AI training, inference, agentic AI and enterprise AI workloads, and serving enterprises, researchers, start-ups and public sector organizations.</p><p>“This is an important milestone for South Wales and for the UK’s AI infrastructure ambitions,” said David Howson, president, EMEA, Vantage Data Centers. </p><p>“Nebius is scaling <a href="https://www.itpro.com/cloud/cloud-computing/agentic-ai-is-spurring-a-fundamental-shift-in-cloud-infrastructure-consumption">AI cloud infrastructure</a> in the UK at a time when demand for domestic compute capacity continues to accelerate. Vantage’s Newport campus provides the scale, connectivity and operational excellence needed to support that growth, and we’re proud to help establish South Wales as a leading destination for AI investment.”</p><p>One of Europe’s largest data center campuses, Nebius's CWL1 site opened in 2010. It runs on 100% certified renewable energy, with its latest facilities designed to minimize water consumption through a closed-loop cooling system that recirculates water rather than evaporating it. </p><p>The facility also uses air-cooled chillers and free cooling when ambient conditions permit.</p><p>The increased capacity forms part of Nebius’ broader UK expansion and commitment to scale domestic AI compute capacity. </p><p>In June, the company announced around £1.7 billion of committed capacity build-out across four UK sites, including the delivery of more than 1GW of AI-ready capacity across Newport, Bridgend, and Bro Tathan.</p><p>“The UK is one of the places where AI is being built, deployed and adopted by startups, enterprises and the public sector,” said Gary Tierney, general manager for EMEA at Nebius. </p><p>“Vantage’s Newport campus gives us a strong foundation to expand access to NVIDIA-powered AI infrastructure in the UK and support customers building the next generation of AI applications.”</p><h2 id="ai-growth-zones-take-shape">AI Growth Zones take shape</h2><p>The buildout is based on Nvidia's latest full-stack, end-to-end DSX AI factory reference design, and supports the UK government’s <a href="https://www.itpro.com/technology/artificial-intelligence/public-sector-improvements-infrastructure-investment-and-ai-pothole-repairs-tech-industry-welcomes-uks-ambitious-ai-action-plan">AI Opportunities Action Plan</a>.</p><p>South Wales was designated as one of the UK's UK AI Growth Zones in November last year. At the time, the government said it could create more than 5,000 new jobs for local communities. </p><p>It's also home to the UK’s largest cluster of semiconductor businesses.</p><p>The AI Growth Zone stretches along the M4 corridor from Newport to Bridgend has the potential to harness over 1GW by early 2030s.  </p><p>“Today’s announcement marks an important milestone for the South Wales AI Growth Zone and demonstrates Wales’ growing reputation as a strategic location for the infrastructure that will power the AI economy,” said Adam Price, Welsh cabinet minister for enterprise, connectivity and energy. </p><p>"Nebius and Vantage’s investment will help unlock new economic opportunities, support highly skilled jobs and reinforce Wales’ position as a leading destination for advanced digital investment."</p><p>The move by Nebius comes hot on the heels of AI Growth Zone announcements elsewhere across the UK this week. The Lanarkshire growth zone in Scotland, for example, <a href="https://www.gov.uk/government/news/lanarkshire-ai-growth-zone-secures-300-million-investment-as-dell-establishes-scottish-base" target="_blank"><u>secured £300 million in investment</u></a> to ramp up data center development, with Dell Technologies pledging its support for the site. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/infrastructure/vantage-and-nebius-move-first-in-south-wales-ai-growth-zone-deployment</link>
                                                                            <description>
                            <![CDATA[ Nebius is to lease high-density, NVIDIA-powered capacity at Vantage's CWL1 campus for AI workloads ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">J7GdjVnK7Yhd8Dz7QMoMdY</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/vHnccPx9bQoK9fEDTEScPm-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 21 Aug 2026 10:26:51 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Infrastructure]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/vHnccPx9bQoK9fEDTEScPm-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Supercomputer concept image showing server room with open racks and multi-colored data flows running across room.]]></media:description>                                                            <media:text><![CDATA[Supercomputer concept image showing server room with open racks and multi-colored data flows running across room.]]></media:text>
                                <media:title type="plain"><![CDATA[Supercomputer concept image showing server room with open racks and multi-colored data flows running across room.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/vHnccPx9bQoK9fEDTEScPm-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>AI cloud firm Nebius is leasing high-density capacity at Vantage Data Centers' Newport campus, marking the first commercial capacity commitment in the South Wales AI Growth Zone.</p><p>Under the agreement, Nebius will lease Nvidia-powered capacity at Nebius's CWL1 facility to support AI training, inference, agentic AI and enterprise AI workloads, and serving enterprises, researchers, start-ups and public sector organizations.</p><p>“This is an important milestone for South Wales and for the UK’s AI infrastructure ambitions,” said David Howson, president, EMEA, Vantage Data Centers. </p><p>“Nebius is scaling <a href="https://www.itpro.com/cloud/cloud-computing/agentic-ai-is-spurring-a-fundamental-shift-in-cloud-infrastructure-consumption">AI cloud infrastructure</a> in the UK at a time when demand for domestic compute capacity continues to accelerate. Vantage’s Newport campus provides the scale, connectivity and operational excellence needed to support that growth, and we’re proud to help establish South Wales as a leading destination for AI investment.”</p><p>One of Europe’s largest data center campuses, Nebius's CWL1 site opened in 2010. It runs on 100% certified renewable energy, with its latest facilities designed to minimize water consumption through a closed-loop cooling system that recirculates water rather than evaporating it. </p><p>The facility also uses air-cooled chillers and free cooling when ambient conditions permit.</p><p>The increased capacity forms part of Nebius’ broader UK expansion and commitment to scale domestic AI compute capacity. </p><p>In June, the company announced around £1.7 billion of committed capacity build-out across four UK sites, including the delivery of more than 1GW of AI-ready capacity across Newport, Bridgend, and Bro Tathan.</p><p>“The UK is one of the places where AI is being built, deployed and adopted by startups, enterprises and the public sector,” said Gary Tierney, general manager for EMEA at Nebius. </p><p>“Vantage’s Newport campus gives us a strong foundation to expand access to NVIDIA-powered AI infrastructure in the UK and support customers building the next generation of AI applications.”</p><h2 id="ai-growth-zones-take-shape">AI Growth Zones take shape</h2><p>The buildout is based on Nvidia's latest full-stack, end-to-end DSX AI factory reference design, and supports the UK government’s <a href="https://www.itpro.com/technology/artificial-intelligence/public-sector-improvements-infrastructure-investment-and-ai-pothole-repairs-tech-industry-welcomes-uks-ambitious-ai-action-plan">AI Opportunities Action Plan</a>.</p><p>South Wales was designated as one of the UK's UK AI Growth Zones in November last year. At the time, the government said it could create more than 5,000 new jobs for local communities. </p><p>It's also home to the UK’s largest cluster of semiconductor businesses.</p><p>The AI Growth Zone stretches along the M4 corridor from Newport to Bridgend has the potential to harness over 1GW by early 2030s.  </p><p>“Today’s announcement marks an important milestone for the South Wales AI Growth Zone and demonstrates Wales’ growing reputation as a strategic location for the infrastructure that will power the AI economy,” said Adam Price, Welsh cabinet minister for enterprise, connectivity and energy. </p><p>"Nebius and Vantage’s investment will help unlock new economic opportunities, support highly skilled jobs and reinforce Wales’ position as a leading destination for advanced digital investment."</p><p>The move by Nebius comes hot on the heels of AI Growth Zone announcements elsewhere across the UK this week. The Lanarkshire growth zone in Scotland, for example, <a href="https://www.gov.uk/government/news/lanarkshire-ai-growth-zone-secures-300-million-investment-as-dell-establishes-scottish-base" target="_blank"><u>secured £300 million in investment</u></a> to ramp up data center development, with Dell Technologies pledging its support for the site. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Be careful who you talk to at conferences: Security researchers claim they were targeted by cyber criminals after DEF CON event ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Visitors to Black Hat/DEF CON earlier this month were targeted after the event by cyber criminals posing as a well-known crypto media executive.</p><p>The X account @HartmansDoeke sent a direct message to one Huntress security researcher claiming to be CoinDesk's VP and head of marketing, asking for help with an upcoming conference. </p><p>While the researcher cottoned on to the scam immediately, they carried on engaging with the scammer to check out the tactics they were using. This involved a Google Doc featuring a custom Google Apps Script sidebar designed to guide them through the execution of <a href="https://www.itpro.com/malware/28076/what-is-malware">malware</a>. </p><p>The document asked the potential victim to enter an 'encryption key' – supplied by the actor in direct messages – which appeared to fail when entered. The sidebar provided two follow-on options: <a href="https://www.itpro.com/security/malware/opera-browser-thinks-it-has-the-solution-to-stopping-clickfix-malware-attacks">ClickFix</a>-style instructions and a download option, both intended to download and execute malicious code. </p><p>Mac users were served an infostealer targeting browser passwords, crypto wallets and even private Notes app data. Meanwhile, Windows users were served a remote access trojan, a fake crypto wallet implant, and a network-intercepting proxy delivered via an installer signed with what appears to be a stolen certificate.</p><p>When the researcher didn't fall for the malicious Google Doc, the threat actor followed up the next day with a second malicious document. </p><p>This masqueraded as a Dropbox DocSend share and led to a counterfeit DocSend installer that delivered AMOS stealer to macOS users and NetSupport RAT, a Ledger wallet implant, and a traffic-intercepting proxy to those on Windows.</p><p>"Taken together, the two lures show how the threat actor used familiar platforms to build credibility and keep the target engaged," Huntress said. "By combining social media DMs with trusted document and file-sharing services, the actor created a legitimate-looking workflow designed to trick targets into running the <a href="https://www.itpro.com/malware/28076/what-is-malware">malware</a>."</p><h2 id="conference-attendees-urged-to-remain-vigilant">Conference attendees urged to remain vigilant</h2><p>According to Huntress, the researcher was just one of many to be targeted.</p><p>"Large industry events like Black Hat and DEF CON create a target-rich environment for bad actors, with attendees exchanging new contacts, documents, invitations, and follow-up plans," Huntress said. </p><p>"Attackers are using this activity to make malicious outreach look like just another routine post-conference interaction."</p><p>Anybody who's interacted with a lure like this is advised to isolate the system from the network, collect any relevant forensic evidence, and consider reimaging the system. </p><p>They should assume that credentials on the system have been compromised and revoke active sessions, reset passwords, and rotate API keys or any other secrets that may reside on the system – and also review any cryptocurrency wallets. </p><p>While visitors to a security conference might not seem like the most obvious victims, this wasn't the only attempt to scam this year's DEF CON attendees.</p><p>One passenger on a Delta flight out of Las Vegas <a href="https://www.itpro.com/security/cyber-attacks/delta-airlines-flight-wi-fi-tampered-with-after-def-con-conference"><u>attempted to jam in-flight Wi-Fi</u></a> and broadcast a rogue network designed to look like the airline’s service, in an apparent phishing attempt. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/be-careful-who-you-talk-to-at-conferences-security-researchers-claim-they-were-targeted-by-cyber-criminals-after-def-con-event</link>
                                                                            <description>
                            <![CDATA[ Scammers contacted conference attendees with a booby-trapped Google Doc designed to look like a routine post-event contact ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">sRMYXq8ixyDvmQ8HtFvSNA</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 21 Aug 2026 08:56:22 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:description>                                                            <media:text><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:text>
                                <media:title type="plain"><![CDATA[Hacker concept image showing silhouette of a hooded individual using a laptop computer with binary code imposed against a red backdrop. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/pjqoPws66yCB4ujEfq3dte-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Visitors to Black Hat/DEF CON earlier this month were targeted after the event by cyber criminals posing as a well-known crypto media executive.</p><p>The X account @HartmansDoeke sent a direct message to one Huntress security researcher claiming to be CoinDesk's VP and head of marketing, asking for help with an upcoming conference. </p><p>While the researcher cottoned on to the scam immediately, they carried on engaging with the scammer to check out the tactics they were using. This involved a Google Doc featuring a custom Google Apps Script sidebar designed to guide them through the execution of <a href="https://www.itpro.com/malware/28076/what-is-malware">malware</a>. </p><p>The document asked the potential victim to enter an 'encryption key' – supplied by the actor in direct messages – which appeared to fail when entered. The sidebar provided two follow-on options: <a href="https://www.itpro.com/security/malware/opera-browser-thinks-it-has-the-solution-to-stopping-clickfix-malware-attacks">ClickFix</a>-style instructions and a download option, both intended to download and execute malicious code. </p><p>Mac users were served an infostealer targeting browser passwords, crypto wallets and even private Notes app data. Meanwhile, Windows users were served a remote access trojan, a fake crypto wallet implant, and a network-intercepting proxy delivered via an installer signed with what appears to be a stolen certificate.</p><p>When the researcher didn't fall for the malicious Google Doc, the threat actor followed up the next day with a second malicious document. </p><p>This masqueraded as a Dropbox DocSend share and led to a counterfeit DocSend installer that delivered AMOS stealer to macOS users and NetSupport RAT, a Ledger wallet implant, and a traffic-intercepting proxy to those on Windows.</p><p>"Taken together, the two lures show how the threat actor used familiar platforms to build credibility and keep the target engaged," Huntress said. "By combining social media DMs with trusted document and file-sharing services, the actor created a legitimate-looking workflow designed to trick targets into running the <a href="https://www.itpro.com/malware/28076/what-is-malware">malware</a>."</p><h2 id="conference-attendees-urged-to-remain-vigilant">Conference attendees urged to remain vigilant</h2><p>According to Huntress, the researcher was just one of many to be targeted.</p><p>"Large industry events like Black Hat and DEF CON create a target-rich environment for bad actors, with attendees exchanging new contacts, documents, invitations, and follow-up plans," Huntress said. </p><p>"Attackers are using this activity to make malicious outreach look like just another routine post-conference interaction."</p><p>Anybody who's interacted with a lure like this is advised to isolate the system from the network, collect any relevant forensic evidence, and consider reimaging the system. </p><p>They should assume that credentials on the system have been compromised and revoke active sessions, reset passwords, and rotate API keys or any other secrets that may reside on the system – and also review any cryptocurrency wallets. </p><p>While visitors to a security conference might not seem like the most obvious victims, this wasn't the only attempt to scam this year's DEF CON attendees.</p><p>One passenger on a Delta flight out of Las Vegas <a href="https://www.itpro.com/security/cyber-attacks/delta-airlines-flight-wi-fi-tampered-with-after-def-con-conference"><u>attempted to jam in-flight Wi-Fi</u></a> and broadcast a rogue network designed to look like the airline’s service, in an apparent phishing attempt. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Exclaimer eyes simplicity gains with new partner program ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Exclaimer has announced the launch of MSP Connect, a new partner program designed to help <a href="https://www.itpro.com/business/why-you-cant-rely-on-traditional-managed-service-providers">managed service providers (MSPs)</a> provision, manage, and scale email signature services across customer environments.</p><p>Available immediately, the initiative brings consumption-based billing, centralized self-service provisioning, and dedicated channel support together with integrations for ConnectWise, Kaseya, and <a href="https://www.itpro.com/cloud/cloud-computing/microsoft-marketplace-launch-ai-apps-cloud-solutions">Microsoft Marketplace</a>.</p><p>Exclaimer said the program has been designed to address the operational challenges MSPs face when managing email signatures across <a href="https://www.itpro.com/desktop-software/19337/office-365-review">Microsoft 365</a> and <a href="https://www.itpro.com/business-operations/productivity/368041/25-google-workspace-tips-and-tricks-for-small-business">Google Workspace</a> environments, where updates can otherwise require manual, user-by-user administration.</p><p>With MSP Connect, billing adjusts according to actual customer usage, allowing MSPs’ costs to increase or decrease as customers add or remove users.</p><p>MSPs will also have access to a redesigned partner portal that allows them to provision and manage signatures across multiple customer environments from a single location, while native integrations with PSA platforms aim to reduce administrative work.</p><p>In an announcement, Exclaimer chief operating officer Jim Turner said MSP Connect was developed in response to feedback from partners around the ease of use and billing model of the program’s predecessor.</p><p>"MSPs have been clear about what they need from us: a platform that is easy to provision at scale, a commercial model that flexes with their customers and commercial support that helps them grow," he explained. </p><p>“MSP Connect is the reset. It removes unnecessary steps, gives partners more control through self-service, and aligns billing with what their customers use."</p><h2 id="strengthening-msp-revenue-generation">Strengthening MSP revenue generation</h2><p>Exclaimer’s MSP Connect launch marks the next phase of its channel-first growth strategy as the email signature management specialist looks to strengthen its partner network. </p><p>Partners already account for 30% of the firm’s annual recurring revenue, while its global channel ecosystem includes around 5,000 partners.</p><p>The company said MSP Connect will now enable partners to add email signature management to existing Microsoft 365 and managed services relationships without introducing a complex deployment or support burden.</p><p>MSPs can generate license margin, bundle Exclaimer’s technology into wider managed services packages, as well as create additional revenue through services such as signature design, deployment, and ongoing management.</p><p>"An MSP is a business within a business. It needs to manage hundreds of customer environments without adding operational drag," commented Louise Taylor, vice president of channel at Exclaimer. "If getting one customer live requires a long sales process or a services project, the economics stop working."</p><h2 id="reducing-friction-for-msps">Reducing friction for MSPs</h2><p>Exclaimer’s new program includes not-for-resale (NFR) licensing, dedicated channel account management, as well as co-brandable partner enablement materials.</p><p>The vendor said its platform can be deployed by MSPs in under an hour depending on the customer environment, using directory data to populate approved signature attributes across Microsoft 365 and Google Workspace without requiring any heavy integration project or mandatory professional services.</p><p>Additionally, MSPs can build additional services around the platform, including signature template design and template catalogue creation, while their customers’ marketing teams can utilize approved campaign banners, engagement analytics, and rule-based signature content.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/business-strategy/exclaimer-eyes-simplicity-gains-with-new-partner-program</link>
                                                                            <description>
                            <![CDATA[ The new partner program introduces consumption-based billing and centralized management across customer environments ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">f9a7Skj3WnHgSgdSWoKBH9</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/YZjwEwYDJbKftH9VvKGnNZ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 21 Aug 2026 08:49:40 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Business Strategy]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (Daniel Todd) ]]></author>                    <dc:creator><![CDATA[ Daniel Todd ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/SRyC34qeLpNDj3dJtsVDhT.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/YZjwEwYDJbKftH9VvKGnNZ-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Digital technology toolkit symbol surrounded by email, internet, telephone, and communications symbols. ]]></media:description>                                                            <media:text><![CDATA[Digital technology toolkit symbol surrounded by email, internet, telephone, and communications symbols. ]]></media:text>
                                <media:title type="plain"><![CDATA[Digital technology toolkit symbol surrounded by email, internet, telephone, and communications symbols. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/YZjwEwYDJbKftH9VvKGnNZ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Exclaimer has announced the launch of MSP Connect, a new partner program designed to help <a href="https://www.itpro.com/business/why-you-cant-rely-on-traditional-managed-service-providers">managed service providers (MSPs)</a> provision, manage, and scale email signature services across customer environments.</p><p>Available immediately, the initiative brings consumption-based billing, centralized self-service provisioning, and dedicated channel support together with integrations for ConnectWise, Kaseya, and <a href="https://www.itpro.com/cloud/cloud-computing/microsoft-marketplace-launch-ai-apps-cloud-solutions">Microsoft Marketplace</a>.</p><p>Exclaimer said the program has been designed to address the operational challenges MSPs face when managing email signatures across <a href="https://www.itpro.com/desktop-software/19337/office-365-review">Microsoft 365</a> and <a href="https://www.itpro.com/business-operations/productivity/368041/25-google-workspace-tips-and-tricks-for-small-business">Google Workspace</a> environments, where updates can otherwise require manual, user-by-user administration.</p><p>With MSP Connect, billing adjusts according to actual customer usage, allowing MSPs’ costs to increase or decrease as customers add or remove users.</p><p>MSPs will also have access to a redesigned partner portal that allows them to provision and manage signatures across multiple customer environments from a single location, while native integrations with PSA platforms aim to reduce administrative work.</p><p>In an announcement, Exclaimer chief operating officer Jim Turner said MSP Connect was developed in response to feedback from partners around the ease of use and billing model of the program’s predecessor.</p><p>"MSPs have been clear about what they need from us: a platform that is easy to provision at scale, a commercial model that flexes with their customers and commercial support that helps them grow," he explained. </p><p>“MSP Connect is the reset. It removes unnecessary steps, gives partners more control through self-service, and aligns billing with what their customers use."</p><h2 id="strengthening-msp-revenue-generation">Strengthening MSP revenue generation</h2><p>Exclaimer’s MSP Connect launch marks the next phase of its channel-first growth strategy as the email signature management specialist looks to strengthen its partner network. </p><p>Partners already account for 30% of the firm’s annual recurring revenue, while its global channel ecosystem includes around 5,000 partners.</p><p>The company said MSP Connect will now enable partners to add email signature management to existing Microsoft 365 and managed services relationships without introducing a complex deployment or support burden.</p><p>MSPs can generate license margin, bundle Exclaimer’s technology into wider managed services packages, as well as create additional revenue through services such as signature design, deployment, and ongoing management.</p><p>"An MSP is a business within a business. It needs to manage hundreds of customer environments without adding operational drag," commented Louise Taylor, vice president of channel at Exclaimer. "If getting one customer live requires a long sales process or a services project, the economics stop working."</p><h2 id="reducing-friction-for-msps">Reducing friction for MSPs</h2><p>Exclaimer’s new program includes not-for-resale (NFR) licensing, dedicated channel account management, as well as co-brandable partner enablement materials.</p><p>The vendor said its platform can be deployed by MSPs in under an hour depending on the customer environment, using directory data to populate approved signature attributes across Microsoft 365 and Google Workspace without requiring any heavy integration project or mandatory professional services.</p><p>Additionally, MSPs can build additional services around the platform, including signature template design and template catalogue creation, while their customers’ marketing teams can utilize approved campaign banners, engagement analytics, and rule-based signature content.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘Modern players are essentially the architects of the future technical labor pool’: IT leaders want gamers on their teams, and they’re more likely to hire job candidates who list experience on resumes ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Many IT leaders are “avid gamers”, according to new research from <a href="https://www.itpro.com/hardware/Logitech-Spot-office-environmental-sensor">Logitech</a>, and this increasingly shapes how they make business and hiring decisions. </p><p>While gaming has traditionally been viewed as a hobby, the study noted that there are a range of transferable workplace skills. 98.8% of IT decision makers said that gaming directly affects their job performance and competency, for example. </p><p>IT leaders said gaming benefits them in areas such as strategic thinking (65.7%), problem solving (65.5%), and performing under pressure (63.5%), according to Logitech. </p><p>"Savvy enterprise tech buyers don't just shop for features – they stress-test systems and demand friction-free workflows,” said Henry Levak, general manager for Logitech’s team workspace solutions division. </p><p>“Managing complex IT infrastructure requires quick thinking, constant adaptation, and staying calm under pressure—the same skills gamers use every day.”</p><h2 id="gamers-get-the-jobs">Gamers get the jobs</h2><p>Notably, Logitech found 82% of IT leaders are more likely to consider job candidates who list gaming experience on their resumes.</p><p>A key factor here, the study noted, is that it points to skills such as “multiplayer coordination and strategic execution” - both of which are viewed as valuable real-world attributes. </p><p>This trend shows no signs of slowing down either, according to Logitech. </p><p>Looking ahead, more than 90% of IT leaders said they expect technology leadership to become “increasingly influenced by gaming standards” – particularly with regard to team performance. </p><p>"The data validates a shift many tech executives already recognize: modern players are essentially the architects of the future technical labor pool," noted Robin Piispanen, general manager at Logitech Gaming. </p><p>"The cognitive flexibility, rapid response times, and analytical capabilities honed in gaming environments are proving to be significant professional assets in the contemporary office."</p><h2 id="transferable-skills">Transferable skills</h2><p>Logitech’s study isn’t the first to highlight the benefits of gaming. Previous research suggests that gaming has a direct benefit in terms of building ‘soft skills’ such as communication, teamwork, and time management. </p><p>In a <a href="https://journals.sagepub.com/doi/10.1177/10468781221137361" target="_blank"><u>study</u></a> conducted by the University of Surrey, researchers found that online gaming also helped improve job prospects. </p><p>“Our study found that online gaming behaviour varied between different job categories, allowing the participants to gain different soft skills,” the study noted. </p><p>“The soft skills gained could assist gamers with training that leads to a particular career path.”</p><p>Some industries have begun looking to areas such as esports as a means to attract digital-savvy talent, including the UK Armed Forces. </p><p>As <a href="https://www.itpro.com/business/business-strategy/game-on-esports-as-an-enterprise-tool"><u><em>ITPro </em></u><u>previously reported</u></a>, the Ministry of Defence (MoD) recognized esports as an official sport. Some British Army and Royal Air Force (RAF) sites even have dedicated esports facilities for personnel. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/modern-players-are-essentially-the-architects-of-the-future-technical-labor-pool-it-leaders-want-gamers-on-their-teams-and-theyre-more-likely-to-hire-job-candidates-who-list-experience-on-resumes</link>
                                                                            <description>
                            <![CDATA[ New research suggests IT leaders are increasingly looking to gamers to bolster workforce skills capabilities ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">VpHYaoVm3v78onUgidjo26</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/YXRMz37UFjFhpmTxy5yfGX-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 20 Aug 2026 14:45:16 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/YXRMz37UFjFhpmTxy5yfGX-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Young man playing video games on a desktop computer in a dimly lit room, with glowing headphones.]]></media:description>                                                            <media:text><![CDATA[Young man playing video games on a desktop computer in a dimly lit room, with glowing headphones.]]></media:text>
                                <media:title type="plain"><![CDATA[Young man playing video games on a desktop computer in a dimly lit room, with glowing headphones.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/YXRMz37UFjFhpmTxy5yfGX-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Many IT leaders are “avid gamers”, according to new research from <a href="https://www.itpro.com/hardware/Logitech-Spot-office-environmental-sensor">Logitech</a>, and this increasingly shapes how they make business and hiring decisions. </p><p>While gaming has traditionally been viewed as a hobby, the study noted that there are a range of transferable workplace skills. 98.8% of IT decision makers said that gaming directly affects their job performance and competency, for example. </p><p>IT leaders said gaming benefits them in areas such as strategic thinking (65.7%), problem solving (65.5%), and performing under pressure (63.5%), according to Logitech. </p><p>"Savvy enterprise tech buyers don't just shop for features – they stress-test systems and demand friction-free workflows,” said Henry Levak, general manager for Logitech’s team workspace solutions division. </p><p>“Managing complex IT infrastructure requires quick thinking, constant adaptation, and staying calm under pressure—the same skills gamers use every day.”</p><h2 id="gamers-get-the-jobs">Gamers get the jobs</h2><p>Notably, Logitech found 82% of IT leaders are more likely to consider job candidates who list gaming experience on their resumes.</p><p>A key factor here, the study noted, is that it points to skills such as “multiplayer coordination and strategic execution” - both of which are viewed as valuable real-world attributes. </p><p>This trend shows no signs of slowing down either, according to Logitech. </p><p>Looking ahead, more than 90% of IT leaders said they expect technology leadership to become “increasingly influenced by gaming standards” – particularly with regard to team performance. </p><p>"The data validates a shift many tech executives already recognize: modern players are essentially the architects of the future technical labor pool," noted Robin Piispanen, general manager at Logitech Gaming. </p><p>"The cognitive flexibility, rapid response times, and analytical capabilities honed in gaming environments are proving to be significant professional assets in the contemporary office."</p><h2 id="transferable-skills">Transferable skills</h2><p>Logitech’s study isn’t the first to highlight the benefits of gaming. Previous research suggests that gaming has a direct benefit in terms of building ‘soft skills’ such as communication, teamwork, and time management. </p><p>In a <a href="https://journals.sagepub.com/doi/10.1177/10468781221137361" target="_blank"><u>study</u></a> conducted by the University of Surrey, researchers found that online gaming also helped improve job prospects. </p><p>“Our study found that online gaming behaviour varied between different job categories, allowing the participants to gain different soft skills,” the study noted. </p><p>“The soft skills gained could assist gamers with training that leads to a particular career path.”</p><p>Some industries have begun looking to areas such as esports as a means to attract digital-savvy talent, including the UK Armed Forces. </p><p>As <a href="https://www.itpro.com/business/business-strategy/game-on-esports-as-an-enterprise-tool"><u><em>ITPro </em></u><u>previously reported</u></a>, the Ministry of Defence (MoD) recognized esports as an official sport. Some British Army and Royal Air Force (RAF) sites even have dedicated esports facilities for personnel. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ GitHub outage blamed on misconfigured policy as firm pledges resilience improvements ]]></title>
                                                                                                <dc:content><![CDATA[ <p>GitHub has revealed the root cause behind a <a href="https://www.itpro.com/software/development/the-github-outage-explained-what-happened-who-was-affected-and-how-long-did-it-last"><u>nearly eight-hour long outage on Monday</u></a>: a misconfigured policy that triggered a cascade of failures.</p><p>On Monday, GitHub users began struggling to use the service around 1:28pm UTC, reporting issues with API requests, Actions, Webhooks, Pull Requests, and <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained">GitHub Copilot</a>. At the time, GitHub said it was seeing error rates between 20% to 50% for different tasks, with other services also impacted. </p><p>"At peak, web/API error rates were approximately 20%, while archive and raw-content downloads reached approximately 50%," GitHub said via an update on its <a href="https://www.githubstatus.com/incidents/zkxwbgr0cnmx"><u>status report</u></a>. </p><p>"SAML/OIDC authentication, SCIM, and Team Sync were also affected, as well as Actions workflows in GHEC with Data Residency that depend on public workflow step definitions hosted on GitHub.com."</p><p>Within a few minutes the problem was spotted, but it took a total of seven hours and 47 minutes for the issues to be totally resolved, the company said. </p><p>"Most services recovered by 16:36 UTC as our Central US datacenter recovered; Actions was degraded until approximately 18:03 UTC; and Copilot Token Service fully recovered by 21:02."</p><h2 id="what-happened-with-the-github-outage">What happened with the GitHub Outage?</h2><p>After an investigation, GitHub said the issue was due to “network saturation” of load balancers due to new peak traffic in the Central US hosting region. </p><p>"Originally this was caused by an Istio sidecar pod reaching its concurrency limits and failing to auto scale correctly because of a misconfigured policy that watched host service but not sidecar limits,” the company explained in a post-mortem report. </p><p>That failure cascaded, the post noted, with four HAProxy nodes exhausting their flow limits, degrading the gateway authentication path — all of which led to further authentication latency and failures, the GitHub said.</p><p>"The problem was worsened by optimistic retry logic which overloaded internal load balancers," the post added. "Pausing HAProxy on those nodes simultaneously produced immediate broad recovery."</p><h2 id="slow-recovery">Slow recovery</h2><p>GitHub immediately moved some traffic away from the failing Central US data center location to Northern Virginia to give time to debug and resolve the issues. But Northern Virginia was quickly flooded with traffic too because of a retry bug. </p><p>That was pinned on "client retry behaviour" – in other words, client software kept trying to make it work over and over again, leading to failed requests and amplified load. </p><p><a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub </a>managed to temporarily block the "retry storm" but still saw a huge increase in Copilot authentication. </p><p>"Copilot Token Service traffic increased from a normal 7–9K RPS to 70–100K RPS. Reducing gateway authentication retries and blocking retry-triggering responses stabilized Copilot Token Service and completed recovery," the post noted. </p><p>External factors exacerbated the issue, according to GitHub, including a number of “scraping attacks on codeload endpoints”. </p><h2 id="what-39-s-next">What's next?</h2><p>GitHub said it had solutions lined up to avoid a similar outage. That includes fixing the initial autoscaling policies and auditing Istio request, concurrency ,and scaling limits, in order to avoid the same flaw recurring. </p><p>It also plans to review "retry limits and backoff behaviour across gateways and clients," and address the VS Code retry behaviour that led to the massive leap in Copilot token traffic. </p><p>More widely, GitHub plans to improve load balancer capacity monitoring and failover safeguards. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/software/development/github-outage-blamed-on-misconfigured-policy-as-firm-pledged-resilience-improvements</link>
                                                                            <description>
                            <![CDATA[ “Network saturation” in a key data center hosting location sparked the lengthy GitHub outage earlier this week ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">LM76uToaYBHx8mNNbwE5kH</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/N73zSj7rBQyVcqXLUthrq5-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 20 Aug 2026 13:40:15 +0000</pubDate>                                                                                                                                <updated>Thu, 20 Aug 2026 14:13:17 +0000</updated>
                                                                                                                                            <category><![CDATA[Development]]></category>
                                                    <category><![CDATA[Software]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/N73zSj7rBQyVcqXLUthrq5-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[GitHub Inc. signage during the Singapore FinTech Festival in Singapore, on Thursday, Nov. 16, 2023.]]></media:description>                                                            <media:text><![CDATA[GitHub Inc. signage during the Singapore FinTech Festival in Singapore, on Thursday, Nov. 16, 2023.]]></media:text>
                                <media:title type="plain"><![CDATA[GitHub Inc. signage during the Singapore FinTech Festival in Singapore, on Thursday, Nov. 16, 2023.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/N73zSj7rBQyVcqXLUthrq5-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>GitHub has revealed the root cause behind a <a href="https://www.itpro.com/software/development/the-github-outage-explained-what-happened-who-was-affected-and-how-long-did-it-last"><u>nearly eight-hour long outage on Monday</u></a>: a misconfigured policy that triggered a cascade of failures.</p><p>On Monday, GitHub users began struggling to use the service around 1:28pm UTC, reporting issues with API requests, Actions, Webhooks, Pull Requests, and <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained">GitHub Copilot</a>. At the time, GitHub said it was seeing error rates between 20% to 50% for different tasks, with other services also impacted. </p><p>"At peak, web/API error rates were approximately 20%, while archive and raw-content downloads reached approximately 50%," GitHub said via an update on its <a href="https://www.githubstatus.com/incidents/zkxwbgr0cnmx"><u>status report</u></a>. </p><p>"SAML/OIDC authentication, SCIM, and Team Sync were also affected, as well as Actions workflows in GHEC with Data Residency that depend on public workflow step definitions hosted on GitHub.com."</p><p>Within a few minutes the problem was spotted, but it took a total of seven hours and 47 minutes for the issues to be totally resolved, the company said. </p><p>"Most services recovered by 16:36 UTC as our Central US datacenter recovered; Actions was degraded until approximately 18:03 UTC; and Copilot Token Service fully recovered by 21:02."</p><h2 id="what-happened-with-the-github-outage">What happened with the GitHub Outage?</h2><p>After an investigation, GitHub said the issue was due to “network saturation” of load balancers due to new peak traffic in the Central US hosting region. </p><p>"Originally this was caused by an Istio sidecar pod reaching its concurrency limits and failing to auto scale correctly because of a misconfigured policy that watched host service but not sidecar limits,” the company explained in a post-mortem report. </p><p>That failure cascaded, the post noted, with four HAProxy nodes exhausting their flow limits, degrading the gateway authentication path — all of which led to further authentication latency and failures, the GitHub said.</p><p>"The problem was worsened by optimistic retry logic which overloaded internal load balancers," the post added. "Pausing HAProxy on those nodes simultaneously produced immediate broad recovery."</p><h2 id="slow-recovery">Slow recovery</h2><p>GitHub immediately moved some traffic away from the failing Central US data center location to Northern Virginia to give time to debug and resolve the issues. But Northern Virginia was quickly flooded with traffic too because of a retry bug. </p><p>That was pinned on "client retry behaviour" – in other words, client software kept trying to make it work over and over again, leading to failed requests and amplified load. </p><p><a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub </a>managed to temporarily block the "retry storm" but still saw a huge increase in Copilot authentication. </p><p>"Copilot Token Service traffic increased from a normal 7–9K RPS to 70–100K RPS. Reducing gateway authentication retries and blocking retry-triggering responses stabilized Copilot Token Service and completed recovery," the post noted. </p><p>External factors exacerbated the issue, according to GitHub, including a number of “scraping attacks on codeload endpoints”. </p><h2 id="what-39-s-next">What's next?</h2><p>GitHub said it had solutions lined up to avoid a similar outage. That includes fixing the initial autoscaling policies and auditing Istio request, concurrency ,and scaling limits, in order to avoid the same flaw recurring. </p><p>It also plans to review "retry limits and backoff behaviour across gateways and clients," and address the VS Code retry behaviour that led to the massive leap in Copilot token traffic. </p><p>More widely, GitHub plans to improve load balancer capacity monitoring and failover safeguards. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ 'An evolution in threat actor capabilities': CISA warns hackers are targeting Siemens industrial controllers – and they're using AI generated code ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Hackers are using AI-generated exploitation scripts disguised as legitimate monitoring tools to hack Siemens programmable logic controllers.</p><p>An <a href="https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-231a" target="_blank"><u>advisory</u></a> from the US National Security Agency (NSA), the FBI, and other agencies warns of an active threat against the Siemens controllers, which are widely used in critical infrastructure sectors such as manufacturing, energy, and agriculture. </p><p>The threat actors use internet scanning services to find internet-exposed PLCs running outdated software, or that are otherwise poorly protected.</p><p>"This is not a theoretical risk — it is an active threat," the <a href="https://www.itpro.com/security/what-is-cisa">Cybersecurity and Infrastructure Security Agency (CISA)</a> warned. </p><p>"Depending on the specific circumstances, exploitation of poorly protected PLCs could lead to disruption of critical industrial processes, safety incidents, downtime or equipment damage, compromise of sensitive data, compliance violations, and cascading impacts across interconnected systems."</p><p><a href="https://www.itpro.com/software/development/ai-generated-code-is-now-the-cause-of-one-in-five-breaches-but-developers-and-security-leaders-alike-are-convinced-the-technology-will-come-good-eventually">Using AI to generate exploit scripts</a> is a new tactic, CISA noted. This helps dramatically reduce the time, effort, and technical expertise required to develop working industrial control system exploitation scripts and malicious tools. </p><p>The tactic also allows hackers to exploit additional attack vectors at speed and adapt to defensive measures by collecting public information about vulnerabilities and weaknesses, finding exposed and exploitable PLCs and using AI-generated scripts to act on that information. </p><p>"If PLCs are exposed to the internet, they are at high risk for exploitation," CISA said. </p><h2 id="siemens-s7-series-users-urged-to-act-now">Siemens S7 Series users urged to act now</h2><p>Security agencies have urged all owners and operators of <a href="https://www.itpro.com/infrastructure/what-is-operational-technology-ot">operational technology (OT) </a>systems using Siemens S7 Series and other PLC devices to make sure their systems are properly protected. </p><p>This includes implementing applicable security patches and updates, ensuring isolation from the internet wherever possible, and having strong access controls and security tooling to monitor environments for malicious activity.</p><p>Andrew Costis, engineering manager of the Adversary Research Team at AttackIQ, said the warning should be taken seriously by critical infrastructure operators given traditional targeting methods by threat groups. </p><p>Recent <a href="https://www.itpro.com/security/cyber-attacks/why-attacks-against-critical-national-infrastructure-cni-are-such-a-threat">attacks on critical infrastructure</a> have often centered on “gaining persistent access, stealing sensitive information or positioning inside networks for future operations,” he noted. </p><p>"This latest exposure poses a bit of a different threat. The danger is more immediate because PLCs sit much closer to the physical processes that keep critical infrastructure running. Where a compromised business system can expose data, a compromised PLC can interfere with manufacturing, energy, water, or other physical processes. The downstream effects can reach far beyond the initial target."</p><p>The NSA stresses that the risks extend beyond the Siemens PLCs highlighted in the advisory, saying they represent just one subset of the wider threat landscape. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/an-evolution-in-threat-actor-capabilities-cisa-warns-hackers-are-targeting-siemens-industrial-controllers-and-theyre-using-ai-generated-code</link>
                                                                            <description>
                            <![CDATA[ Security agencies are warning that attackers are exploiting Siemens S7 Series programmable logic controllers to target critical infrastructure ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">HHCmk5fdMJTgBwKx6CTEa5</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/jy9kHQDBFhxUBovKBUkYaG-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 20 Aug 2026 10:39:21 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/jy9kHQDBFhxUBovKBUkYaG-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Logo and branding of Siemens pictured on the side of a company building in Berlin, Germany.]]></media:description>                                                            <media:text><![CDATA[Logo and branding of Siemens pictured on the side of a company building in Berlin, Germany.]]></media:text>
                                <media:title type="plain"><![CDATA[Logo and branding of Siemens pictured on the side of a company building in Berlin, Germany.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/jy9kHQDBFhxUBovKBUkYaG-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Hackers are using AI-generated exploitation scripts disguised as legitimate monitoring tools to hack Siemens programmable logic controllers.</p><p>An <a href="https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-231a" target="_blank"><u>advisory</u></a> from the US National Security Agency (NSA), the FBI, and other agencies warns of an active threat against the Siemens controllers, which are widely used in critical infrastructure sectors such as manufacturing, energy, and agriculture. </p><p>The threat actors use internet scanning services to find internet-exposed PLCs running outdated software, or that are otherwise poorly protected.</p><p>"This is not a theoretical risk — it is an active threat," the <a href="https://www.itpro.com/security/what-is-cisa">Cybersecurity and Infrastructure Security Agency (CISA)</a> warned. </p><p>"Depending on the specific circumstances, exploitation of poorly protected PLCs could lead to disruption of critical industrial processes, safety incidents, downtime or equipment damage, compromise of sensitive data, compliance violations, and cascading impacts across interconnected systems."</p><p><a href="https://www.itpro.com/software/development/ai-generated-code-is-now-the-cause-of-one-in-five-breaches-but-developers-and-security-leaders-alike-are-convinced-the-technology-will-come-good-eventually">Using AI to generate exploit scripts</a> is a new tactic, CISA noted. This helps dramatically reduce the time, effort, and technical expertise required to develop working industrial control system exploitation scripts and malicious tools. </p><p>The tactic also allows hackers to exploit additional attack vectors at speed and adapt to defensive measures by collecting public information about vulnerabilities and weaknesses, finding exposed and exploitable PLCs and using AI-generated scripts to act on that information. </p><p>"If PLCs are exposed to the internet, they are at high risk for exploitation," CISA said. </p><h2 id="siemens-s7-series-users-urged-to-act-now">Siemens S7 Series users urged to act now</h2><p>Security agencies have urged all owners and operators of <a href="https://www.itpro.com/infrastructure/what-is-operational-technology-ot">operational technology (OT) </a>systems using Siemens S7 Series and other PLC devices to make sure their systems are properly protected. </p><p>This includes implementing applicable security patches and updates, ensuring isolation from the internet wherever possible, and having strong access controls and security tooling to monitor environments for malicious activity.</p><p>Andrew Costis, engineering manager of the Adversary Research Team at AttackIQ, said the warning should be taken seriously by critical infrastructure operators given traditional targeting methods by threat groups. </p><p>Recent <a href="https://www.itpro.com/security/cyber-attacks/why-attacks-against-critical-national-infrastructure-cni-are-such-a-threat">attacks on critical infrastructure</a> have often centered on “gaining persistent access, stealing sensitive information or positioning inside networks for future operations,” he noted. </p><p>"This latest exposure poses a bit of a different threat. The danger is more immediate because PLCs sit much closer to the physical processes that keep critical infrastructure running. Where a compromised business system can expose data, a compromised PLC can interfere with manufacturing, energy, water, or other physical processes. The downstream effects can reach far beyond the initial target."</p><p>The NSA stresses that the risks extend beyond the Siemens PLCs highlighted in the advisory, saying they represent just one subset of the wider threat landscape. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Colt DCS names Quy Nguyen as chief executive officer ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.itpro.com/business/leadership/colt-dcs-bolsters-senior-leadership-with-double-appointment">Colt Data Centre Services (Colt DCS)</a> has announced the appointment of Quy Nguyen as chief executive officer (CEO), effective immediately. </p><p>Nguyen steps into the role having served as acting CEO since April 2026, following the <a href="https://www.itpro.com/business/business-strategy/365075/colt-data-centre-services-appoints-new-ceo">retirement of Niclas Sanfridsson</a>. </p><p>Since first joining Colt DCS in 2016, he has held a number of senior leadership positions across sales and marketing, customer experience, design, and delivery business functions. </p><p>In his most recent role as chief sales officer (CSO), he played a key role in strengthening the firm’s commercial strategy and customer relationships.</p><p>Prior to joining the business, Nguyen also served in senior leadership roles spanning finance, strategy, and general management, where he built experience in scaling businesses and delivering growth.</p><p>As CEO, he will now lead Colt DCS through its next phase of expansion, as it looks to scale its global platform and support customers’ growing digital infrastructure requirements.</p><p>In an announcement, Colt DCS chairman Tim Cohen said Nguyen’s “exceptional leadership” has been a key factor in the company’s significant recent growth and transformation.</p><p>“His deep understanding of our customers, our people, and our business, combined with his strategic vision and proven track record of execution, made him the outstanding choice to lead the company,” he commented.</p><p>“As demand for digital infrastructure continues to accelerate globally, we are confident that Quy will build upon our strong foundations and position Colt DCS for continued long-term success."</p><p>Colt DCS operates 15 data centers globally, with a further 12 sites under development across nine cities in the UK, Europe, and the APAC region.</p><p>With nearly 800MW of capacity under development across its key markets, the company said it is well-positioned to support the growing demand for digital infrastructure that is being driven by continued cloud adoption and the rapid expansion of AI workloads across Europe and Asia.</p><p>"I am honoured to be appointed CEO of Colt DCS at such an exciting time for our company and industry,” Nguyen commented. "We have built a strong track record for delivering world-class digital infrastructure, fostering trusted customer relationships, and executing ambitious growth plans across key markets.”</p><p>Nguyen said Colt DCS will support customers’ evolving needs through continued investment, operational excellence, and innovation, as demand for sustainable cloud and AI infrastructure continues to grow.</p><p>“I look forward to working alongside our talented teams around the world to build on our strong foundations, expand our global platform, and deliver long-term value for our customers, partners, and stakeholders," he added.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/leadership/colt-dcs-names-quy-nguyen-as-chief-executive-officer</link>
                                                                            <description>
                            <![CDATA[ The experienced leader steps into the role on a full-time basis following a four-month spell as acting CEO ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">3cuZoWfqfGyLY2oddjknXk</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/MPqccF6vVF4MbfL6bCyEFa-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 20 Aug 2026 10:28:53 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Leadership]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (Daniel Todd) ]]></author>                    <dc:creator><![CDATA[ Daniel Todd ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/SRyC34qeLpNDj3dJtsVDhT.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/MPqccF6vVF4MbfL6bCyEFa-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Two hands made out of pixels, denoting technology, are joined in a handshake]]></media:description>                                                            <media:text><![CDATA[Two hands made out of pixels, denoting technology, are joined in a handshake]]></media:text>
                                <media:title type="plain"><![CDATA[Two hands made out of pixels, denoting technology, are joined in a handshake]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/MPqccF6vVF4MbfL6bCyEFa-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/business/leadership/colt-dcs-bolsters-senior-leadership-with-double-appointment">Colt Data Centre Services (Colt DCS)</a> has announced the appointment of Quy Nguyen as chief executive officer (CEO), effective immediately. </p><p>Nguyen steps into the role having served as acting CEO since April 2026, following the <a href="https://www.itpro.com/business/business-strategy/365075/colt-data-centre-services-appoints-new-ceo">retirement of Niclas Sanfridsson</a>. </p><p>Since first joining Colt DCS in 2016, he has held a number of senior leadership positions across sales and marketing, customer experience, design, and delivery business functions. </p><p>In his most recent role as chief sales officer (CSO), he played a key role in strengthening the firm’s commercial strategy and customer relationships.</p><p>Prior to joining the business, Nguyen also served in senior leadership roles spanning finance, strategy, and general management, where he built experience in scaling businesses and delivering growth.</p><p>As CEO, he will now lead Colt DCS through its next phase of expansion, as it looks to scale its global platform and support customers’ growing digital infrastructure requirements.</p><p>In an announcement, Colt DCS chairman Tim Cohen said Nguyen’s “exceptional leadership” has been a key factor in the company’s significant recent growth and transformation.</p><p>“His deep understanding of our customers, our people, and our business, combined with his strategic vision and proven track record of execution, made him the outstanding choice to lead the company,” he commented.</p><p>“As demand for digital infrastructure continues to accelerate globally, we are confident that Quy will build upon our strong foundations and position Colt DCS for continued long-term success."</p><p>Colt DCS operates 15 data centers globally, with a further 12 sites under development across nine cities in the UK, Europe, and the APAC region.</p><p>With nearly 800MW of capacity under development across its key markets, the company said it is well-positioned to support the growing demand for digital infrastructure that is being driven by continued cloud adoption and the rapid expansion of AI workloads across Europe and Asia.</p><p>"I am honoured to be appointed CEO of Colt DCS at such an exciting time for our company and industry,” Nguyen commented. "We have built a strong track record for delivering world-class digital infrastructure, fostering trusted customer relationships, and executing ambitious growth plans across key markets.”</p><p>Nguyen said Colt DCS will support customers’ evolving needs through continued investment, operational excellence, and innovation, as demand for sustainable cloud and AI infrastructure continues to grow.</p><p>“I look forward to working alongside our talented teams around the world to build on our strong foundations, expand our global platform, and deliver long-term value for our customers, partners, and stakeholders," he added.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ This company wants you to break out of its security sandbox – and there’s $1 million up for grabs ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Cloud development company Vercel has dared cyber researchers to break out of its security sandbox environment as part of a $1 million challenge. </p><p>The two-week program will be run through <a href="https://www.itpro.com/business/careers-and-training/hackerone-names-nidhi-aggarwal-as-its-new-chief-product-officer">HackerOne </a>and challenges participants to break out of an isolated sandbox hosted by the company. </p><p>This is a two-pronged challenge, according to Vercel, requiring hackers to escape compute boundaries to reach an <a href="https://www.itpro.com/cloud/370070/what-is-aws-ec2">EC2 </a>host, reach another tenant’s sandbox, or crash another tenant’s sandbox. </p><p>Network boundaries are also in the crosshairs, the company noted. Participants are challenged to “defeat the sandbox firewall” and reach unauthorized destinations, infiltrate data, or scoop up credentials. </p><p>Vercel said bounties will be paid per report, with a maximum pay-out of $50,000 for identifying a vulnerability that allows a threat actor to “read or modify another Vercel tenant’s data”. </p><h2 id="under-the-hood-of-the-vercel-sandbox">Under the hood of the Vercel Sandbox</h2><p>In a <a href="https://vercel.com/blog/one-million-dollar-hacker-challenge-for-vercel-sandbox" target="_blank"><u>blog post</u></a> detailing the challenge, Vercel said its sandbox environment runs on bare-metal EC2 hosts, with each sandbox given its own Firecracker microVM with a “dedicated guest kernel”. </p><p>“Inside that microVM a Linux container runs the operator’s code,” the company noted. “The microVM, not the container, is the security boundary, so operator-supplied code runs two layers removed from the host.”</p><p>Meanwhile, the network boundary is enforced on the host outside of the microVM. </p><p>“The sandbox firewall intercepts outbound TCP and DNS, checks each connection against the operator's domain and CIDR policies, and can inject credentials at the boundary so they never enter the microVM.”</p><h2 id="sandbox-security-in-the-spotlight">Sandbox security in the spotlight</h2><p>In a <a href="https://x.com/rauchg/status/2089747453004468339?s=20" target="_blank">statement on X</a>, CEO Guillermo Rauch said the challenge comes in direct response to high-profile incidents involving AI agents. </p><p>Agents at OpenAI, Anthropic, and Meta all breached containment during recent testing schemes, thereafter waging <a href="https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime">attacks against other companies such as Hugging Face</a>. </p><p>As <em>ITPro </em>reported in early August, the sandbox testing environments used by all three companies <a href="https://www.itpro.com/technology/artificial-intelligence/independent-testing-firm-irregular-the-source-of-misconfigurations-that-led-to-meta-openai-and-anthropic-ai-incidents">were hosted by a third-party provider, Irregular</a>. </p><p>“We are putting $1m towards verifying the security of Vercel Sandbox, in the open,” he said. I'm looking forward to bringing transparency to what frontier models can and cannot do in terms of real-world guardrail exploitability.”</p><p>In the event that participants do escape the Vercel Sandbox, Rauch said the company will be “ready to patch, iterate, and share our findings with the broader community”. </p><p>Vercel pointed to a recent test which saw the company’s CTO use an open-weight model to try and break sandbox containment. While the firm <a href="https://vercel.com/blog/everything-hackable-will-get-hacked">noted </a>it did not escape, it “mapped the guest kernel, built a VM to reproduce its ideas, and wrote a fuzzer”.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/this-company-wants-you-to-break-out-of-its-security-sandbox-and-theres-usd1-million-up-for-grabs</link>
                                                                            <description>
                            <![CDATA[ A new HackerOne bounty scheme challenges participants to breach a Vercel sandbox ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">zPHH3WLXNU2qKypzrUJc6T</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/6MnnsrffitCG2bQAJKNJPS-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 20 Aug 2026 10:19:34 +0000</pubDate>                                                                                                                                <updated>Thu, 20 Aug 2026 10:19:49 +0000</updated>
                                                                                                                                            <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/6MnnsrffitCG2bQAJKNJPS-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Security sandbox concept image showing silhouette of a man standing behind bars, with two bars in center warped to create a gap.]]></media:description>                                                            <media:text><![CDATA[Security sandbox concept image showing silhouette of a man standing behind bars, with two bars in center warped to create a gap.]]></media:text>
                                <media:title type="plain"><![CDATA[Security sandbox concept image showing silhouette of a man standing behind bars, with two bars in center warped to create a gap.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/6MnnsrffitCG2bQAJKNJPS-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Cloud development company Vercel has dared cyber researchers to break out of its security sandbox environment as part of a $1 million challenge. </p><p>The two-week program will be run through <a href="https://www.itpro.com/business/careers-and-training/hackerone-names-nidhi-aggarwal-as-its-new-chief-product-officer">HackerOne </a>and challenges participants to break out of an isolated sandbox hosted by the company. </p><p>This is a two-pronged challenge, according to Vercel, requiring hackers to escape compute boundaries to reach an <a href="https://www.itpro.com/cloud/370070/what-is-aws-ec2">EC2 </a>host, reach another tenant’s sandbox, or crash another tenant’s sandbox. </p><p>Network boundaries are also in the crosshairs, the company noted. Participants are challenged to “defeat the sandbox firewall” and reach unauthorized destinations, infiltrate data, or scoop up credentials. </p><p>Vercel said bounties will be paid per report, with a maximum pay-out of $50,000 for identifying a vulnerability that allows a threat actor to “read or modify another Vercel tenant’s data”. </p><h2 id="under-the-hood-of-the-vercel-sandbox">Under the hood of the Vercel Sandbox</h2><p>In a <a href="https://vercel.com/blog/one-million-dollar-hacker-challenge-for-vercel-sandbox" target="_blank"><u>blog post</u></a> detailing the challenge, Vercel said its sandbox environment runs on bare-metal EC2 hosts, with each sandbox given its own Firecracker microVM with a “dedicated guest kernel”. </p><p>“Inside that microVM a Linux container runs the operator’s code,” the company noted. “The microVM, not the container, is the security boundary, so operator-supplied code runs two layers removed from the host.”</p><p>Meanwhile, the network boundary is enforced on the host outside of the microVM. </p><p>“The sandbox firewall intercepts outbound TCP and DNS, checks each connection against the operator's domain and CIDR policies, and can inject credentials at the boundary so they never enter the microVM.”</p><h2 id="sandbox-security-in-the-spotlight">Sandbox security in the spotlight</h2><p>In a <a href="https://x.com/rauchg/status/2089747453004468339?s=20" target="_blank">statement on X</a>, CEO Guillermo Rauch said the challenge comes in direct response to high-profile incidents involving AI agents. </p><p>Agents at OpenAI, Anthropic, and Meta all breached containment during recent testing schemes, thereafter waging <a href="https://www.itpro.com/security/an-unprecedented-cyber-incident-how-openai-models-breached-hugging-face-and-why-it-could-herald-a-new-phase-of-ai-powered-cyber-crime">attacks against other companies such as Hugging Face</a>. </p><p>As <em>ITPro </em>reported in early August, the sandbox testing environments used by all three companies <a href="https://www.itpro.com/technology/artificial-intelligence/independent-testing-firm-irregular-the-source-of-misconfigurations-that-led-to-meta-openai-and-anthropic-ai-incidents">were hosted by a third-party provider, Irregular</a>. </p><p>“We are putting $1m towards verifying the security of Vercel Sandbox, in the open,” he said. I'm looking forward to bringing transparency to what frontier models can and cannot do in terms of real-world guardrail exploitability.”</p><p>In the event that participants do escape the Vercel Sandbox, Rauch said the company will be “ready to patch, iterate, and share our findings with the broader community”. </p><p>Vercel pointed to a recent test which saw the company’s CTO use an open-weight model to try and break sandbox containment. While the firm <a href="https://vercel.com/blog/everything-hackable-will-get-hacked">noted </a>it did not escape, it “mapped the guest kernel, built a VM to reproduce its ideas, and wrote a fuzzer”.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Data belonging to 3.75 million patients was exposed in the CareCloud breach – not the 350,000 originally reported ]]></title>
                                                                                                <dc:content><![CDATA[ <p>The number of victims affected in the CareCloud breach has been revised from 350,000 to roughly 3.75 million, the company has revealed.</p><p>The American medical record storage first confirmed it had been breached back in March, with hackers gaining access to medical data held in its cloud over six whole days. </p><p>According to <a href="https://oag.ca.gov/ecrime/databreach/reports/sb24-627090" target="_blank"><u>regulatory filings</u></a> from CareCloud at the time, the intrusion was spotted on 16 March. An investigation into the incident found an unauthorized party had gained access to an AWS environment for several days. </p><p>The initial filing said the attack caused a network outage of eight hours, disrupting access to the impacted database. </p><p>CareCloud noted the hackers "claimed to have exfiltrated data from databases within that environment", though the nature of the attack and whether CareCloud was directly communicating with the attackers remains unclear. </p><p><a href="https://www.bleepingcomputer.com/news/security/healthtech-firm-carecloud-data-breach-impacts-37-million-patients/" target="_blank">Reports</a> suggest no hacking group has as yet claimed responsibility for the attack.</p><p>After CareCloud spotted the incident, access was shut down and no further unauthorized activity was spotted. </p><h2 id="carecloud-breach-notices-cited-far-lower-victim-numbers">CareCloud breach notices cited far lower victim numbers</h2><p>In July, disclosure letters were distributed to around 350,000 people in the US who were believed to be affected — but that has <a href="https://ocrportal.hhs.gov/ocr/breach/breach_report_hip.jsf" target="_blank">since risen to 3.75 million potential victims</a>. </p><p>Leaked data includes names and addresses, as well as more sensitive details such as bank accounts, payment card numbers, medical data, and government identification including driver's licenses, passports, and Social Security numbers. </p><p>Ross Filipek, <a href="https://www.itpro.com/careers/28228/ciso-job-description-what-does-a-ciso-do">CISO </a>at Corsica Technologies, said the revision to the victim list highlights the disastrous impact of cyber attacks on healthcare organizations – which rank among the <a href="https://www.itpro.com/security/hospital-cyber-attacks-are-increasingly-hitting-patient-care">top targets for cyber criminals</a>. </p><p>"This isn't just a massive breach of data, it's a warning," Filipek commented. "Nearly four million patients having their information exposed shows just how much sensitive data can be concentrated behind a single healthcare technology provider."</p><p>"It also creates significant legal and regulatory exposure for a provider handling this much protected health information, which could make the fallout expensive for CareCloud."</p><h2 id="what-s-next">What's next?</h2><p>CareCloud hasn't revealed much detail about the attack – including whether it was <a href="https://www.itpro.com/security/28084/what-is-ransomware">ransomware </a>or a <a href="https://www.itpro.com/security/ransomware/instructure-chose-to-a-pay-ransom-following-the-canvas-cyber-attack-research-shows-more-than-half-of-security-leaders-would-follow-suit">ransom was paid</a> – but the company says its continuing to investigate and lockdown systems. </p><p>"Upon discovering the incident, CareCloud quickly launched an investigation and took steps to contain and remediate the issue," a spokesperson said, per reports from <a href="https://www.teiss.co.uk/news/carecloud-says-data-security-incident-affected-over-37-million-18010" target="_blank"><u><em>Teiss</em></u></a>. </p><p>"CareCloud engaged external cybersecurity experts and, with their assistance, secured the affected environment, eliminated the threat, and confirmed that no persistent unauthorized access remained. CareCloud is continuing to strengthen the security of its systems and environments."</p><p><em>ITPro </em>approached CareCloud for comment, but did not receive a response by time of publication. </p><p>Disclosure letters distributed to affected patients note the company has seen no attempts at identity fraud to date, but warns recipients to be mindful of misuse of the stolen information.  </p><p>Data exposed in the breach gives cyber criminals “plenty to work with long after the initial incident is over,” Filipek said. </p><p>Hackers often use exposed information such as email addresses and phone numbers in follow-up scams in the wake of a cyber attack or breach. </p><p>"For patients, the risk doesn’t stop at identity theft," noted Filipek. "Stolen health information can fuel highly convincing <a href="https://www.itpro.com/security/29093/what-is-phishing">phishing</a>, medical fraud, and other scams built around deeply personal details."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/data-breaches/data-belonging-to-3-75-million-patients-was-exposed-in-the-carecloud-breach-not-the-350-000-originally-reported</link>
                                                                            <description>
                            <![CDATA[ The number of victims in the CareCloud breach has surged to over three and a half million ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">xNzHhGDkf8VTwZySnBZEDQ</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/3J7Au6MQQeAP7axuLLnkPe-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 20 Aug 2026 10:10:31 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/3J7Au6MQQeAP7axuLLnkPe-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Data breach concept image showing lines of locked padlocks, with one in center unlocked.]]></media:description>                                                            <media:text><![CDATA[Data breach concept image showing lines of locked padlocks, with one in center unlocked.]]></media:text>
                                <media:title type="plain"><![CDATA[Data breach concept image showing lines of locked padlocks, with one in center unlocked.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/3J7Au6MQQeAP7axuLLnkPe-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The number of victims affected in the CareCloud breach has been revised from 350,000 to roughly 3.75 million, the company has revealed.</p><p>The American medical record storage first confirmed it had been breached back in March, with hackers gaining access to medical data held in its cloud over six whole days. </p><p>According to <a href="https://oag.ca.gov/ecrime/databreach/reports/sb24-627090" target="_blank"><u>regulatory filings</u></a> from CareCloud at the time, the intrusion was spotted on 16 March. An investigation into the incident found an unauthorized party had gained access to an AWS environment for several days. </p><p>The initial filing said the attack caused a network outage of eight hours, disrupting access to the impacted database. </p><p>CareCloud noted the hackers "claimed to have exfiltrated data from databases within that environment", though the nature of the attack and whether CareCloud was directly communicating with the attackers remains unclear. </p><p><a href="https://www.bleepingcomputer.com/news/security/healthtech-firm-carecloud-data-breach-impacts-37-million-patients/" target="_blank">Reports</a> suggest no hacking group has as yet claimed responsibility for the attack.</p><p>After CareCloud spotted the incident, access was shut down and no further unauthorized activity was spotted. </p><h2 id="carecloud-breach-notices-cited-far-lower-victim-numbers">CareCloud breach notices cited far lower victim numbers</h2><p>In July, disclosure letters were distributed to around 350,000 people in the US who were believed to be affected — but that has <a href="https://ocrportal.hhs.gov/ocr/breach/breach_report_hip.jsf" target="_blank">since risen to 3.75 million potential victims</a>. </p><p>Leaked data includes names and addresses, as well as more sensitive details such as bank accounts, payment card numbers, medical data, and government identification including driver's licenses, passports, and Social Security numbers. </p><p>Ross Filipek, <a href="https://www.itpro.com/careers/28228/ciso-job-description-what-does-a-ciso-do">CISO </a>at Corsica Technologies, said the revision to the victim list highlights the disastrous impact of cyber attacks on healthcare organizations – which rank among the <a href="https://www.itpro.com/security/hospital-cyber-attacks-are-increasingly-hitting-patient-care">top targets for cyber criminals</a>. </p><p>"This isn't just a massive breach of data, it's a warning," Filipek commented. "Nearly four million patients having their information exposed shows just how much sensitive data can be concentrated behind a single healthcare technology provider."</p><p>"It also creates significant legal and regulatory exposure for a provider handling this much protected health information, which could make the fallout expensive for CareCloud."</p><h2 id="what-s-next">What's next?</h2><p>CareCloud hasn't revealed much detail about the attack – including whether it was <a href="https://www.itpro.com/security/28084/what-is-ransomware">ransomware </a>or a <a href="https://www.itpro.com/security/ransomware/instructure-chose-to-a-pay-ransom-following-the-canvas-cyber-attack-research-shows-more-than-half-of-security-leaders-would-follow-suit">ransom was paid</a> – but the company says its continuing to investigate and lockdown systems. </p><p>"Upon discovering the incident, CareCloud quickly launched an investigation and took steps to contain and remediate the issue," a spokesperson said, per reports from <a href="https://www.teiss.co.uk/news/carecloud-says-data-security-incident-affected-over-37-million-18010" target="_blank"><u><em>Teiss</em></u></a>. </p><p>"CareCloud engaged external cybersecurity experts and, with their assistance, secured the affected environment, eliminated the threat, and confirmed that no persistent unauthorized access remained. CareCloud is continuing to strengthen the security of its systems and environments."</p><p><em>ITPro </em>approached CareCloud for comment, but did not receive a response by time of publication. </p><p>Disclosure letters distributed to affected patients note the company has seen no attempts at identity fraud to date, but warns recipients to be mindful of misuse of the stolen information.  </p><p>Data exposed in the breach gives cyber criminals “plenty to work with long after the initial incident is over,” Filipek said. </p><p>Hackers often use exposed information such as email addresses and phone numbers in follow-up scams in the wake of a cyber attack or breach. </p><p>"For patients, the risk doesn’t stop at identity theft," noted Filipek. "Stolen health information can fuel highly convincing <a href="https://www.itpro.com/security/29093/what-is-phishing">phishing</a>, medical fraud, and other scams built around deeply personal details."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘The economics of vulnerability discovery have changed’: NIST wants to modernize the National Vulnerability Database amid AI advances – cyber experts say it needs to be redesigned with machine-speed in mind ]]></title>
                                                                                                <dc:content><![CDATA[ <p>NIST has issued a call for advice on how it can modernize the <a href="https://www.itpro.com/security/the-cve-system-isnt-working-what-next">National Vulnerability Database (NVD) </a>in light of recent AI advances – cyber experts have told <em>ITPro </em>that it’s desperately needed. </p><p>In a recent <a href="https://www.federalregister.gov/documents/2026/08/12/2026-16371/request-for-information-rfi-on-modernizing-the-national-vulnerability-database-in-the-age-of" target="_blank">request for information</a> (RFI), the institute said it is seeking stakeholder input on how to overhaul the vulnerability reporting service. The NVD plays a key role in helping organizations keep their finger on the pulse of the threat landscape. </p><p>The database acts as a catalog for software and hardware-related security flaws, drawing on the Common Vulnerabilities and Exposures (CVE) system to provide details and guidance on vulnerabilities. </p><p>Yet recent AI advances, particularly in the cybersecurity field, have raised the stakes when it comes to vulnerability identification and remediation. </p><p>Rob O’Connor, EMEA CISO at Insight, told <em>ITPro </em>that “the economics of vulnerability discovery have changed” due to AI. Humans simply can’t match the speed of agents, and that creates blind spots for security teams. </p><p>“Automated agents can analyse and triage code at a scale humans can no longer match,” he said. “This means the bottleneck now isn’t finding the vulnerabilities. Instead, it’s in contextualising and remediating them.”</p><p>Researchers at Forescout <a href="https://www.itpro.com/security/brace-yourselves-for-a-vulnerability-explosion-forescout-warns">told <em>ITPro earlier </em>this year that businesses should prepare for an explosion of vulnerabilities</a>, with AI now being used to identify software flaws at record pace.</p><p>Some big tech companies have already taken action on this front, including Apple. In late June, the company <a href="https://www.itpro.com/software/apple-is-speeding-up-software-updates-due-to-ai-security-concerns-heres-what-you-need-to-know">revealed plans to speed up software patching </a>in direct response to AI.</p><p>At the core of NIST’s request, the institute said the goal is to “improve the NVD’s scalability, automation, interoperability, transparency, and utility”. </p><p>Put simply, AI is speeding things up, and the NVD needs to match the pace of vulnerability disclosures, which the institute itself <a href="https://www.itpro.com/security/nist-national-vulnerability-database-overhaul-increased-cve-submissions">recently admitted has become untenable</a>. </p><p>In April, NIST revealed it would scrap efforts to analyze every submitted CVE, instead focusing on only the most severe vulnerabilities. The shake-up means that only CVEs that meet certain criteria will be ‘enriched’ with additional details and guidance. </p><h2 id="the-nvd-was-built-around-human-speed">The NVD was built around human speed</h2><p>A key issue with the NVD in its current state is that it was designed around “human speed”, according to Crystal Morin, senior <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>strategist at Sysdig. </p><p>The database launched in 2005, having evolved from an earlier setup known as the Internet-Categorization of Attacks Toolkit (ICAT). The scale – and indeed, speed – of threats at that time pales in comparison to what organizations face in 2026. </p><p>That’s not to suggest that reporting standards are obsolete, though - they just need a rethink to remain fit-for-purpose in an AI-powered era. </p><p>“They were designed for human speed. We now operate in a machine-speed world. A CVE with a static severity score tells you a flaw exists and, roughly, how bad it could be in theory. It doesn’t tell you whether it is exploitable in your environment, or if it’s already being weaponized,” she told <em>ITPro</em>. </p><p>With AI in the mix, Morin said this creates two distinct gaps: namely speed and the detail required to act on potential vulnerabilities. </p><p>“The reporting and enrichment pipeline still moves in weeks while exploitation moves in hours,” she said. “Second, the same detailed advisory that helps defenders is also raw material for AI-generated exploit code.”</p><p>“Ultimately, severity scoring on its own drives the ‘patch everything’ behavior that simply does not scale.”</p><p>Morin noted that Sysdig’s threat intelligence unit saw this dynamic play out in real-time when a Langflow vulnerability with a 9.9 CVSS score “essentially sat untouched while a lower-scored 9.3 vulnerability in the same product was mass exploited”.</p><p>“Standards must evolve toward data that is real-time, machine-readable, and grounded in real-world exploitability rather than theoretical severity.”</p><h2 id="designing-for-machine-consumption">Designing for machine consumption</h2><p>Efforts to modernize the NVD should focus primarily on designing it for “machine consumption”, according to Rob O’Connor, EMEA <a href="https://www.itpro.com/careers/28228/ciso-job-description-what-does-a-ciso-do">CISO </a>at Insight. </p><p>With AI playing an increasing role in vulnerability management, curating easily consumed information could help speed up reaction times for security practitioners. </p><p>“I’d recommend designing it primarily for machine consumption, with human users as a secondary consideration,” he told <em>ITPro</em>. “As vulnerability management becomes more automated, data needs to be structured so machines can interpret and act on it easily, while remaining clear and useful for human analysts.”</p><p>Douglas McKee, director of vulnerability intelligence at Rapid7, noted that the ecosystem has already begun moving toward “structured enrichment” through <a href="https://www.cve.org/ProgramOrganization/ADPs" target="_blank">authorized data publishers (ADPs)</a>.</p><p>These are organizations that are authorized to “enrich the content” of CVE records, a practice that NIST noted earlier this year that it will roll back. </p><p>Elsewhere, standards such as the <a href="https://www.csaf.io/">Common Security Advisory Framework (CSAF)</a> and the <a href="https://cyclonedx.org/capabilities/vex/">Vulnerability Exploitability eXchange (VEX)</a> also provide machine-readable information on what specific products are affected by flaws.</p><p>“Those are exactly the kind of building blocks an automated vulnerability management system needs,” McKee told <em>ITPro</em>. </p><p>“I would move the NVD toward a federated enrichment model rather than trying to make NIST the place where every piece of vulnerability analysis has to happen. Let CNAs, vendors, researchers, and qualified data publishers contribute structured enrichment while the NVD acts as the trusted aggregation and normalization layer.”</p><p>Morin echoed McKee and O’Connor’s comments regarding machine-speed upgrades to the database. </p><p>“My core recommendation would be to evolve the NVD from telling defenders a vulnerability exists to telling them the extent to which it matters in production environments, in real time and in a form machine-speed security can act on,” she said.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/nist-national-vulnerability-database-modernization-machine-speed-consumption</link>
                                                                            <description>
                            <![CDATA[ The National Vulnerability Database was designed for human-speed. Advances in AI mean it needs a much-needed overhaul ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">HDjrAfXsf83JW2JHGdo6nB</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Y7KM9xXWdcmTpuScLoy7jW-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 20 Aug 2026 07:35:37 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Y7KM9xXWdcmTpuScLoy7jW-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Software vulnerability concept image depicting a digitized padlock with pixels fragmenting and drifting away.]]></media:description>                                                            <media:text><![CDATA[Software vulnerability concept image depicting a digitized padlock with pixels fragmenting and drifting away.]]></media:text>
                                <media:title type="plain"><![CDATA[Software vulnerability concept image depicting a digitized padlock with pixels fragmenting and drifting away.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Y7KM9xXWdcmTpuScLoy7jW-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>NIST has issued a call for advice on how it can modernize the <a href="https://www.itpro.com/security/the-cve-system-isnt-working-what-next">National Vulnerability Database (NVD) </a>in light of recent AI advances – cyber experts have told <em>ITPro </em>that it’s desperately needed. </p><p>In a recent <a href="https://www.federalregister.gov/documents/2026/08/12/2026-16371/request-for-information-rfi-on-modernizing-the-national-vulnerability-database-in-the-age-of" target="_blank">request for information</a> (RFI), the institute said it is seeking stakeholder input on how to overhaul the vulnerability reporting service. The NVD plays a key role in helping organizations keep their finger on the pulse of the threat landscape. </p><p>The database acts as a catalog for software and hardware-related security flaws, drawing on the Common Vulnerabilities and Exposures (CVE) system to provide details and guidance on vulnerabilities. </p><p>Yet recent AI advances, particularly in the cybersecurity field, have raised the stakes when it comes to vulnerability identification and remediation. </p><p>Rob O’Connor, EMEA CISO at Insight, told <em>ITPro </em>that “the economics of vulnerability discovery have changed” due to AI. Humans simply can’t match the speed of agents, and that creates blind spots for security teams. </p><p>“Automated agents can analyse and triage code at a scale humans can no longer match,” he said. “This means the bottleneck now isn’t finding the vulnerabilities. Instead, it’s in contextualising and remediating them.”</p><p>Researchers at Forescout <a href="https://www.itpro.com/security/brace-yourselves-for-a-vulnerability-explosion-forescout-warns">told <em>ITPro earlier </em>this year that businesses should prepare for an explosion of vulnerabilities</a>, with AI now being used to identify software flaws at record pace.</p><p>Some big tech companies have already taken action on this front, including Apple. In late June, the company <a href="https://www.itpro.com/software/apple-is-speeding-up-software-updates-due-to-ai-security-concerns-heres-what-you-need-to-know">revealed plans to speed up software patching </a>in direct response to AI.</p><p>At the core of NIST’s request, the institute said the goal is to “improve the NVD’s scalability, automation, interoperability, transparency, and utility”. </p><p>Put simply, AI is speeding things up, and the NVD needs to match the pace of vulnerability disclosures, which the institute itself <a href="https://www.itpro.com/security/nist-national-vulnerability-database-overhaul-increased-cve-submissions">recently admitted has become untenable</a>. </p><p>In April, NIST revealed it would scrap efforts to analyze every submitted CVE, instead focusing on only the most severe vulnerabilities. The shake-up means that only CVEs that meet certain criteria will be ‘enriched’ with additional details and guidance. </p><h2 id="the-nvd-was-built-around-human-speed">The NVD was built around human speed</h2><p>A key issue with the NVD in its current state is that it was designed around “human speed”, according to Crystal Morin, senior <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>strategist at Sysdig. </p><p>The database launched in 2005, having evolved from an earlier setup known as the Internet-Categorization of Attacks Toolkit (ICAT). The scale – and indeed, speed – of threats at that time pales in comparison to what organizations face in 2026. </p><p>That’s not to suggest that reporting standards are obsolete, though - they just need a rethink to remain fit-for-purpose in an AI-powered era. </p><p>“They were designed for human speed. We now operate in a machine-speed world. A CVE with a static severity score tells you a flaw exists and, roughly, how bad it could be in theory. It doesn’t tell you whether it is exploitable in your environment, or if it’s already being weaponized,” she told <em>ITPro</em>. </p><p>With AI in the mix, Morin said this creates two distinct gaps: namely speed and the detail required to act on potential vulnerabilities. </p><p>“The reporting and enrichment pipeline still moves in weeks while exploitation moves in hours,” she said. “Second, the same detailed advisory that helps defenders is also raw material for AI-generated exploit code.”</p><p>“Ultimately, severity scoring on its own drives the ‘patch everything’ behavior that simply does not scale.”</p><p>Morin noted that Sysdig’s threat intelligence unit saw this dynamic play out in real-time when a Langflow vulnerability with a 9.9 CVSS score “essentially sat untouched while a lower-scored 9.3 vulnerability in the same product was mass exploited”.</p><p>“Standards must evolve toward data that is real-time, machine-readable, and grounded in real-world exploitability rather than theoretical severity.”</p><h2 id="designing-for-machine-consumption">Designing for machine consumption</h2><p>Efforts to modernize the NVD should focus primarily on designing it for “machine consumption”, according to Rob O’Connor, EMEA <a href="https://www.itpro.com/careers/28228/ciso-job-description-what-does-a-ciso-do">CISO </a>at Insight. </p><p>With AI playing an increasing role in vulnerability management, curating easily consumed information could help speed up reaction times for security practitioners. </p><p>“I’d recommend designing it primarily for machine consumption, with human users as a secondary consideration,” he told <em>ITPro</em>. “As vulnerability management becomes more automated, data needs to be structured so machines can interpret and act on it easily, while remaining clear and useful for human analysts.”</p><p>Douglas McKee, director of vulnerability intelligence at Rapid7, noted that the ecosystem has already begun moving toward “structured enrichment” through <a href="https://www.cve.org/ProgramOrganization/ADPs" target="_blank">authorized data publishers (ADPs)</a>.</p><p>These are organizations that are authorized to “enrich the content” of CVE records, a practice that NIST noted earlier this year that it will roll back. </p><p>Elsewhere, standards such as the <a href="https://www.csaf.io/">Common Security Advisory Framework (CSAF)</a> and the <a href="https://cyclonedx.org/capabilities/vex/">Vulnerability Exploitability eXchange (VEX)</a> also provide machine-readable information on what specific products are affected by flaws.</p><p>“Those are exactly the kind of building blocks an automated vulnerability management system needs,” McKee told <em>ITPro</em>. </p><p>“I would move the NVD toward a federated enrichment model rather than trying to make NIST the place where every piece of vulnerability analysis has to happen. Let CNAs, vendors, researchers, and qualified data publishers contribute structured enrichment while the NVD acts as the trusted aggregation and normalization layer.”</p><p>Morin echoed McKee and O’Connor’s comments regarding machine-speed upgrades to the database. </p><p>“My core recommendation would be to evolve the NVD from telling defenders a vulnerability exists to telling them the extent to which it matters in production environments, in real time and in a form machine-speed security can act on,” she said.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ ‘The scale of PurpleDelta’s operation is easy to miss’: Fake North Korean IT workers are submitting so many job applications that companies can’t keep up ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.itpro.com/security/cyber-attacks/north-korean-it-workers-the-growing-threat">Fake North Korean IT workers</a> are taking their job-hunt seriously, submitting as many as 60 job applications per day according to new research. </p><p>Groups of North Korean IT workers, <a href="https://www.recordedfuture.com/research/purpledelta-fraudulent-employment-operations" target="_blank">dubbed PurpleDelta</a> by Recorded Future, created at least 22 fabricated personas, with job applications being made across a range of recruitment websites and <a href="https://www.itpro.com/security/cyber-attacks/north-korean-it-workers-the-growing-threat">platforms such as LinkedIn and Upwork</a>. </p><p>Notably, the group is using identity-brokering services, account-renting via <a href="https://www.itpro.com/mobile/remote-access/368059/anydesk-review">AnyDesk</a>, and multi-accounting tools. </p><p>Researchers found these fraudulent workers are often coordinating via Telegram and Slack, with support from facilitators who procure and maintain company-issued hardware on the operators' behalf.</p><p>“A successful job placement provides the PurpleDelta operation with a steady income and places a false employee within a company’s normal systems," said Alexander Leslie, senior advisor at Recorded Future. </p><p>"Wages are often funnelled toward sanctioned North Korean military and nuclear programs, and access may also expose information that was never meant to leave a company.”</p><h2 id="fake-north-korean-it-workers-are-turning-to-ai">Fake North Korean IT workers are turning to AI</h2><p>The fake workers' applications typically include AI-generated profile photos, custom-configured <a href="https://www.itpro.com/technology/artificial-intelligence/openai-just-revealed-what-people-really-use-chatgpt-for-and-70-percent-of-queries-have-nothing-to-do-with-work">ChatGPT </a>assistants, and identity documents sourced from an illicit ID-generation service. </p><p>In terms of targets, researchers noted they’ve been applying for jobs at software and technology companies, as well as healthcare and biotechnology firms. Some appear to have been successful, according to Recorded Future, infiltrating at least 10 organizations. </p><p>Once inside, the fraudulent workers recorded internal meetings, used screen recording software during work sessions, and drafted pre-written Google Translate excuses to justify the use of personal devices and personal bank accounts. </p><p>“The scale of PurpleDelta’s operation is easy to miss when a company sees only one application," said Leslie. </p><p>"During interviews, PurpleDelta operators copied transcribed questions into ChatGPT and read the answers back, sometimes word for word, and occasionally repeated incorrect answers. A candidate can sound prepared without fully understanding what they are saying, which makes ordinary interview cues less reliable."</p><h2 id="manipulating-company-hardware">Manipulating company hardware</h2><p>In some cases, Recorded Future said fraudulent workers received a company laptop and kept it and connected it in the country where they claim to live - usually the US, Germany or Brazil. </p><p>In one instance, researchers spotted one operative managing at least four identities simultaneously. </p><p>“PurpleDelta can recover quickly when one identity is exposed and a persona can be replaced," said Leslie. </p><p>"The same application machinery can keep running under a new name, and organizations should expect these operatives to adjust their methods as hiring teams become more familiar with them. Continued verification gives companies a better chance of catching changes."</p><p>Researchers warned that these fraudulent workers have been highly successful so far, collecting high-value intelligence and exfiltrating proprietary data, source code, and internal communications in support of North Korean state objectives. </p><p>"Companies should verify an employee’s identity after hiring, checking this during onboarding, so they can confirm where a worker and the hardware actually are," Leslie said. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/cyber-attacks/the-scale-of-purpledeltas-operation-is-easy-to-miss-fake-north-korean-it-workers-are-submitting-so-many-job-applications-that-companies-cant-keep-up</link>
                                                                            <description>
                            <![CDATA[ The PurpleDelta group is applying for thousands of jobs to steal proprietary data, source code, and internal communications ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">osiLPVSnYqZZJKwzNyTEGM</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/rBaWcKkPGkJSvaRS3NHzSB-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 19 Aug 2026 11:16:46 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/rBaWcKkPGkJSvaRS3NHzSB-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[North Korean hacker concept image showing a man in military uniform working on a laptop computer with flag of North Korea pictured on screen in background.]]></media:description>                                                            <media:text><![CDATA[North Korean hacker concept image showing a man in military uniform working on a laptop computer with flag of North Korea pictured on screen in background.]]></media:text>
                                <media:title type="plain"><![CDATA[North Korean hacker concept image showing a man in military uniform working on a laptop computer with flag of North Korea pictured on screen in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/rBaWcKkPGkJSvaRS3NHzSB-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/security/cyber-attacks/north-korean-it-workers-the-growing-threat">Fake North Korean IT workers</a> are taking their job-hunt seriously, submitting as many as 60 job applications per day according to new research. </p><p>Groups of North Korean IT workers, <a href="https://www.recordedfuture.com/research/purpledelta-fraudulent-employment-operations" target="_blank">dubbed PurpleDelta</a> by Recorded Future, created at least 22 fabricated personas, with job applications being made across a range of recruitment websites and <a href="https://www.itpro.com/security/cyber-attacks/north-korean-it-workers-the-growing-threat">platforms such as LinkedIn and Upwork</a>. </p><p>Notably, the group is using identity-brokering services, account-renting via <a href="https://www.itpro.com/mobile/remote-access/368059/anydesk-review">AnyDesk</a>, and multi-accounting tools. </p><p>Researchers found these fraudulent workers are often coordinating via Telegram and Slack, with support from facilitators who procure and maintain company-issued hardware on the operators' behalf.</p><p>“A successful job placement provides the PurpleDelta operation with a steady income and places a false employee within a company’s normal systems," said Alexander Leslie, senior advisor at Recorded Future. </p><p>"Wages are often funnelled toward sanctioned North Korean military and nuclear programs, and access may also expose information that was never meant to leave a company.”</p><h2 id="fake-north-korean-it-workers-are-turning-to-ai">Fake North Korean IT workers are turning to AI</h2><p>The fake workers' applications typically include AI-generated profile photos, custom-configured <a href="https://www.itpro.com/technology/artificial-intelligence/openai-just-revealed-what-people-really-use-chatgpt-for-and-70-percent-of-queries-have-nothing-to-do-with-work">ChatGPT </a>assistants, and identity documents sourced from an illicit ID-generation service. </p><p>In terms of targets, researchers noted they’ve been applying for jobs at software and technology companies, as well as healthcare and biotechnology firms. Some appear to have been successful, according to Recorded Future, infiltrating at least 10 organizations. </p><p>Once inside, the fraudulent workers recorded internal meetings, used screen recording software during work sessions, and drafted pre-written Google Translate excuses to justify the use of personal devices and personal bank accounts. </p><p>“The scale of PurpleDelta’s operation is easy to miss when a company sees only one application," said Leslie. </p><p>"During interviews, PurpleDelta operators copied transcribed questions into ChatGPT and read the answers back, sometimes word for word, and occasionally repeated incorrect answers. A candidate can sound prepared without fully understanding what they are saying, which makes ordinary interview cues less reliable."</p><h2 id="manipulating-company-hardware">Manipulating company hardware</h2><p>In some cases, Recorded Future said fraudulent workers received a company laptop and kept it and connected it in the country where they claim to live - usually the US, Germany or Brazil. </p><p>In one instance, researchers spotted one operative managing at least four identities simultaneously. </p><p>“PurpleDelta can recover quickly when one identity is exposed and a persona can be replaced," said Leslie. </p><p>"The same application machinery can keep running under a new name, and organizations should expect these operatives to adjust their methods as hiring teams become more familiar with them. Continued verification gives companies a better chance of catching changes."</p><p>Researchers warned that these fraudulent workers have been highly successful so far, collecting high-value intelligence and exfiltrating proprietary data, source code, and internal communications in support of North Korean state objectives. </p><p>"Companies should verify an employee’s identity after hiring, checking this during onboarding, so they can confirm where a worker and the hardware actually are," Leslie said. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Fortinet eyes AI security gains with Virtue AI acquisition ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Fortinet has announced the acquisition of Virtue AI, an AI security specialist that provides runtime protection, automated validation, and security for autonomous AI systems.</p><p>The move will see Virtue AI’s capabilities added to Fortinet’s existing <a href="https://www.itpro.com/technology/artificial-intelligence/six-generative-ai-cyber-security-threats-and-how-to-mitigate-them">AI security</a> portfolio, which includes FortiGate Hyperscale Firewall and FortiAIGate.</p><p>The <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>giant said the deal will strengthen its ability to protect AI models, applications, and agentic systems across the AI lifecycle, from development through to runtime.</p><p>Founded in 2024, Virtue AI’s platform includes automated red-teaming of autonomous AI agents, agent protection and governance, continuous AI validation, and real-time security guardrails across text, images, video, audio, and AI-generated code.</p><p>Virtue AI's <a href="https://www.itpro.com/technology/artificial-intelligence/enterprises-are-worried-about-agentic-ai-security-risks-gartner-says-the-answer-is-just-adding-more-ai-agents">Guardian Agent</a> technology provides visibility into AI agents and tools running within an environment, while also scanning <a href="https://www.itpro.com/technology/artificial-intelligence/what-is-model-context-protocol-mcp">Model Context Protocol (MCP) </a>tools and source code for hidden security risks and monitoring agent behavior.</p><p>The San Francisco-based company’s automated validation capabilities are designed to identify new risks across model updates and policy fine-tuning, with testing covering hundreds of attack vectors and more than 1,000 risk categories.</p><p>Virtue AI’s red-teaming capabilities test autonomous agents across more than 50 sandboxed environments and 14 high-stakes domains, including simulated prompt injection and MCP-based attacks against leading agent frameworks.</p><h2 id="expanding-protection-across-the-ai-lifecycle">Expanding protection across the AI lifecycle</h2><p>Fortinet’s latest acquisition comes at a time when organizations are deploying more AI applications and autonomous agents, expanding the attack surface to include prompts, models, agents, MCP tools, APIs, and <a href="https://www.itpro.com/infrastructure/ai-infrastructure-global-divide">AI infrastructure</a>.</p><p>According to Gartner, the market for securing AI ecosystems and AI agents is expected to grow from $2.8 billion in 2026 to $16.4 billion by 2030 – an expansion that Fortinet believes reflects growing demand for security technologies as AI adoption continues.</p><p>Earlier this year, the vendor introduced FortiAIGate in a bid to protect <a href="https://www.itpro.com/technology/artificial-intelligence/generative-ai-vs-large-language-models">large language models (LLMs)</a> from risks such as <a href="https://www.itpro.com/security/ncsc-issues-urgent-warning-over-growing-ai-prompt-injection-risks-heres-what-you-need-to-know">prompt injections</a>, data leakage, <a href="https://www.itpro.com/security/hackers-are-deliberately-poisoning-ai-systems-to-make-them-malfunction-and-theres-no-way-to-defend-against-it">model poisoning</a>, and excessive resource consumption.</p><p>With the addition of Virtue AI, Fortinet said it is gaining technology that complements FortiAIGate by extending protection to AI models, applications, and agentic systems, while adding automated validation and real-time protection.</p><p>Commenting on the acquisition, Fortinet founder, chairman, and CEO Ken Xie said Virtue AI’s capabilities strengthen the company’s goal of providing continuous security for enterprise AI systems.</p><p>“AI is fundamentally changing enterprise computing, and security must evolve just as quickly,” he explained. “Virtue AI’s technology will advance our vision for continuous AI assurance, helping customers govern and protect AI systems throughout their lifecycle while operating them confidently at enterprise scale.”</p><p>Financial terms of the acquisition were not disclosed but Fortinet said the amount paid as consideration is “immaterial” to its business.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/acquisition/fortinet-eyes-ai-security-gains-with-virtue-ai-acquisition</link>
                                                                            <description>
                            <![CDATA[ The acquisition will add AI runtime protection and automated validation capabilities to Fortinet’s existing Security for AI portfolio ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">S5E2UWxADqFyFcmA62Lqd</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/aapPzizUA52fXnnk8xxZo7-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 19 Aug 2026 10:38:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Acquisition]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (Daniel Todd) ]]></author>                    <dc:creator><![CDATA[ Daniel Todd ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/SRyC34qeLpNDj3dJtsVDhT.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/aapPzizUA52fXnnk8xxZo7-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Fortinet logo and branding pictured on a tablet screen held by man in coffee shop.]]></media:description>                                                            <media:text><![CDATA[Fortinet logo and branding pictured on a tablet screen held by man in coffee shop.]]></media:text>
                                <media:title type="plain"><![CDATA[Fortinet logo and branding pictured on a tablet screen held by man in coffee shop.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/aapPzizUA52fXnnk8xxZo7-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Fortinet has announced the acquisition of Virtue AI, an AI security specialist that provides runtime protection, automated validation, and security for autonomous AI systems.</p><p>The move will see Virtue AI’s capabilities added to Fortinet’s existing <a href="https://www.itpro.com/technology/artificial-intelligence/six-generative-ai-cyber-security-threats-and-how-to-mitigate-them">AI security</a> portfolio, which includes FortiGate Hyperscale Firewall and FortiAIGate.</p><p>The <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity </a>giant said the deal will strengthen its ability to protect AI models, applications, and agentic systems across the AI lifecycle, from development through to runtime.</p><p>Founded in 2024, Virtue AI’s platform includes automated red-teaming of autonomous AI agents, agent protection and governance, continuous AI validation, and real-time security guardrails across text, images, video, audio, and AI-generated code.</p><p>Virtue AI's <a href="https://www.itpro.com/technology/artificial-intelligence/enterprises-are-worried-about-agentic-ai-security-risks-gartner-says-the-answer-is-just-adding-more-ai-agents">Guardian Agent</a> technology provides visibility into AI agents and tools running within an environment, while also scanning <a href="https://www.itpro.com/technology/artificial-intelligence/what-is-model-context-protocol-mcp">Model Context Protocol (MCP) </a>tools and source code for hidden security risks and monitoring agent behavior.</p><p>The San Francisco-based company’s automated validation capabilities are designed to identify new risks across model updates and policy fine-tuning, with testing covering hundreds of attack vectors and more than 1,000 risk categories.</p><p>Virtue AI’s red-teaming capabilities test autonomous agents across more than 50 sandboxed environments and 14 high-stakes domains, including simulated prompt injection and MCP-based attacks against leading agent frameworks.</p><h2 id="expanding-protection-across-the-ai-lifecycle">Expanding protection across the AI lifecycle</h2><p>Fortinet’s latest acquisition comes at a time when organizations are deploying more AI applications and autonomous agents, expanding the attack surface to include prompts, models, agents, MCP tools, APIs, and <a href="https://www.itpro.com/infrastructure/ai-infrastructure-global-divide">AI infrastructure</a>.</p><p>According to Gartner, the market for securing AI ecosystems and AI agents is expected to grow from $2.8 billion in 2026 to $16.4 billion by 2030 – an expansion that Fortinet believes reflects growing demand for security technologies as AI adoption continues.</p><p>Earlier this year, the vendor introduced FortiAIGate in a bid to protect <a href="https://www.itpro.com/technology/artificial-intelligence/generative-ai-vs-large-language-models">large language models (LLMs)</a> from risks such as <a href="https://www.itpro.com/security/ncsc-issues-urgent-warning-over-growing-ai-prompt-injection-risks-heres-what-you-need-to-know">prompt injections</a>, data leakage, <a href="https://www.itpro.com/security/hackers-are-deliberately-poisoning-ai-systems-to-make-them-malfunction-and-theres-no-way-to-defend-against-it">model poisoning</a>, and excessive resource consumption.</p><p>With the addition of Virtue AI, Fortinet said it is gaining technology that complements FortiAIGate by extending protection to AI models, applications, and agentic systems, while adding automated validation and real-time protection.</p><p>Commenting on the acquisition, Fortinet founder, chairman, and CEO Ken Xie said Virtue AI’s capabilities strengthen the company’s goal of providing continuous security for enterprise AI systems.</p><p>“AI is fundamentally changing enterprise computing, and security must evolve just as quickly,” he explained. “Virtue AI’s technology will advance our vision for continuous AI assurance, helping customers govern and protect AI systems throughout their lifecycle while operating them confidently at enterprise scale.”</p><p>Financial terms of the acquisition were not disclosed but Fortinet said the amount paid as consideration is “immaterial” to its business.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ AI was meant to simplify IT service management – new research shows it's creating bigger workloads for teams ]]></title>
                                                                                                <dc:content><![CDATA[ <p>AI in <a href="https://www.itpro.com/business-strategy/it-infrastructure/360397/what-is-it-service-management">IT service management (ITSM)</a> departments may be delivering a reasonable return on investment, but it's not yet making life any easier for IT professionals.</p><p>A new <a href="https://www.solarwinds.com/campaign/state-of-itsm?CMP=SOC-pr-pressrelease-stateofitsm2026&%20utm_source=pr&utm_medium=pressrelease&utm_campaign=stateofitsm2026" target="_blank"><u>survey</u></a> by SolarWinds found that 84% of respondents believe AI has met or exceeded ROI expectations, and many have unlocked meaningful time savings across core tasks. </p><p>Yet despite these apparent benefits, more than half (52%) revealed their overall workload has increased since adopting the technology. Notably, just 7% said the cost of AI adoption has matched what they planned for. </p><p>Even after an average of about 16 months using AI in ITSM environments, most teams are still managing AI’s overhead rather than realizing its full potential. </p><h2 id="real-gains-but-new-workloads">Real gains, but new workloads</h2><p>SolarWinds said the survey highlights the productivity benefits of using the technology in ITSM tasks. </p><p>Respondents reported that AI is saving them an average of 3.2 hours per week detecting and flagging issues, 3.0 hours on end-user requests, and 2.9 hours on ticket triage. </p><p>Most of the time saved is being swallowed up by new work, however. Nearly half (48%) said they now spend time managing and maintaining AI tools and integrations. </p><p>A similar number (47%) spend more time reviewing and <a href="https://www.itpro.com/security/cyber-professionals-are-flocking-to-ai-tools-but-theyre-getting-tired-of-fixing-mistakes-and-reviewing-outputs">validating AI-generated outputs</a>, while 37% end up training and fine-tuning AI models. </p><p>As for unexpected costs, 48% cited staff training, 47% <a href="https://www.itpro.com/technology/artificial-intelligence/ai-readiness-is-a-top-enterprise-priority-heres-how-the-channel-can-help">data quality and clean-up</a>, and 45% tuning and maintenance - all of which are ongoing, rather than one-time costs. </p><p>More than four-in-five respondents (83%) said they now spend three or more hours per week just keeping their AI systems running reliably. </p><h2 id="itsm-teams-still-stuck-in-reactive-mode">ITSM teams still stuck in reactive mode</h2><p>Most ITSM teams seem to be taking a reactive rather than proactive approach. According to SolarWinds. </p><p>When asked where AI has had the greatest impact across the incident lifecycle, three-in-ten cited identifying issues before they impact users and 23% pointed to prioritizing and routing issues. </p><p>Only 19% cited preventing issues before they occur as the area of greatest impact. </p><p>The answer, according to SolarWinds, is to concentrate efforts where they're most likely to pay off – high-frequency, well-defined tasks where gains are measurable and feedback loops are tight, such as ticket triage, issue detection, and incident.</p><p>Teams should consolidate AI closer to existing service workflows rather than spreading it across disconnected tools and strengthen the data foundation. </p><p>Notably, <a href="https://www.itpro.com/technology/artificial-intelligence/data-quality-worries-holding-back-manufacturer-ai">data quality</a> is the top reason AI fails to deliver expected value, and treating it as part of the AI strategy rather than a separate clean-up project directly determines output quality.</p><p>“We’re at an inflection point in IT service management. <a href="https://www.itpro.com/business/business-strategy/enterprises-are-paralyzed-by-a-lack-of-understanding-with-ai-adoption-and-theres-one-key-factor-that-decides-success">AI adoption</a> is no longer the hard part — the hard part is building the organizational discipline to make AI actually deliver,” said Brad McGinity, GM of ITSM, SolarWinds. </p><p>“The teams that get this right aren’t just running a faster service desk; they’re running a fundamentally different operation.”</p><h2 id="lingering-roi-woes">Lingering ROI woes</h2><p><a href="https://www.itpro.com/technology/artificial-intelligence/dell-cto-roi-on-ai-should-be-number-one-focus-for-execs">ROI with AI </a>has become a common recurring talking point for IT leaders over the last three years, with the financial benefits still up for debate at some enterprises. </p><p>Recent IDC <a href="https://www.itpro.com/business/business-strategy/sluggish-ai-returns-ignored-as-fear-of-missing-out-continues-driving-investment"><u>research</u></a> found one-in-five firms admitting they're investing aggressively in AI with little evaluation of the likely ROI.</p><p>However, ROI isn't necessarily all about the money. According to recent <a href="https://www.itpro.com/business/business-strategy/roi-is-about-more-than-profitability-when-it-comes-to-ai-adoption-heres-what-enterprises-are-looking-for"><u>research from KPMG</u></a>, other key metrics include the performance and quality of work and the speed and accuracy of decision making.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/technology/artificial-intelligence/ai-was-meant-to-simplify-it-service-management-new-research-shows-its-creating-bigger-workloads-for-teams</link>
                                                                            <description>
                            <![CDATA[ IT service management teams might be saving time on some tasks, but work is piling up in other areas ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">reTv6GpFYDEwPQNcMp3xmC</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/DhvQZPicbDxXdKQVEvdQYQ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 19 Aug 2026 10:34:24 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/DhvQZPicbDxXdKQVEvdQYQ-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[IT service management (ITSM) professionals working on computers in an office space, with female worker looking over colleague&#039;s shoulder at desktop monitor.]]></media:description>                                                            <media:text><![CDATA[IT service management (ITSM) professionals working on computers in an office space, with female worker looking over colleague&#039;s shoulder at desktop monitor.]]></media:text>
                                <media:title type="plain"><![CDATA[IT service management (ITSM) professionals working on computers in an office space, with female worker looking over colleague&#039;s shoulder at desktop monitor.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/DhvQZPicbDxXdKQVEvdQYQ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>AI in <a href="https://www.itpro.com/business-strategy/it-infrastructure/360397/what-is-it-service-management">IT service management (ITSM)</a> departments may be delivering a reasonable return on investment, but it's not yet making life any easier for IT professionals.</p><p>A new <a href="https://www.solarwinds.com/campaign/state-of-itsm?CMP=SOC-pr-pressrelease-stateofitsm2026&%20utm_source=pr&utm_medium=pressrelease&utm_campaign=stateofitsm2026" target="_blank"><u>survey</u></a> by SolarWinds found that 84% of respondents believe AI has met or exceeded ROI expectations, and many have unlocked meaningful time savings across core tasks. </p><p>Yet despite these apparent benefits, more than half (52%) revealed their overall workload has increased since adopting the technology. Notably, just 7% said the cost of AI adoption has matched what they planned for. </p><p>Even after an average of about 16 months using AI in ITSM environments, most teams are still managing AI’s overhead rather than realizing its full potential. </p><h2 id="real-gains-but-new-workloads">Real gains, but new workloads</h2><p>SolarWinds said the survey highlights the productivity benefits of using the technology in ITSM tasks. </p><p>Respondents reported that AI is saving them an average of 3.2 hours per week detecting and flagging issues, 3.0 hours on end-user requests, and 2.9 hours on ticket triage. </p><p>Most of the time saved is being swallowed up by new work, however. Nearly half (48%) said they now spend time managing and maintaining AI tools and integrations. </p><p>A similar number (47%) spend more time reviewing and <a href="https://www.itpro.com/security/cyber-professionals-are-flocking-to-ai-tools-but-theyre-getting-tired-of-fixing-mistakes-and-reviewing-outputs">validating AI-generated outputs</a>, while 37% end up training and fine-tuning AI models. </p><p>As for unexpected costs, 48% cited staff training, 47% <a href="https://www.itpro.com/technology/artificial-intelligence/ai-readiness-is-a-top-enterprise-priority-heres-how-the-channel-can-help">data quality and clean-up</a>, and 45% tuning and maintenance - all of which are ongoing, rather than one-time costs. </p><p>More than four-in-five respondents (83%) said they now spend three or more hours per week just keeping their AI systems running reliably. </p><h2 id="itsm-teams-still-stuck-in-reactive-mode">ITSM teams still stuck in reactive mode</h2><p>Most ITSM teams seem to be taking a reactive rather than proactive approach. According to SolarWinds. </p><p>When asked where AI has had the greatest impact across the incident lifecycle, three-in-ten cited identifying issues before they impact users and 23% pointed to prioritizing and routing issues. </p><p>Only 19% cited preventing issues before they occur as the area of greatest impact. </p><p>The answer, according to SolarWinds, is to concentrate efforts where they're most likely to pay off – high-frequency, well-defined tasks where gains are measurable and feedback loops are tight, such as ticket triage, issue detection, and incident.</p><p>Teams should consolidate AI closer to existing service workflows rather than spreading it across disconnected tools and strengthen the data foundation. </p><p>Notably, <a href="https://www.itpro.com/technology/artificial-intelligence/data-quality-worries-holding-back-manufacturer-ai">data quality</a> is the top reason AI fails to deliver expected value, and treating it as part of the AI strategy rather than a separate clean-up project directly determines output quality.</p><p>“We’re at an inflection point in IT service management. <a href="https://www.itpro.com/business/business-strategy/enterprises-are-paralyzed-by-a-lack-of-understanding-with-ai-adoption-and-theres-one-key-factor-that-decides-success">AI adoption</a> is no longer the hard part — the hard part is building the organizational discipline to make AI actually deliver,” said Brad McGinity, GM of ITSM, SolarWinds. </p><p>“The teams that get this right aren’t just running a faster service desk; they’re running a fundamentally different operation.”</p><h2 id="lingering-roi-woes">Lingering ROI woes</h2><p><a href="https://www.itpro.com/technology/artificial-intelligence/dell-cto-roi-on-ai-should-be-number-one-focus-for-execs">ROI with AI </a>has become a common recurring talking point for IT leaders over the last three years, with the financial benefits still up for debate at some enterprises. </p><p>Recent IDC <a href="https://www.itpro.com/business/business-strategy/sluggish-ai-returns-ignored-as-fear-of-missing-out-continues-driving-investment"><u>research</u></a> found one-in-five firms admitting they're investing aggressively in AI with little evaluation of the likely ROI.</p><p>However, ROI isn't necessarily all about the money. According to recent <a href="https://www.itpro.com/business/business-strategy/roi-is-about-more-than-profitability-when-it-comes-to-ai-adoption-heres-what-enterprises-are-looking-for"><u>research from KPMG</u></a>, other key metrics include the performance and quality of work and the speed and accuracy of decision making.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Vibe coding startup Cursor just launched a GitHub alternative – here's what users can expect ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.itpro.com/technology/artificial-intelligence/vibe-coding-security-risks-how-to-mitigate">Vibe coding</a> startup Cursor has launched a new code hosting platform in a move that could put it in direct competition with <a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub</a>.</p><p>Dubbed Origin, <a href="https://www.itpro.com/software/development/developer-accidentally-spends-companys-entire-cursor-budget-in-one-sitting-and-discovers-worrying-flaw-that-let-them-extend-it-by-over-usd1-million">Cursor </a>said the new service is “starting with the essentials”, offering users all the staple features found in GitHub. This includes code repositories (repos) as well as the ability to browse and edit codebases and handle pull requests. </p><p>Origin can also be synchronized with GitHub, the company revealed, meaning users can mix and match with both platforms.</p><p>“Your GitHub repos can sit alongside the ones Cursor hosts,” the company explained in a <a href="https://cursor.com/changelog/origin-code-hosting" target="_blank">blog post</a>. “Connect GitHub to Cursor, pick your org, and you'll see the repos you can sync. Select one and Cursor pulls it in.”</p><p>“You choose what gets synced and can disconnect a repo at any time. Anyone with read or write access to a synced repo can view it in Cursor too.”</p><p>Access to Origin has already begun rolling out for all paid plans, according to Cursor, albeit in an early beta capacity. </p><p>Long-term, Cursor hinted that the plan is to provide “agent-native features” akin to what it already offers through its agentic coding service. </p><p>The startup is also in the process of developing a broader “app ecosystem” to integrate third-party tools within Origin. Integrations with Vercel, Depot, and Buildkite are already available, with “more coming soon”. </p><p>“Connect Vercel from a repo's Apps tab and every PR gets a preview deployment where you can test and make comments,” the company explained. </p><p>“Merge, and it ships to production. For CI, connect Depot or Buildkite. Both run your existing GitHub Actions workflows and Buildkite also runs its native pipelines.”</p><h2 id="a-blossoming-github-challenger">A blossoming GitHub challenger?</h2><p>Origin could represent a major challenge to GitHub moving forward, and as <a href="https://www.itpro.com/software/development/microsoft-github-reshuffle-ai-coding-anthropic-cursor"><em>ITPro </em>reported earlier this year</a>, the Microsoft-owned company has been making moves to counter competition on this front. </p><p>Reports in January revealed Microsoft had reshuffled internal teams to stave off competition from challengers such as Anthropic and Cursor. First reported by <a href="https://www.businessinsider.com/microsoft-github-reshuffle-ai-coding-agents-2026-1" target="_blank"><em>Business Insider</em></a>, this strategy focused primarily on expanding agentic AI coding options for users. </p><p>Sources told the publication that Microsoft had grown concerned about up-and-coming startups muscling in on GitHub’s market position. </p><p>These concerns centered largely on agentic coding capabilities, however. Origin muscling in on GitHub’s bread and butter as an all-encompassing developer platform marks an entirely different challenge. </p><p>Cursor faces significant hurdles if it is to mount a challenge though. <a href="https://github.blog/news-insights/octoverse/octoverse-a-new-developer-joins-github-every-second-as-ai-leads-typescript-to-1/" target="_blank">Figures published by GitHub</a> last year suggest the platform boasts over 180 million active users, and the platform continues to grow rapidly. </p><h2 id="github-frustration">GitHub frustration</h2><p>The Origin announcement also comes at a tricky time for GitHub. The developer platform <a href="https://www.itpro.com/software/development/the-github-outage-explained-what-happened-who-was-affected-and-how-long-did-it-last">recently experienced a lengthy outage</a> that saw developers unable to access key services – and that marked the latest in a string of outages. </p><p>After a series of incidents this year, GitHub detailed plans to improve capacity amidst grumbling user concerns.</p><p>In an April <a href="https://github.blog/news-insights/company-news/an-update-on-github-availability/">blog post</a>, GitHub CTO Vlad Fedorov attributed some outages to the sheer volume of users now operating on the platform, which is pushing infrastructure to the limit. </p><p>In October 2025, the company began work to boost capacity by ten-times before revising this in February 2026 with plans for a 30-fold increase. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/software/development/vibe-coding-startup-cursor-just-launched-a-github-alternative-heres-what-users-can-expect</link>
                                                                            <description>
                            <![CDATA[ Cursor could muscle in on GitHub’s dominance, but the startup has its work cut out ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">u3sDGRYK3FUiWReDTq3czG</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/EAjqYzderxhaapRmsssvwa-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 19 Aug 2026 09:45:48 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Development]]></category>
                                                    <category><![CDATA[Software]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/EAjqYzderxhaapRmsssvwa-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Logo and branding of AI coding startup, Cursor, pictured on a laptop screen against a white background.]]></media:description>                                                            <media:text><![CDATA[Logo and branding of AI coding startup, Cursor, pictured on a laptop screen against a white background.]]></media:text>
                                <media:title type="plain"><![CDATA[Logo and branding of AI coding startup, Cursor, pictured on a laptop screen against a white background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/EAjqYzderxhaapRmsssvwa-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/technology/artificial-intelligence/vibe-coding-security-risks-how-to-mitigate">Vibe coding</a> startup Cursor has launched a new code hosting platform in a move that could put it in direct competition with <a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub</a>.</p><p>Dubbed Origin, <a href="https://www.itpro.com/software/development/developer-accidentally-spends-companys-entire-cursor-budget-in-one-sitting-and-discovers-worrying-flaw-that-let-them-extend-it-by-over-usd1-million">Cursor </a>said the new service is “starting with the essentials”, offering users all the staple features found in GitHub. This includes code repositories (repos) as well as the ability to browse and edit codebases and handle pull requests. </p><p>Origin can also be synchronized with GitHub, the company revealed, meaning users can mix and match with both platforms.</p><p>“Your GitHub repos can sit alongside the ones Cursor hosts,” the company explained in a <a href="https://cursor.com/changelog/origin-code-hosting" target="_blank">blog post</a>. “Connect GitHub to Cursor, pick your org, and you'll see the repos you can sync. Select one and Cursor pulls it in.”</p><p>“You choose what gets synced and can disconnect a repo at any time. Anyone with read or write access to a synced repo can view it in Cursor too.”</p><p>Access to Origin has already begun rolling out for all paid plans, according to Cursor, albeit in an early beta capacity. </p><p>Long-term, Cursor hinted that the plan is to provide “agent-native features” akin to what it already offers through its agentic coding service. </p><p>The startup is also in the process of developing a broader “app ecosystem” to integrate third-party tools within Origin. Integrations with Vercel, Depot, and Buildkite are already available, with “more coming soon”. </p><p>“Connect Vercel from a repo's Apps tab and every PR gets a preview deployment where you can test and make comments,” the company explained. </p><p>“Merge, and it ships to production. For CI, connect Depot or Buildkite. Both run your existing GitHub Actions workflows and Buildkite also runs its native pipelines.”</p><h2 id="a-blossoming-github-challenger">A blossoming GitHub challenger?</h2><p>Origin could represent a major challenge to GitHub moving forward, and as <a href="https://www.itpro.com/software/development/microsoft-github-reshuffle-ai-coding-anthropic-cursor"><em>ITPro </em>reported earlier this year</a>, the Microsoft-owned company has been making moves to counter competition on this front. </p><p>Reports in January revealed Microsoft had reshuffled internal teams to stave off competition from challengers such as Anthropic and Cursor. First reported by <a href="https://www.businessinsider.com/microsoft-github-reshuffle-ai-coding-agents-2026-1" target="_blank"><em>Business Insider</em></a>, this strategy focused primarily on expanding agentic AI coding options for users. </p><p>Sources told the publication that Microsoft had grown concerned about up-and-coming startups muscling in on GitHub’s market position. </p><p>These concerns centered largely on agentic coding capabilities, however. Origin muscling in on GitHub’s bread and butter as an all-encompassing developer platform marks an entirely different challenge. </p><p>Cursor faces significant hurdles if it is to mount a challenge though. <a href="https://github.blog/news-insights/octoverse/octoverse-a-new-developer-joins-github-every-second-as-ai-leads-typescript-to-1/" target="_blank">Figures published by GitHub</a> last year suggest the platform boasts over 180 million active users, and the platform continues to grow rapidly. </p><h2 id="github-frustration">GitHub frustration</h2><p>The Origin announcement also comes at a tricky time for GitHub. The developer platform <a href="https://www.itpro.com/software/development/the-github-outage-explained-what-happened-who-was-affected-and-how-long-did-it-last">recently experienced a lengthy outage</a> that saw developers unable to access key services – and that marked the latest in a string of outages. </p><p>After a series of incidents this year, GitHub detailed plans to improve capacity amidst grumbling user concerns.</p><p>In an April <a href="https://github.blog/news-insights/company-news/an-update-on-github-availability/">blog post</a>, GitHub CTO Vlad Fedorov attributed some outages to the sheer volume of users now operating on the platform, which is pushing infrastructure to the limit. </p><p>In October 2025, the company began work to boost capacity by ten-times before revising this in February 2026 with plans for a 30-fold increase. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Wiz CTO speaks out amid confusion over Snowflake-GitHub Copilot flaw ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.itpro.com/business/business-strategy/google-confirms-wiz-acquisition-in-record-breaking-usd32-billion-deal">Wiz</a> claims its AI found a flaw written and reviewed by GitHub Copilot, but the developer platform has pinned the blame on boring old human error. </p><p>In a <a href="https://www.wiz.io/blog/red-agent-snowflake-copilot-cicd-bug" target="_blank"><u>blog post</u></a> this week Wiz Research said that its Red Agent, an AI-powered bug hunting tool, had spotted a vulnerability in one of Snowflake's public repositories. </p><p>That is very much what Red Agent is designed to do, but the Google-owned security company claimed that the flaw had actually been introduced by AI itself, pinning the fault on <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained">GitHub Copilot</a>. </p><p>"This incident highlights a new reality in software development: Critical vulnerabilities can still be introduced and approved within workflows involving AI coding agents and can still pass established automated security checks," wrote Gal Nagli, head of offensive security at Wiz.. </p><p>Except that's not exactly what happened here. Wiz researchers noted that the flaw listed “Copilot Autofix powered by AI” as a co-author. After sifting through the commits, <a href="https://thehackernews.com/2026/08/snowflake-github-actions-flaw-lets_0330881554.html"><u><em>The Hacker News</em></u></a> noted that the section with the flaw was actually attributable to a Snowflake engineer, while Copilot changed certain aspects. </p><p>Wiz has since updated its blog post to clarify this. In a statement given to <em>ITPro</em>, Wiz co-founder and CTO Ami Luttwak offered additional details on the incident. </p><p>“The relevant PR was co-authored by multiple contributors including Copilot. Initially the blog implied the vulnerable code flow was generated by AI,” Luttwak explained. </p><p>“Soon after the blog was published, we issued an update following community feedback to clarify that the specific lines of code that caused the vulnerability, were not created by copilot (although it is mentioned as a co-author). Note that copilot did participate in the PR and contributed code and also scanned these specific lines via GitHub advanced security (AI code scanner) that missed the vulnerable flow.”</p><p>Luttwak noted that the case shows that clear attribution between humans and AI is “becoming a bit harder to establish”. </p><p>“Just looking at co-authors of the PR is not enough,” he added. </p><h2 id="wiz-did-find-a-snowflake-flaw">Wiz did find a Snowflake flaw</h2><p>Regardless of the co-author confusion, a flaw in Snowflake was indeed found. </p><p>Wiz Red Agent spotted a script injection vulnerability that would have allowed an unauthenticated user to execute arbitrary commands “within a GitHub Actions runner by opening a <a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub </a>issue with a specially crafted title," the company noted. </p><p>Even if Copilot didn't write the flaw, Wiz said the issue still wasn’t spotted when it was reviewed. </p><p>"GitHub Advanced Security scan analyzed the final PR revision, including the vulnerable workflow, but did not flag the critical injection," Nagli added. </p><p>The flaw was responsibly disclosed at the end of June to Snowflake, which quickly fixed the issue and confirmed that no-one but Wiz had made use of the vulnerability. </p><p>"Snowflake appreciates Wiz's responsible reporting of and collaboration around these findings through our vulnerability disclosure and bug bounty program, <a href="https://www.itpro.com/business/leadership/hackerone-eyes-enterprise-growth-with-double-c-suite-appointment">HackerOne</a>," Snowflake said via a statement on Wiz's blog post. </p><p>"The disclosure was received on June 23, 2026, and it was immediately investigated and remediated, and our investigation found no evidence of unauthorized access."</p><p>Indeed, the flaw had only been live five days before Wiz Red Agent spotted it — and perhaps that's the real story, from published to uncovered to fixed in just five days, it's clear AI is speeding up the pace of security. </p><p>"The vulnerability was live for only five days before an automated agent discovered and validated it," Nagli said in the blog post. "Security operations must adapt to a landscape where automated discovery occurs in hours, requiring rapid patch cycles and short-lived credentials."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/wiz-cto-speaks-out-amid-snowflake-github-flaw-confusion</link>
                                                                            <description>
                            <![CDATA[ Did Wiz spot an AI-written bug? Maybe not, but it did catch a five-day-old flaw ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">XG5UbyEvRP8HSH432ZTJMD</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 19 Aug 2026 09:36:06 +0000</pubDate>                                                                                                                                <updated>Wed, 19 Aug 2026 09:37:19 +0000</updated>
                                                                                                                                            <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg">
                                                            <media:credit><![CDATA[Shutterstock]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:description>                                                            <media:text><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:text>
                                <media:title type="plain"><![CDATA[An abstract image showing a skull over a pixelated background to symbolise a cyber security vulnerability]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/rcgqGm2k9qbr9K4kHhEmvU-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/business/business-strategy/google-confirms-wiz-acquisition-in-record-breaking-usd32-billion-deal">Wiz</a> claims its AI found a flaw written and reviewed by GitHub Copilot, but the developer platform has pinned the blame on boring old human error. </p><p>In a <a href="https://www.wiz.io/blog/red-agent-snowflake-copilot-cicd-bug" target="_blank"><u>blog post</u></a> this week Wiz Research said that its Red Agent, an AI-powered bug hunting tool, had spotted a vulnerability in one of Snowflake's public repositories. </p><p>That is very much what Red Agent is designed to do, but the Google-owned security company claimed that the flaw had actually been introduced by AI itself, pinning the fault on <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained">GitHub Copilot</a>. </p><p>"This incident highlights a new reality in software development: Critical vulnerabilities can still be introduced and approved within workflows involving AI coding agents and can still pass established automated security checks," wrote Gal Nagli, head of offensive security at Wiz.. </p><p>Except that's not exactly what happened here. Wiz researchers noted that the flaw listed “Copilot Autofix powered by AI” as a co-author. After sifting through the commits, <a href="https://thehackernews.com/2026/08/snowflake-github-actions-flaw-lets_0330881554.html"><u><em>The Hacker News</em></u></a> noted that the section with the flaw was actually attributable to a Snowflake engineer, while Copilot changed certain aspects. </p><p>Wiz has since updated its blog post to clarify this. In a statement given to <em>ITPro</em>, Wiz co-founder and CTO Ami Luttwak offered additional details on the incident. </p><p>“The relevant PR was co-authored by multiple contributors including Copilot. Initially the blog implied the vulnerable code flow was generated by AI,” Luttwak explained. </p><p>“Soon after the blog was published, we issued an update following community feedback to clarify that the specific lines of code that caused the vulnerability, were not created by copilot (although it is mentioned as a co-author). Note that copilot did participate in the PR and contributed code and also scanned these specific lines via GitHub advanced security (AI code scanner) that missed the vulnerable flow.”</p><p>Luttwak noted that the case shows that clear attribution between humans and AI is “becoming a bit harder to establish”. </p><p>“Just looking at co-authors of the PR is not enough,” he added. </p><h2 id="wiz-did-find-a-snowflake-flaw">Wiz did find a Snowflake flaw</h2><p>Regardless of the co-author confusion, a flaw in Snowflake was indeed found. </p><p>Wiz Red Agent spotted a script injection vulnerability that would have allowed an unauthenticated user to execute arbitrary commands “within a GitHub Actions runner by opening a <a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub </a>issue with a specially crafted title," the company noted. </p><p>Even if Copilot didn't write the flaw, Wiz said the issue still wasn’t spotted when it was reviewed. </p><p>"GitHub Advanced Security scan analyzed the final PR revision, including the vulnerable workflow, but did not flag the critical injection," Nagli added. </p><p>The flaw was responsibly disclosed at the end of June to Snowflake, which quickly fixed the issue and confirmed that no-one but Wiz had made use of the vulnerability. </p><p>"Snowflake appreciates Wiz's responsible reporting of and collaboration around these findings through our vulnerability disclosure and bug bounty program, <a href="https://www.itpro.com/business/leadership/hackerone-eyes-enterprise-growth-with-double-c-suite-appointment">HackerOne</a>," Snowflake said via a statement on Wiz's blog post. </p><p>"The disclosure was received on June 23, 2026, and it was immediately investigated and remediated, and our investigation found no evidence of unauthorized access."</p><p>Indeed, the flaw had only been live five days before Wiz Red Agent spotted it — and perhaps that's the real story, from published to uncovered to fixed in just five days, it's clear AI is speeding up the pace of security. </p><p>"The vulnerability was live for only five days before an automated agent discovered and validated it," Nagli said in the blog post. "Security operations must adapt to a landscape where automated discovery occurs in hours, requiring rapid patch cycles and short-lived credentials."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ “Enterprises are becoming much more rigorous about the economics of AI”: Snowflake wants to help you cut AI costs by choosing the right model for the right task ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Snowflake has announced new dynamic model routing capabilities for flagship products along with expanded access to open-weight models for customers. </p><p>The new capabilities build on Cortex AI Gateway, according to the firm. It was unveiled in July this year and provides customers with a “unified foundation” for agent governance and routing requests. </p><p>The aim here, the company noted, is primarily focused on optimizing AI token consumption, which has become a recurring pain point for enterprises over the last 12 months. </p><p>Snowflake said the new capabilities mean Cortex AI Gateway will “automatically select" a specific model based on the quality and cost for particular tasks. </p><p>Put simply, this will see Snowflake assign more efficient models for lower-complexity or repetitive tasks. Meanwhile, tasks that require “deeper reasoning” are routed to frontier models. </p><p>This means customers can reduce unnecessary inference spend and remove the need for laborious manual model selection for each individual task, according to the firm. </p><p>Snowflake CEO Sridhar Ramaswamy said the update comes in direct response to growing concerns over <a href="https://www.itpro.com/technology/artificial-intelligence/it-leaders-are-being-stung-by-unexpected-ai-costs">AI-related costs</a>. <a href="https://www.itpro.com/technology/artificial-intelligence/could-rising-token-costs-boost-interest-in-on-premises-hardware">Token costs</a> have surged so far across 2026, while a host of major providers have switched to new <a href="https://www.itpro.com/software/development/surging-ai-costs-could-exceed-developer-salaries-by-2028-analysts-say-context-engineering-could-be-the-key-to-optimizing-token-consumption">consumption-based models</a>, resulting in increased costs for enterprises. </p><p>“Enterprises are becoming much more rigorous about the economics of AI. The question is no longer how much AI they are using, but whether that AI is translating into meaningful business value,” said Ramaswamy. </p><p>“Achieving intelligence efficiency requires the flexibility to use the best model for each task as the landscape evolves. Snowflake’s role is to absorb that complexity so customers can focus on outcomes while we optimize model choice underneath.”</p><p>Dynamic routing will also be integrated across Snowflake CoCo and Snowflake CoWork, and will be made available for third-party AI agents. </p><h2 id="snowflake-expands-model-library-with-open-weight-options">Snowflake expands model library with open-weight options </h2><p>In addition to model routing capabilities, Snowflake revealed it will expand access to several <a href="https://www.itpro.com/technology/artificial-intelligence/big-tech-faces-an-adapt-or-die-predicament-with-open-weight-ai-models">leading open models</a>, such as DeepSeek-V4-Flash 0731 and GLM-5.3. </p><p>The addition of these models adds to what is already an extensive library available for customers, Snowflake said. Enterprises can already choose from a variety of models from Anthropic, Google, Meta, Mistral, and OpenAI. </p><p>“This portfolio gives customers more freedom to choose the right combination of performance and cost for each workload,” the company said in a blog post. </p><p>Once again, the focus here is firmly on helping to manage costs by providing a broader range of options. </p><p>Internal testing conducted by the firm found that enterprises using a combination of open and proprietary models can “deliver comparable quality while materially improving efficiency”. </p><p>In one evaluation detailed by the company, agents using dynamic model routing through Cortex AI Gateway were able to build a data build tool (dbt) pipeline with up to three times greater token efficiency compared to a frontier model-only approach – all while maintaining the same quality. </p><p>“In a separate test, engineering teams completed the same number of pull requests with 25 percent greater token efficiency,” the company said in a blog post. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/technology/artificial-intelligence/enterprises-are-becoming-much-more-rigorous-about-the-economics-of-ai-snowflake-wants-to-help-you-cut-ai-costs-by-choosing-the-right-model-for-the-right-task</link>
                                                                            <description>
                            <![CDATA[ New dynamic model routing capabilities aim to help customers box clever when it comes to their AI model choice ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">4RcSMAHWj96Vy6L7UdoQL8</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/KbHt2WSvhdcPMQmCqZKL8T-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 18 Aug 2026 16:34:19 +0000</pubDate>                                                                                                                                <updated>Wed, 19 Aug 2026 10:39:08 +0000</updated>
                                                                                                                                            <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/KbHt2WSvhdcPMQmCqZKL8T-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Snowflake CEO Sridhar Ramaswamy speaks during the Snowflake Summit 26 at Moscone Center on June 1, 2026 in San Francisco, California. ]]></media:description>                                                            <media:text><![CDATA[Snowflake CEO Sridhar Ramaswamy speaks during the Snowflake Summit 26 at Moscone Center on June 1, 2026 in San Francisco, California. ]]></media:text>
                                <media:title type="plain"><![CDATA[Snowflake CEO Sridhar Ramaswamy speaks during the Snowflake Summit 26 at Moscone Center on June 1, 2026 in San Francisco, California. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/KbHt2WSvhdcPMQmCqZKL8T-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Snowflake has announced new dynamic model routing capabilities for flagship products along with expanded access to open-weight models for customers. </p><p>The new capabilities build on Cortex AI Gateway, according to the firm. It was unveiled in July this year and provides customers with a “unified foundation” for agent governance and routing requests. </p><p>The aim here, the company noted, is primarily focused on optimizing AI token consumption, which has become a recurring pain point for enterprises over the last 12 months. </p><p>Snowflake said the new capabilities mean Cortex AI Gateway will “automatically select" a specific model based on the quality and cost for particular tasks. </p><p>Put simply, this will see Snowflake assign more efficient models for lower-complexity or repetitive tasks. Meanwhile, tasks that require “deeper reasoning” are routed to frontier models. </p><p>This means customers can reduce unnecessary inference spend and remove the need for laborious manual model selection for each individual task, according to the firm. </p><p>Snowflake CEO Sridhar Ramaswamy said the update comes in direct response to growing concerns over <a href="https://www.itpro.com/technology/artificial-intelligence/it-leaders-are-being-stung-by-unexpected-ai-costs">AI-related costs</a>. <a href="https://www.itpro.com/technology/artificial-intelligence/could-rising-token-costs-boost-interest-in-on-premises-hardware">Token costs</a> have surged so far across 2026, while a host of major providers have switched to new <a href="https://www.itpro.com/software/development/surging-ai-costs-could-exceed-developer-salaries-by-2028-analysts-say-context-engineering-could-be-the-key-to-optimizing-token-consumption">consumption-based models</a>, resulting in increased costs for enterprises. </p><p>“Enterprises are becoming much more rigorous about the economics of AI. The question is no longer how much AI they are using, but whether that AI is translating into meaningful business value,” said Ramaswamy. </p><p>“Achieving intelligence efficiency requires the flexibility to use the best model for each task as the landscape evolves. Snowflake’s role is to absorb that complexity so customers can focus on outcomes while we optimize model choice underneath.”</p><p>Dynamic routing will also be integrated across Snowflake CoCo and Snowflake CoWork, and will be made available for third-party AI agents. </p><h2 id="snowflake-expands-model-library-with-open-weight-options">Snowflake expands model library with open-weight options </h2><p>In addition to model routing capabilities, Snowflake revealed it will expand access to several <a href="https://www.itpro.com/technology/artificial-intelligence/big-tech-faces-an-adapt-or-die-predicament-with-open-weight-ai-models">leading open models</a>, such as DeepSeek-V4-Flash 0731 and GLM-5.3. </p><p>The addition of these models adds to what is already an extensive library available for customers, Snowflake said. Enterprises can already choose from a variety of models from Anthropic, Google, Meta, Mistral, and OpenAI. </p><p>“This portfolio gives customers more freedom to choose the right combination of performance and cost for each workload,” the company said in a blog post. </p><p>Once again, the focus here is firmly on helping to manage costs by providing a broader range of options. </p><p>Internal testing conducted by the firm found that enterprises using a combination of open and proprietary models can “deliver comparable quality while materially improving efficiency”. </p><p>In one evaluation detailed by the company, agents using dynamic model routing through Cortex AI Gateway were able to build a data build tool (dbt) pipeline with up to three times greater token efficiency compared to a frontier model-only approach – all while maintaining the same quality. </p><p>“In a separate test, engineering teams completed the same number of pull requests with 25 percent greater token efficiency,” the company said in a blog post. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Google just spent $10 million in an auction for Spirit Airlines data – 100 million emails, 500 million Microsoft Teams chats, and 30 million lines of code will be used to improve AI models and products ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.bbc.co.uk/news/articles/cqxlnrqjvzyo" target="_blank">Spirit Airlines collapsed</a> in May this year, but its data is set for a new lease of life after Google acquired it in an auction. </p><p>The tech giant recently outbid AI company Mercor to acquire the de-identified data, according to <a href="https://document.epiq11.com/document/getdocumentbycode?docId=4606206&projectCode=SPJ&source=DM&utm_s" target="_blank">court documents</a>. Google bid $10 million, versus Mercor's $7.5 million, though reports note the bidding started around the $5 million mark. </p><p>A third bidder also took part but was not named. </p><p>A spokesperson for Google told <em>ITPro </em>the aim behind acquiring the defunct airline’s data lies in its potential use for AI training and product refinement. </p><p>"We acquired part of an enterprise dataset from Spirit Airlines, which can be helpful in improving our products and AI models,” the spokesperson said. </p><p>That same sentiment was highlighted by a spokesperson for Mercor, per reports from <a href="https://www.businessinsider.com/google-buys-spirit-airlines-data-ai-model-development-2026-8" target="_blank"><em>Business Insider</em></a>. </p><p>"Companies are sitting on decades of records that show how real work gets done, and that data is now some of the most valuable material for training and evaluating AI," the spokesperson said. </p><p>"We partner with leading companies to license their operational data to the labs building the next generation of models. Spirit was that same process applied to a bankruptcy estate." </p><h2 id="what-google-bought">What Google bought </h2><p>The data bought by Google includes all productivity and collaboration data, which the filing notes includes everything from emails to chats, spreadsheets to calendars, as well as "core business systems and business applications data". </p><p>This includes data on employee behavior and productivity, aircraft operations, and inventory, among other topics. Beyond that, Google has purchased workflow and process data from departments such as HR and marketing. </p><p>In total, Google is picking up 100 million emails, 500 million Microsoft Teams chats, 30 million lines of code – but not records of loyalty program members or other customer data. </p><p>Indeed, the data set does not include any consumer data or personal data, the filing noted, or any other information that could fall under data protection laws. The buyer was required to agree to not attempt to re-identify the data and link it to any person. </p><p>The buyer is allowed to transfer the data set to third parties, however. </p><p>"We will not receive any personal information from this dataset," the Google spokesperson added. "Any data we receive will be rigorously scrubbed of any personally identifiable information by a third party before receipt."</p><p>Alongside the data, Google's $10 million also buys it all of Spirit's internally developed software and applications, including all the <a href="https://www.itpro.com/software/open-source/what-red-hats-source-code-restrictions-mean-for-businesses">source code</a>, plugins, data files, libraries, <a href="https://www.itpro.com/tag/application-programming-interface">APIs</a> and documentation. </p><h2 id="the-battle-for-data">The battle for data</h2><p>The battle for the business data reveals how desperate AI developers are for fresh material to feed AI, in particular for training models, though Google didn't specifically say that was the purpose of the data set. </p><p>Anthropic has raised eyebrows via a campaign of buying up pre-2022 books to scan for training data, while Google was <a href="https://www.404media.co/google-is-quietly-buying-code-from-play-store-developers-to-train-ai/" target="_blank">reportedly trying to buy code</a> from Google Play Store app developers. </p><p><a href="https://www.theverge.com/ai-artificial-intelligence/913806/this-startup-sells-dead-company-data-for-ai-training" target="_blank">SimpleClosure helps failed startups</a> sell their old code, chats, and emails to AI companies, and <a href="https://www.theguardian.com/technology/2026/jun/24/meta-pauses-employee-tracker-for-ai-training-amid-privacy-concerns" target="_blank">Meta had to pause</a> plans to track its own employees for AI training purposes amid internal backlash. </p><p>All of this is to avoid issues like data exhaustion or hitting a data wall, in which they lack enough good quality data to build bigger models, and to <a href="https://www.itpro.com/technology/artificial-intelligence/what-is-model-collapse-and-why-is-it-a-risk-for-enterprise-ai">avoid model collapse</a>, when training data isn't of good enough quality — or is full of AI generated content. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/technology/artificial-intelligence/google-just-spent-usd10-million-in-an-auction-for-spirit-airlines-data-100-million-emails-500-million-microsoft-teams-chats-and-30-million-lines-of-code-will-be-used-to-improve-ai-models-and-products</link>
                                                                            <description>
                            <![CDATA[ AI developers are struggling to find enough data to train their models, sparking a bidding war for failed Spirit Airlines deidentified data ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">8EkhNFMTsYQEQSmuaancDY</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/ETyDoyKVMQgNycXiNPGyjn-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 18 Aug 2026 13:46:30 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/ETyDoyKVMQgNycXiNPGyjn-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[An overhead view of a Spirit Airlines Airbus A321 on the tarmac at Los Angeles International Airport (LAX) in the United States.]]></media:description>                                                            <media:text><![CDATA[An overhead view of a Spirit Airlines Airbus A321 on the tarmac at Los Angeles International Airport (LAX) in the United States.]]></media:text>
                                <media:title type="plain"><![CDATA[An overhead view of a Spirit Airlines Airbus A321 on the tarmac at Los Angeles International Airport (LAX) in the United States.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/ETyDoyKVMQgNycXiNPGyjn-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.bbc.co.uk/news/articles/cqxlnrqjvzyo" target="_blank">Spirit Airlines collapsed</a> in May this year, but its data is set for a new lease of life after Google acquired it in an auction. </p><p>The tech giant recently outbid AI company Mercor to acquire the de-identified data, according to <a href="https://document.epiq11.com/document/getdocumentbycode?docId=4606206&projectCode=SPJ&source=DM&utm_s" target="_blank">court documents</a>. Google bid $10 million, versus Mercor's $7.5 million, though reports note the bidding started around the $5 million mark. </p><p>A third bidder also took part but was not named. </p><p>A spokesperson for Google told <em>ITPro </em>the aim behind acquiring the defunct airline’s data lies in its potential use for AI training and product refinement. </p><p>"We acquired part of an enterprise dataset from Spirit Airlines, which can be helpful in improving our products and AI models,” the spokesperson said. </p><p>That same sentiment was highlighted by a spokesperson for Mercor, per reports from <a href="https://www.businessinsider.com/google-buys-spirit-airlines-data-ai-model-development-2026-8" target="_blank"><em>Business Insider</em></a>. </p><p>"Companies are sitting on decades of records that show how real work gets done, and that data is now some of the most valuable material for training and evaluating AI," the spokesperson said. </p><p>"We partner with leading companies to license their operational data to the labs building the next generation of models. Spirit was that same process applied to a bankruptcy estate." </p><h2 id="what-google-bought">What Google bought </h2><p>The data bought by Google includes all productivity and collaboration data, which the filing notes includes everything from emails to chats, spreadsheets to calendars, as well as "core business systems and business applications data". </p><p>This includes data on employee behavior and productivity, aircraft operations, and inventory, among other topics. Beyond that, Google has purchased workflow and process data from departments such as HR and marketing. </p><p>In total, Google is picking up 100 million emails, 500 million Microsoft Teams chats, 30 million lines of code – but not records of loyalty program members or other customer data. </p><p>Indeed, the data set does not include any consumer data or personal data, the filing noted, or any other information that could fall under data protection laws. The buyer was required to agree to not attempt to re-identify the data and link it to any person. </p><p>The buyer is allowed to transfer the data set to third parties, however. </p><p>"We will not receive any personal information from this dataset," the Google spokesperson added. "Any data we receive will be rigorously scrubbed of any personally identifiable information by a third party before receipt."</p><p>Alongside the data, Google's $10 million also buys it all of Spirit's internally developed software and applications, including all the <a href="https://www.itpro.com/software/open-source/what-red-hats-source-code-restrictions-mean-for-businesses">source code</a>, plugins, data files, libraries, <a href="https://www.itpro.com/tag/application-programming-interface">APIs</a> and documentation. </p><h2 id="the-battle-for-data">The battle for data</h2><p>The battle for the business data reveals how desperate AI developers are for fresh material to feed AI, in particular for training models, though Google didn't specifically say that was the purpose of the data set. </p><p>Anthropic has raised eyebrows via a campaign of buying up pre-2022 books to scan for training data, while Google was <a href="https://www.404media.co/google-is-quietly-buying-code-from-play-store-developers-to-train-ai/" target="_blank">reportedly trying to buy code</a> from Google Play Store app developers. </p><p><a href="https://www.theverge.com/ai-artificial-intelligence/913806/this-startup-sells-dead-company-data-for-ai-training" target="_blank">SimpleClosure helps failed startups</a> sell their old code, chats, and emails to AI companies, and <a href="https://www.theguardian.com/technology/2026/jun/24/meta-pauses-employee-tracker-for-ai-training-amid-privacy-concerns" target="_blank">Meta had to pause</a> plans to track its own employees for AI training purposes amid internal backlash. </p><p>All of this is to avoid issues like data exhaustion or hitting a data wall, in which they lack enough good quality data to build bigger models, and to <a href="https://www.itpro.com/technology/artificial-intelligence/what-is-model-collapse-and-why-is-it-a-risk-for-enterprise-ai">avoid model collapse</a>, when training data isn't of good enough quality — or is full of AI generated content. </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Hacker claims to have stolen millions of Azure customer records from McDonald’s, Vodafone, Kyndryl, and others – here's what we know so far ]]></title>
                                                                                                <dc:content><![CDATA[ <p>A hacker is advertising data allegedly stolen from an array of companies including McDonald's, Vodafone, Kyndryl, and more. </p><p>Researchers at HudsonRock <a href="https://www.infostealers.com/article/massive-azure-exfiltration-campaign-exposes-millions-of-enterprise-records-via-compromised-credentials-mcdonalds-vodafone-kyndryl-others/" target="_blank">said</a> that the criminal, known as TheHatman, downloaded the databases directly from the organizations’ Azure or Entra portals, claiming to have done so through the use of compromised credentials.</p><p>Other victims include HCL Technologies, IHG Hotels & Resorts, Gap, Hexaware Technologies, and Wyndham Hotels & Resorts.</p><p>"The campaign impacts multiple global enterprises across IT services, hospitality, telecommunications, retail, and logistics," researchers said. </p><p>"Our researchers went over the data and it seems highly legitimate based on the corporate email addresses found, combined with field names perfectly matching standard Azure directory exports."</p><p>The data – which includes roughly 3.6 million records in total – appears to include full names, corporate email addresses, including active domains and tenant-specific .onmicrosoft.com structures, phone numbers, and physical addresses.</p><p>It also covers employee IDs, job titles, departments, notes, manager details, and direct reports, along with user group memberships, service accounts, and highly privileged account records such as Global Administrator listings.</p><p>"The exposure of service accounts and global admin names is particularly concerning, as this provides a direct roadmap for subsequent social engineering, spear-phishing, or targeted privilege escalation attacks against these organizations," HudsonRock said.</p><h2 id="thehatman-s-methods-still-unclear">TheHatman's methods still unclear</h2><p>Exact details on how the threat actor gained access to this trove of data remains unclear, according to researchers. </p><p>Possibilities include infostealer <a href="https://www.itpro.com/malware/28076/what-is-malware">malware </a>infections which compromised employee session tokens, <a href="https://www.itpro.com/security/29093/what-is-phishing">phishing </a>campaigns, or a lack of strict <a href="https://www.itpro.com/security/cyber-security/369745/what-is-mfa-fatigue">multi-factor authentication (MFA) </a>on specific tenant portals. </p><p>Researchers also suggested it could be down to abuse of a third-party API that had excessive read privileges across multiple environments. </p><p>According to HudsonRock, the most likely explanation is a targeted exploitation of infostealer infections rather than a systemic zero-day vulnerability in Azure, as this would have hit a far broader range of victims. </p><h2 id="alleged-victims-react">Alleged victims react</h2><p>Companies said to have been caught up in the breach have begun taking action. </p><p>TCS, for example, has <a href="https://www.bseindia.com/xml-data/corpfiling/AttachLive/ac9edbea-ea43-4c0a-beb8-5239bcd03ec9.pdf" target="_blank">filed a statement</a> with India’s stock exchange, revealing that it hasn’t yet found any credible evidence of a breach of systems or customer environments. </p><p>"The information referenced appears to be more than four years old and limited to basic employee information. There is no indication that customer data, customer systems, or TCS operational systems have been impacted," the statement reads. </p><p><em>ITPro </em>approached the other aforementioned victims, but did not receive a response by time of publication. </p><h2 id="valuable-credentials">Valuable credentials</h2><p>Darren Williams, CEO and founder of BlackFog, said that if the claims are legitimate then this once again highlights the value of exposed credentials for cyber criminals. </p><p>These can often represent the keys to the castle for hackers, giving them sweeping access to enterprise environments. </p><p>“The reported use of leaked credentials to access Azure and Entra environments shows how valuable compromised identities have become to cyber criminals," he said.</p><p>"MFA, strong identity controls and employee awareness remain essential, but organizations must assume credentials can be compromised. These measures must be backed by technology that prevents sensitive data from being exfiltrated, even when attackers successfully gain access to the network.”</p><p><strong>UPDATE</strong></p><p>A spokesperson for Vodafone told <em>ITPro</em>: “We have been investigating a claim that has been made in relation to Vodafone data. Our current assessment is that data is old Vodafone employee information that would be available on a business card. The information available could be accessed from an address list. </p><p>"No Vodafone customer data or impact has been identified. We would like to assure our customers that we take security very seriously. Our security tools are constantly updated and we proactively track new threats and vulnerabilities. We have an international team of cyber security professionals who constantly protect, defend and monitor our systems.”</p><p>A spokesperson for Gap told <em>ITPro</em>: “Our preliminary investigation indicates that the data in question is limited in scope, non-sensitive and dated back to several years ago. Notably, there is no evidence to suggest that our corporate systems have been compromised.” </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/data-breaches/hacker-claims-to-have-stolen-millions-of-azure-customer-records-from-mcdonalds-vodafone-kyndryl-and-others-heres-what-we-know-so-far</link>
                                                                            <description>
                            <![CDATA[ TheHatman claims the data has been stolen from the victims' Azure and Entra tenants using compromised credentials ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">TVa6rANrRRcHEUqifJqS47</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/RSjE8LWxBzgjnadXPUW8mB-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 18 Aug 2026 10:54:20 +0000</pubDate>                                                                                                                                <updated>Wed, 19 Aug 2026 13:34:00 +0000</updated>
                                                                                                                                            <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/RSjE8LWxBzgjnadXPUW8mB-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Hacker concept image showing a silhouetted person in a black hat with binary code in background. ]]></media:description>                                                            <media:text><![CDATA[Hacker concept image showing a silhouetted person in a black hat with binary code in background. ]]></media:text>
                                <media:title type="plain"><![CDATA[Hacker concept image showing a silhouetted person in a black hat with binary code in background. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/RSjE8LWxBzgjnadXPUW8mB-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A hacker is advertising data allegedly stolen from an array of companies including McDonald's, Vodafone, Kyndryl, and more. </p><p>Researchers at HudsonRock <a href="https://www.infostealers.com/article/massive-azure-exfiltration-campaign-exposes-millions-of-enterprise-records-via-compromised-credentials-mcdonalds-vodafone-kyndryl-others/" target="_blank">said</a> that the criminal, known as TheHatman, downloaded the databases directly from the organizations’ Azure or Entra portals, claiming to have done so through the use of compromised credentials.</p><p>Other victims include HCL Technologies, IHG Hotels & Resorts, Gap, Hexaware Technologies, and Wyndham Hotels & Resorts.</p><p>"The campaign impacts multiple global enterprises across IT services, hospitality, telecommunications, retail, and logistics," researchers said. </p><p>"Our researchers went over the data and it seems highly legitimate based on the corporate email addresses found, combined with field names perfectly matching standard Azure directory exports."</p><p>The data – which includes roughly 3.6 million records in total – appears to include full names, corporate email addresses, including active domains and tenant-specific .onmicrosoft.com structures, phone numbers, and physical addresses.</p><p>It also covers employee IDs, job titles, departments, notes, manager details, and direct reports, along with user group memberships, service accounts, and highly privileged account records such as Global Administrator listings.</p><p>"The exposure of service accounts and global admin names is particularly concerning, as this provides a direct roadmap for subsequent social engineering, spear-phishing, or targeted privilege escalation attacks against these organizations," HudsonRock said.</p><h2 id="thehatman-s-methods-still-unclear">TheHatman's methods still unclear</h2><p>Exact details on how the threat actor gained access to this trove of data remains unclear, according to researchers. </p><p>Possibilities include infostealer <a href="https://www.itpro.com/malware/28076/what-is-malware">malware </a>infections which compromised employee session tokens, <a href="https://www.itpro.com/security/29093/what-is-phishing">phishing </a>campaigns, or a lack of strict <a href="https://www.itpro.com/security/cyber-security/369745/what-is-mfa-fatigue">multi-factor authentication (MFA) </a>on specific tenant portals. </p><p>Researchers also suggested it could be down to abuse of a third-party API that had excessive read privileges across multiple environments. </p><p>According to HudsonRock, the most likely explanation is a targeted exploitation of infostealer infections rather than a systemic zero-day vulnerability in Azure, as this would have hit a far broader range of victims. </p><h2 id="alleged-victims-react">Alleged victims react</h2><p>Companies said to have been caught up in the breach have begun taking action. </p><p>TCS, for example, has <a href="https://www.bseindia.com/xml-data/corpfiling/AttachLive/ac9edbea-ea43-4c0a-beb8-5239bcd03ec9.pdf" target="_blank">filed a statement</a> with India’s stock exchange, revealing that it hasn’t yet found any credible evidence of a breach of systems or customer environments. </p><p>"The information referenced appears to be more than four years old and limited to basic employee information. There is no indication that customer data, customer systems, or TCS operational systems have been impacted," the statement reads. </p><p><em>ITPro </em>approached the other aforementioned victims, but did not receive a response by time of publication. </p><h2 id="valuable-credentials">Valuable credentials</h2><p>Darren Williams, CEO and founder of BlackFog, said that if the claims are legitimate then this once again highlights the value of exposed credentials for cyber criminals. </p><p>These can often represent the keys to the castle for hackers, giving them sweeping access to enterprise environments. </p><p>“The reported use of leaked credentials to access Azure and Entra environments shows how valuable compromised identities have become to cyber criminals," he said.</p><p>"MFA, strong identity controls and employee awareness remain essential, but organizations must assume credentials can be compromised. These measures must be backed by technology that prevents sensitive data from being exfiltrated, even when attackers successfully gain access to the network.”</p><p><strong>UPDATE</strong></p><p>A spokesperson for Vodafone told <em>ITPro</em>: “We have been investigating a claim that has been made in relation to Vodafone data. Our current assessment is that data is old Vodafone employee information that would be available on a business card. The information available could be accessed from an address list. </p><p>"No Vodafone customer data or impact has been identified. We would like to assure our customers that we take security very seriously. Our security tools are constantly updated and we proactively track new threats and vulnerabilities. We have an international team of cyber security professionals who constantly protect, defend and monitor our systems.”</p><p>A spokesperson for Gap told <em>ITPro</em>: “Our preliminary investigation indicates that the data in question is limited in scope, non-sensitive and dated back to several years ago. Notably, there is no evidence to suggest that our corporate systems have been compromised.” </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ National Grid plans major works to accommodate London data centers ]]></title>
                                                                                                <dc:content><![CDATA[ <p>With data centers dramatically increasing pressure on the electricity network, the UK's National Grid has announced plans to improve power provision in North West London.</p><p>Five new data centers – equivalent to 1GW of demand – will be connected in Hertfordshire to the existing 400kV Elstree GIS substation, with a new 132kV Letchmore Heath GIS substation planned for next door.</p><p>Also in the pipeline are upgrades to Sundon substation in Bedfordshire, the reconductoring the 35km Sundon–Elstree overhead line route, and an extension to the existing Elstree gas insulated switchgear (GIS) substation. </p><p>Meanwhile, work on the route between Sundon and Elstree will see over 200km of overhead line upgraded, with 60km of new cable infrastructure also to be installed within the existing Elstree–St John's Wood tunnel. </p><p>Additional works include: </p><ul><li>The installation of a new 400kV cable circuit in the existing Elstree–St John’s Wood tunnel</li><li>Upgrades to the Elstree–St John’s Wood tunnel and headhouses</li><li>The reinforcement of the existing St John's Wood substation</li></ul><p>“The North West London Upgrade is a nationally significant investment that will strengthen the electricity network, unlock new connections, support regional economic growth and help keep long term energy costs down for consumers," said Joe Senior, project director at National Grid.</p><p>“Working closely with our delivery partners and supply chain, we're bringing together substations, cables and tunnels, and overhead line reinforcement in a single program to deliver the infrastructure needed to power future homes, businesses and digital industries as electricity demand rises.”</p><p>In line with government guidance, communities near the new Letchmore Heath substation are set for £530,000 in funding for projects that improve the social, economic, and environmental wellbeing of the community.</p><h2 id="national-grid-eyes-capacity-gains">National Grid eyes capacity gains</h2><p>According to National Grid, these upgrades  will increase network capacity and strengthen the resilience of electricity supplies across the region, helping to keep energy bills down. </p><p>It should also play a role in supporting economic growth across North West London as electricity demand rises – enabling new data center connections without jeopardizing power supply to homes and businesses.</p><p>As part of these efforts, National Grid is carrying out other ongoing work across the capital, including London Power Tunnels 2 (LPT2) and the North London Reinforcement (NLR) scheme.</p><p>Earlier this year, National Grid <a href="https://www.itpro.com/infrastructure/data-centres/uk-government-to-prioritize-data-center-grid-access-cut-down-on-speculative-applications"><u>revealed</u></a> that the queue for connections to the transmission network had grown by 460%, in large part because speculative applications were swamping the pipeline and delaying connections for strategically important projects. </p><p>The result, according to the National Grid, is that some waiting times have surged to up to 15 years. </p><p>Because of this, the government announced plans to prioritize AI data centers, <a href="https://www.itpro.com/business/ai-growth-zone-uk-">AI Growth Zones</a>, and industrial sites when it comes to new connections.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/infrastructure/data-centres/national-grid-plans-major-works-to-accommodate-london-data-centers</link>
                                                                            <description>
                            <![CDATA[ The program includes new and upgraded substations, new cables, and reinforcement of existing overhead lines ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">n7VQah6Yzom2FvMRVdUWbX</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/hv8k6wcjw8cjfP3fyTuWaY-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 18 Aug 2026 09:46:13 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Data Centres]]></category>
                                                    <category><![CDATA[Infrastructure]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/hv8k6wcjw8cjfP3fyTuWaY-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Energy concept image showing electricity pylons with glowing energy flows passing through against a light blue backdrop.]]></media:description>                                                            <media:text><![CDATA[Energy concept image showing electricity pylons with glowing energy flows passing through against a light blue backdrop.]]></media:text>
                                <media:title type="plain"><![CDATA[Energy concept image showing electricity pylons with glowing energy flows passing through against a light blue backdrop.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/hv8k6wcjw8cjfP3fyTuWaY-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>With data centers dramatically increasing pressure on the electricity network, the UK's National Grid has announced plans to improve power provision in North West London.</p><p>Five new data centers – equivalent to 1GW of demand – will be connected in Hertfordshire to the existing 400kV Elstree GIS substation, with a new 132kV Letchmore Heath GIS substation planned for next door.</p><p>Also in the pipeline are upgrades to Sundon substation in Bedfordshire, the reconductoring the 35km Sundon–Elstree overhead line route, and an extension to the existing Elstree gas insulated switchgear (GIS) substation. </p><p>Meanwhile, work on the route between Sundon and Elstree will see over 200km of overhead line upgraded, with 60km of new cable infrastructure also to be installed within the existing Elstree–St John's Wood tunnel. </p><p>Additional works include: </p><ul><li>The installation of a new 400kV cable circuit in the existing Elstree–St John’s Wood tunnel</li><li>Upgrades to the Elstree–St John’s Wood tunnel and headhouses</li><li>The reinforcement of the existing St John's Wood substation</li></ul><p>“The North West London Upgrade is a nationally significant investment that will strengthen the electricity network, unlock new connections, support regional economic growth and help keep long term energy costs down for consumers," said Joe Senior, project director at National Grid.</p><p>“Working closely with our delivery partners and supply chain, we're bringing together substations, cables and tunnels, and overhead line reinforcement in a single program to deliver the infrastructure needed to power future homes, businesses and digital industries as electricity demand rises.”</p><p>In line with government guidance, communities near the new Letchmore Heath substation are set for £530,000 in funding for projects that improve the social, economic, and environmental wellbeing of the community.</p><h2 id="national-grid-eyes-capacity-gains">National Grid eyes capacity gains</h2><p>According to National Grid, these upgrades  will increase network capacity and strengthen the resilience of electricity supplies across the region, helping to keep energy bills down. </p><p>It should also play a role in supporting economic growth across North West London as electricity demand rises – enabling new data center connections without jeopardizing power supply to homes and businesses.</p><p>As part of these efforts, National Grid is carrying out other ongoing work across the capital, including London Power Tunnels 2 (LPT2) and the North London Reinforcement (NLR) scheme.</p><p>Earlier this year, National Grid <a href="https://www.itpro.com/infrastructure/data-centres/uk-government-to-prioritize-data-center-grid-access-cut-down-on-speculative-applications"><u>revealed</u></a> that the queue for connections to the transmission network had grown by 460%, in large part because speculative applications were swamping the pipeline and delaying connections for strategically important projects. </p><p>The result, according to the National Grid, is that some waiting times have surged to up to 15 years. </p><p>Because of this, the government announced plans to prioritize AI data centers, <a href="https://www.itpro.com/business/ai-growth-zone-uk-">AI Growth Zones</a>, and industrial sites when it comes to new connections.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ The GitHub outage explained: What happened, who was affected, and how long did it last? ]]></title>
                                                                                                <dc:content><![CDATA[ <p>A lengthy <a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub </a>outage that saw users struggle to access core services has been resolved, according to Microsoft, but what happened?</p><p>The <a href="https://www.githubstatus.com/incidents/zkxwbgr0cnmx" target="_blank">incident </a>first came to GitHub’s attention at around 1:40pm UTC yesterday, when the company said it was investigating reports of impacted performance for some services. </p><p>It proceeded to report problems with API Requests, Actions, Webhooks, Pull Requests, Issues, and <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained">GitHub Copilot</a>.</p><p>"We are experiencing high error rates around 20% for web experiences and api traffic. Archive downloads and raw repository content downloads are experiencing an approximate 50% error rate," the company reported about an hour into the affair.</p><p>"SAML and OIDC authentication, SCIM, and Team Sync are also impacted. Investigations are on-going and we will continue to provide updates as we discover more information."</p><p>By 4.40pm, the firm said it had identified the problematic component and had taken corrective action – although error rates were still slightly up.</p><p>“We are still seeing residual impact in the form of sporadic authentication failures. We are continuing to apply additional mitigations and investigate the remaining impact,” GitHub said.</p><h2 id="full-github-outage-analysis-pending">Full GitHub outage analysis pending</h2><p>At one point, <a href="https://downdetector.co.uk/status/github/" target="_blank">Downdetector</a> was reporting nearly 3,000 outage reports, although the incident was finally resolved by 9.15pm. </p><p>Exact details on the cause of the incident are yet to be revealed. However, GitHub promised that a “detailed root cause analysis will be shared as soon as it is available”. </p><h2 id="github-demand-surging">GitHub demand surging</h2><p>GitHub is one of the world's largest software development platforms, with 225 million users, but has seen its infrastructure pushed to the limit by the boom in AI-driven coding.</p><p>Last October, it started work to boost capacity by ten times before realizing in February that a 30-fold increase would be required.</p><p>In an April <a href="https://github.blog/news-insights/company-news/an-update-on-github-availability/" target="_blank"><u>blog post</u></a> detailing the strain placed on the firm, CTO Vlad Fedorov said agentic workflows have "accelerated sharply” in recent months. </p><p>“By nearly every measure, the direction is already clear: repository creation, pull request activity, API usage, automation, and large-repository workloads are all growing quickly," Fedorov wrote.</p><p>He said GitHub planned to deal with availability first, then capacity, and then new features. </p><p>"We are reducing unnecessary work, improving caching, isolating critical services, removing single points of failure, and moving performance-sensitive paths into systems designed for these workloads," Fedorov said.  </p><h2 id="repeated-outages">Repeated outages</h2><p>Notably, it appears the company wasn't able to carry out this work fast enough, with eight further outages last month. This included a lengthy GitHub Actions outage that the company described as 'unacceptable'.</p><p>The company attributed this to the fact that the GitHub Actions service at the core of the incident was still fully running in its data centers, and promised to accelerate its move of GitHub Actions to Azure. </p><p>Here, the company noted, it will have more headroom and capabilities to absorb sharp spikes in activity. </p><p>"GitHub is on track to see a 1,400% increase in commit volume from 2025 to 2026, with most of the increase coming from AI tooling," commented Jamie Beckland, chief product officer at APIContext.</p><p>"Every technology team depends on platforms that are being reshaped by new demand from AI. Which means every technology team now has an AI infrastructure problem. Technology teams need independent monitoring of the third-party services sitting in their delivery path so they know whether problems affect developers, pipelines, and customers."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/software/development/the-github-outage-explained-what-happened-who-was-affected-and-how-long-did-it-last</link>
                                                                            <description>
                            <![CDATA[ An eight-hour GitHub outage saw an error rate of 50% for repo downloads and major disruption to Actions, APIs, and Copilot ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">MsM2ZyGWW3oToYi4ZW9meN</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/UuRXMzxWa4qaUgvWJbuSug-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 18 Aug 2026 09:37:43 +0000</pubDate>                                                                                                                                <updated>Tue, 18 Aug 2026 09:38:11 +0000</updated>
                                                                                                                                            <category><![CDATA[Development]]></category>
                                                    <category><![CDATA[Software]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/UuRXMzxWa4qaUgvWJbuSug-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[GitHub logo pictured on a smartphone placed on top of a laptop keyboard, with blank white screen in corner.]]></media:description>                                                            <media:text><![CDATA[GitHub logo pictured on a smartphone placed on top of a laptop keyboard, with blank white screen in corner.]]></media:text>
                                <media:title type="plain"><![CDATA[GitHub logo pictured on a smartphone placed on top of a laptop keyboard, with blank white screen in corner.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/UuRXMzxWa4qaUgvWJbuSug-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A lengthy <a href="https://www.itpro.com/open-source/31833/what-is-github">GitHub </a>outage that saw users struggle to access core services has been resolved, according to Microsoft, but what happened?</p><p>The <a href="https://www.githubstatus.com/incidents/zkxwbgr0cnmx" target="_blank">incident </a>first came to GitHub’s attention at around 1:40pm UTC yesterday, when the company said it was investigating reports of impacted performance for some services. </p><p>It proceeded to report problems with API Requests, Actions, Webhooks, Pull Requests, Issues, and <a href="https://www.itpro.com/software/development/github-copilot-pricing-changes-usage-based-billing-explained">GitHub Copilot</a>.</p><p>"We are experiencing high error rates around 20% for web experiences and api traffic. Archive downloads and raw repository content downloads are experiencing an approximate 50% error rate," the company reported about an hour into the affair.</p><p>"SAML and OIDC authentication, SCIM, and Team Sync are also impacted. Investigations are on-going and we will continue to provide updates as we discover more information."</p><p>By 4.40pm, the firm said it had identified the problematic component and had taken corrective action – although error rates were still slightly up.</p><p>“We are still seeing residual impact in the form of sporadic authentication failures. We are continuing to apply additional mitigations and investigate the remaining impact,” GitHub said.</p><h2 id="full-github-outage-analysis-pending">Full GitHub outage analysis pending</h2><p>At one point, <a href="https://downdetector.co.uk/status/github/" target="_blank">Downdetector</a> was reporting nearly 3,000 outage reports, although the incident was finally resolved by 9.15pm. </p><p>Exact details on the cause of the incident are yet to be revealed. However, GitHub promised that a “detailed root cause analysis will be shared as soon as it is available”. </p><h2 id="github-demand-surging">GitHub demand surging</h2><p>GitHub is one of the world's largest software development platforms, with 225 million users, but has seen its infrastructure pushed to the limit by the boom in AI-driven coding.</p><p>Last October, it started work to boost capacity by ten times before realizing in February that a 30-fold increase would be required.</p><p>In an April <a href="https://github.blog/news-insights/company-news/an-update-on-github-availability/" target="_blank"><u>blog post</u></a> detailing the strain placed on the firm, CTO Vlad Fedorov said agentic workflows have "accelerated sharply” in recent months. </p><p>“By nearly every measure, the direction is already clear: repository creation, pull request activity, API usage, automation, and large-repository workloads are all growing quickly," Fedorov wrote.</p><p>He said GitHub planned to deal with availability first, then capacity, and then new features. </p><p>"We are reducing unnecessary work, improving caching, isolating critical services, removing single points of failure, and moving performance-sensitive paths into systems designed for these workloads," Fedorov said.  </p><h2 id="repeated-outages">Repeated outages</h2><p>Notably, it appears the company wasn't able to carry out this work fast enough, with eight further outages last month. This included a lengthy GitHub Actions outage that the company described as 'unacceptable'.</p><p>The company attributed this to the fact that the GitHub Actions service at the core of the incident was still fully running in its data centers, and promised to accelerate its move of GitHub Actions to Azure. </p><p>Here, the company noted, it will have more headroom and capabilities to absorb sharp spikes in activity. </p><p>"GitHub is on track to see a 1,400% increase in commit volume from 2025 to 2026, with most of the increase coming from AI tooling," commented Jamie Beckland, chief product officer at APIContext.</p><p>"Every technology team depends on platforms that are being reshaped by new demand from AI. Which means every technology team now has an AI infrastructure problem. Technology teams need independent monitoring of the third-party services sitting in their delivery path so they know whether problems affect developers, pipelines, and customers."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Agentic AI is spurring a ‘fundamental shift’ in cloud infrastructure consumption ]]></title>
                                                                                                <dc:content><![CDATA[ <p>New figures from Gartner point to a surge in AI-optimized infrastructure spending over the next year. A senior analyst at the firm told <em>ITPro </em>it underlines how it is driving a “fundamental shift” in cloud consumption and design. </p><p>Recent analysis from the firm found spending on this front is projected to grow 96% across 2026, reaching a total of $42 billion as enterprises look to overhaul infrastructure with the specific aim of dealing with cumbersome AI workloads. </p><p>Hardeep Singh, senior principal research analyst at Gartner, told <em>ITPro </em>the consultancy expects this trend to continue as adoption rates rise. Indeed, Gartner projects the market to “sustain high growth” and reach $66 billion in spending. </p><p>“There is a fundamental shift in how cloud infrastructure is being designed and consumed,” Singh told <em>ITPro</em>. “We are transforming from traditional general purpose cloud computing towards purpose-built AI infrastructure designed specifically for <a href="https://www.itpro.com/technology/artificial-intelligence/generative-ai-vs-large-language-models">large language models (LLMs)</a> and agentic workloads”. </p><p>A key factor behind the optimized infrastructure push lies in the changing shape of AI use, Singh noted. The technology is maturing and operationalization of AI, particularly agentic AI, is “accelerating inference demand” across the board. </p><p>Agentic AI has a far larger token consumption rate compared to traditional chatbot-based AI interactions, which in turn increases inference demand.</p><p><a href="https://signal65.com/wp-content/uploads/2026/05/Signal65-Insights_The-Economics-of-Agentic-AI.pdf" target="_blank"><u>Research from Signal65</u></a>, for example, found agentic workloads consume “orders of magnitude more tokens”, with consumption rates anywhere between four to 15-times more. </p><p>“You see [with] agentic AI it has a variable consumption,” Singh told <em>ITPro</em>. “It would be one prompt triggering autonomous model calls, and that would lead to a huge amount of compute consumption.”</p><p>Gartner projects that inference demands will surge over the next year on the back of increased agentic AI adoption. Indeed, the consultancy noted that spending on this front will reach $23.3 billion, surpassing the $19 billion spent on AI inference. </p><p>The fact that inference spending will exceed training for the first time is noteworthy, Singh told <em>ITPro</em>. Many enterprises are still in the early stages of agentic AI adoption though. As projects mature, this is certainly expected to drive inference demands even further. </p><p>Gartner ranks AI use based on a level system, with basic chatbots at the first level, and fully autonomous at level five, the highest rating. Most businesses aren’t even close to that level, he said. </p><p>“It will still take some time to go and reach the autonomous side,” Singh told <em>ITPro</em>. </p><p>“We are still in that L1, L2, L3 kind of scenario where experimentations are happening, trying to understand which use cases fit in which scenario, and then how the agents [are] going to solve the complex business problems.”</p><p>Given the current state of agentic adoption and projected advances on this front, AI-optimized infrastructure will be even critical for meeting demand. </p><p>Gartner figures show that 55% of spending on this front will directly support inference. This is set to reach 59% by 2027. </p><h2 id="changing-priorities">Changing priorities</h2><p>According to Gartner, the growing volume of inference workloads will ultimately “reshape cloud investment priorities”. Singh noted that this can already be observed in cloud strategies across a range of industries. </p><p><a href="https://my.idc.com/getdoc.jsp?containerId=prAP53785525" target="_blank"><u>Research from IDC</u></a> in late 2025 predicted a sharpened focus on hybrid and even private cloud models due to a combination of factors, most notably “more predictable cost models”.</p><p>Singh told <em>ITPro </em>he expects this focus to continue as agentic adoption accelerates, particularly with the rise of multi-agent frameworks in which they rely on several separate underlying AI models. </p><p>“The important thing will be how enterprises want to use multi-agents backed by multiple models, so multimodality and multi-models,” he said. </p><p>“Both these things are important in the context where some of the data workloads [are] moving to the cloud, training the large language model, then deploying on the edge on prem to get the inference and real-time monitoring.”</p><p>“<a href="https://www.itpro.com/hybrid-cloud/34384/multi-cloud-vs-hybrid-cloud-whats-the-difference">Hybrid and multi-cloud</a> will be more picked up in these scenarios, because some enterprises know that it is difficult to train the model on-prem because of the amount of capacity it needs.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/cloud/cloud-computing/agentic-ai-is-spurring-a-fundamental-shift-in-cloud-infrastructure-consumption</link>
                                                                            <description>
                            <![CDATA[ Surging inference demands mean enterprises are flocking to AI-optimized infrastructure to keep pace ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">PQaka7JbyASeKenajXBBab</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/CbbpGhvJgeZMgcMmxS62j5-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 17 Aug 2026 15:24:39 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cloud Computing]]></category>
                                                    <category><![CDATA[Cloud]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/CbbpGhvJgeZMgcMmxS62j5-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Cloud computing concept image showing a cloud with interconnected pink-colored data points.]]></media:description>                                                            <media:text><![CDATA[Cloud computing concept image showing a cloud with interconnected pink-colored data points.]]></media:text>
                                <media:title type="plain"><![CDATA[Cloud computing concept image showing a cloud with interconnected pink-colored data points.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/CbbpGhvJgeZMgcMmxS62j5-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>New figures from Gartner point to a surge in AI-optimized infrastructure spending over the next year. A senior analyst at the firm told <em>ITPro </em>it underlines how it is driving a “fundamental shift” in cloud consumption and design. </p><p>Recent analysis from the firm found spending on this front is projected to grow 96% across 2026, reaching a total of $42 billion as enterprises look to overhaul infrastructure with the specific aim of dealing with cumbersome AI workloads. </p><p>Hardeep Singh, senior principal research analyst at Gartner, told <em>ITPro </em>the consultancy expects this trend to continue as adoption rates rise. Indeed, Gartner projects the market to “sustain high growth” and reach $66 billion in spending. </p><p>“There is a fundamental shift in how cloud infrastructure is being designed and consumed,” Singh told <em>ITPro</em>. “We are transforming from traditional general purpose cloud computing towards purpose-built AI infrastructure designed specifically for <a href="https://www.itpro.com/technology/artificial-intelligence/generative-ai-vs-large-language-models">large language models (LLMs)</a> and agentic workloads”. </p><p>A key factor behind the optimized infrastructure push lies in the changing shape of AI use, Singh noted. The technology is maturing and operationalization of AI, particularly agentic AI, is “accelerating inference demand” across the board. </p><p>Agentic AI has a far larger token consumption rate compared to traditional chatbot-based AI interactions, which in turn increases inference demand.</p><p><a href="https://signal65.com/wp-content/uploads/2026/05/Signal65-Insights_The-Economics-of-Agentic-AI.pdf" target="_blank"><u>Research from Signal65</u></a>, for example, found agentic workloads consume “orders of magnitude more tokens”, with consumption rates anywhere between four to 15-times more. </p><p>“You see [with] agentic AI it has a variable consumption,” Singh told <em>ITPro</em>. “It would be one prompt triggering autonomous model calls, and that would lead to a huge amount of compute consumption.”</p><p>Gartner projects that inference demands will surge over the next year on the back of increased agentic AI adoption. Indeed, the consultancy noted that spending on this front will reach $23.3 billion, surpassing the $19 billion spent on AI inference. </p><p>The fact that inference spending will exceed training for the first time is noteworthy, Singh told <em>ITPro</em>. Many enterprises are still in the early stages of agentic AI adoption though. As projects mature, this is certainly expected to drive inference demands even further. </p><p>Gartner ranks AI use based on a level system, with basic chatbots at the first level, and fully autonomous at level five, the highest rating. Most businesses aren’t even close to that level, he said. </p><p>“It will still take some time to go and reach the autonomous side,” Singh told <em>ITPro</em>. </p><p>“We are still in that L1, L2, L3 kind of scenario where experimentations are happening, trying to understand which use cases fit in which scenario, and then how the agents [are] going to solve the complex business problems.”</p><p>Given the current state of agentic adoption and projected advances on this front, AI-optimized infrastructure will be even critical for meeting demand. </p><p>Gartner figures show that 55% of spending on this front will directly support inference. This is set to reach 59% by 2027. </p><h2 id="changing-priorities">Changing priorities</h2><p>According to Gartner, the growing volume of inference workloads will ultimately “reshape cloud investment priorities”. Singh noted that this can already be observed in cloud strategies across a range of industries. </p><p><a href="https://my.idc.com/getdoc.jsp?containerId=prAP53785525" target="_blank"><u>Research from IDC</u></a> in late 2025 predicted a sharpened focus on hybrid and even private cloud models due to a combination of factors, most notably “more predictable cost models”.</p><p>Singh told <em>ITPro </em>he expects this focus to continue as agentic adoption accelerates, particularly with the rise of multi-agent frameworks in which they rely on several separate underlying AI models. </p><p>“The important thing will be how enterprises want to use multi-agents backed by multiple models, so multimodality and multi-models,” he said. </p><p>“Both these things are important in the context where some of the data workloads [are] moving to the cloud, training the large language model, then deploying on the edge on prem to get the inference and real-time monitoring.”</p><p>“<a href="https://www.itpro.com/hybrid-cloud/34384/multi-cloud-vs-hybrid-cloud-whats-the-difference">Hybrid and multi-cloud</a> will be more picked up in these scenarios, because some enterprises know that it is difficult to train the model on-prem because of the amount of capacity it needs.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ HMRC eyes low-code transformation gains with £78m Atos deal ]]></title>
                                                                                                <dc:content><![CDATA[ <p>HM Revenue & Customs (HMRC) has announced a deal with Atos aimed at driving <a href="https://www.itpro.com/business/digital-transformation/tech-leaders-are-ramping-up-it-modernization-but-they-re-wary-of-the-potential-productivity-nosedive-that-comes-with-it">IT modernization</a> with low-code solutions. </p><p>The three-year deal, worth more than £78 million, will see Atos act as lead partner for Low-Code Leadership and Configuration Services within the Digital and Legacy Application Services (DALAS) framework. </p><p>In a statement announcing the move, Atos said it will provide “technical and delivery governance and assurance across the entirety of HMRC’s low-code ecosystem”. </p><p>This includes supporting the tax office’s IT modernization efforts and improving digital services for workers, businesses, and citizens across the UK. </p><p>“We’re proud to be expanding our long-standing relationship with HMRC through this appointment,” said Michael Herron, Head of Atos UK&I.</p><p>“Our proven technical expertise and experience in public sector transformation makes Atos well-placed to support HMRC as it looks to deliver better digital experiences for citizens at pace.”</p><h2 id="hmrc-targets-low-code-gains">HMRC targets low-code gains</h2><p>Low-code tools allow businesses to accelerate transformation efforts by simplifying application development and removing manual programming. </p><p>According to Atos, the deal with HMRC will allow the tax office to ramp up <a href="https://www.itpro.com/software/development/anthropic-says-claude-code-can-help-streamline-cost-prohibitive-cobol-modernization-but-ibm-says-its-not-that-simple-decades-of-hardware-software-integration-cannot-be-replicated-by-moving-code">legacy IT modernization</a> and deliver “faster time to value” and cost savings. </p><p>The new contract builds on long-standing ties between Atos and HMRC. The tax office awarded a <a href="https://atos.net/en-gb/2022/press-releases-en-gb_2022_03_08/atos-wins-contract-with-hmrc-to-enhance-its-capabilities-with-critical-testing-services" target="_blank"><u>multi-year contract</u></a> to the firm in 2022 to provide application testing services, for example. </p><p>It also represents the latest in a string of modernization-related announcements by HMRC in recent months. As <a href="https://www.itpro.com/business/digital-transformation/hmrc-digital-transformation-capgemini-ai-customer-service"><u><em>ITPro </em></u><u>reported in June</u></a>, HMRC signed a deal with Capgemini, NiCE, and Route 101 to overhaul customer service operations with cloud native and AI tools. </p><p>The contract will see <a href="https://www.itpro.com/business/digital-transformation/legacy-it-infrastructure-accounts-for-more-than-a-third-of-enterprise-power-consumption-and-its-creating-a-sustainability-nightmare-for-it-leaders">legacy infrastructure</a> and existing products consolidated within a unified cloud native platform, with development led by Capgemini. </p><p>That deal came hot on the heels of a <a href="https://www.itpro.com/business/digital-transformation/this-is-a-practical-step-that-paves-the-way-for-a-better-service-for-taxpayers-hmrc-pens-gbp175m-deal-with-quantexa-in-data-modernization-push"><u>£175 million contract with Quantexa </u></a>to overhaul its core data infrastructure. </p><h2 id="low-code-tools-still-alive-and-kicking">Low-code tools still alive and kicking</h2><p><a href="https://www.itpro.com/software/development/367576/low-code-vs-no-code">Low-code</a> platforms have been a staple in enterprise digital transformation programs for more than a decade. </p><p>Despite the advent of generative AI and an influx of AI coding tools in recent years, research shows low-code and no-code solutions are still going strong. </p><p>Research from App Builder in April 2025 found these tools still play a key role in enterprise digital transformation efforts worldwide. </p><p>Around 95% of companies revealed they still use low-code tools in software development. Notably, more than three-quarters (76%) said AI is helping make existing tools more efficient.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/digital-transformation/hmrc-eyes-low-code-transformation-gains-with-gbp78m-atos-deal</link>
                                                                            <description>
                            <![CDATA[ Atos will provide HMRC with technical support across its entire “low-code ecosystem” ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">dgD2yn4Y5Vhq3WMSu6AMSQ</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/38NqSAsYfBFt25nwcDgPxn-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 17 Aug 2026 11:20:11 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Digital Transformation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/38NqSAsYfBFt25nwcDgPxn-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[His Majesty&#039;s Revenue and Customs (HMRC) sign engraved in stone in Whitehall, London.]]></media:description>                                                            <media:text><![CDATA[His Majesty&#039;s Revenue and Customs (HMRC) sign engraved in stone in Whitehall, London.]]></media:text>
                                <media:title type="plain"><![CDATA[His Majesty&#039;s Revenue and Customs (HMRC) sign engraved in stone in Whitehall, London.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/38NqSAsYfBFt25nwcDgPxn-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>HM Revenue & Customs (HMRC) has announced a deal with Atos aimed at driving <a href="https://www.itpro.com/business/digital-transformation/tech-leaders-are-ramping-up-it-modernization-but-they-re-wary-of-the-potential-productivity-nosedive-that-comes-with-it">IT modernization</a> with low-code solutions. </p><p>The three-year deal, worth more than £78 million, will see Atos act as lead partner for Low-Code Leadership and Configuration Services within the Digital and Legacy Application Services (DALAS) framework. </p><p>In a statement announcing the move, Atos said it will provide “technical and delivery governance and assurance across the entirety of HMRC’s low-code ecosystem”. </p><p>This includes supporting the tax office’s IT modernization efforts and improving digital services for workers, businesses, and citizens across the UK. </p><p>“We’re proud to be expanding our long-standing relationship with HMRC through this appointment,” said Michael Herron, Head of Atos UK&I.</p><p>“Our proven technical expertise and experience in public sector transformation makes Atos well-placed to support HMRC as it looks to deliver better digital experiences for citizens at pace.”</p><h2 id="hmrc-targets-low-code-gains">HMRC targets low-code gains</h2><p>Low-code tools allow businesses to accelerate transformation efforts by simplifying application development and removing manual programming. </p><p>According to Atos, the deal with HMRC will allow the tax office to ramp up <a href="https://www.itpro.com/software/development/anthropic-says-claude-code-can-help-streamline-cost-prohibitive-cobol-modernization-but-ibm-says-its-not-that-simple-decades-of-hardware-software-integration-cannot-be-replicated-by-moving-code">legacy IT modernization</a> and deliver “faster time to value” and cost savings. </p><p>The new contract builds on long-standing ties between Atos and HMRC. The tax office awarded a <a href="https://atos.net/en-gb/2022/press-releases-en-gb_2022_03_08/atos-wins-contract-with-hmrc-to-enhance-its-capabilities-with-critical-testing-services" target="_blank"><u>multi-year contract</u></a> to the firm in 2022 to provide application testing services, for example. </p><p>It also represents the latest in a string of modernization-related announcements by HMRC in recent months. As <a href="https://www.itpro.com/business/digital-transformation/hmrc-digital-transformation-capgemini-ai-customer-service"><u><em>ITPro </em></u><u>reported in June</u></a>, HMRC signed a deal with Capgemini, NiCE, and Route 101 to overhaul customer service operations with cloud native and AI tools. </p><p>The contract will see <a href="https://www.itpro.com/business/digital-transformation/legacy-it-infrastructure-accounts-for-more-than-a-third-of-enterprise-power-consumption-and-its-creating-a-sustainability-nightmare-for-it-leaders">legacy infrastructure</a> and existing products consolidated within a unified cloud native platform, with development led by Capgemini. </p><p>That deal came hot on the heels of a <a href="https://www.itpro.com/business/digital-transformation/this-is-a-practical-step-that-paves-the-way-for-a-better-service-for-taxpayers-hmrc-pens-gbp175m-deal-with-quantexa-in-data-modernization-push"><u>£175 million contract with Quantexa </u></a>to overhaul its core data infrastructure. </p><h2 id="low-code-tools-still-alive-and-kicking">Low-code tools still alive and kicking</h2><p><a href="https://www.itpro.com/software/development/367576/low-code-vs-no-code">Low-code</a> platforms have been a staple in enterprise digital transformation programs for more than a decade. </p><p>Despite the advent of generative AI and an influx of AI coding tools in recent years, research shows low-code and no-code solutions are still going strong. </p><p>Research from App Builder in April 2025 found these tools still play a key role in enterprise digital transformation efforts worldwide. </p><p>Around 95% of companies revealed they still use low-code tools in software development. Notably, more than three-quarters (76%) said AI is helping make existing tools more efficient.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Rackspace names Chetan Gupta as chief AI officer in sovereignty push ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.itpro.com/cloud/private-cloud/rackspace-openstack-business-private-cloud-open-source">Rackspace</a> has announced the appointment of Chetan Gupta as chief AI officer, as the enterprise infrastructure specialist looks to advance its enterprise and sovereign AI strategy.</p><p>Gupta will lead Rackspace’s Office of AI, overseeing <a href="https://www.itpro.com/technology/artificial-intelligence/why-buy-vs-build-is-the-wrong-question-for-ai-strategy">AI strategy</a>, research, innovation, governance, and adoption across the company and its customers.</p><p>He joins the business following almost a decade at Hitachi, where he served in a number of senior AI leadership roles – including general manager of the Advanced AI Center in Japan, vice president of the Industrial AI Lab in North America, and head of Hitachi’s Global AI Center of Excellence.</p><p>Earlier in his career, Gupta also spent seven years at HP Labs, where he worked on deploying AI solutions across areas such as logistics, manufacturing, energy, and mobility. He has also authored nearly 300 papers and patents, as well as mentored AI researchers and engineers.</p><p>In an announcement, Rackspace CEO Gajen Kandiah said Gupta’s experience developing AI systems for critical environments will be a valuable asset as the firm advances its AI strategy.</p><p>"Chetan has spent his career building AI for the institutions the world depends on,” he explained. “At Hitachi, that meant trains, grids, and factories, where AI is not a demo, but an operating commitment measured in uptime, safety, and trust." </p><p>Kandiah said that experience will be particularly relevant as Rackspace customers move AI into production within regulated and sovereign environments.</p><p>"Chetan understands that success depends on more than model capability,” he added. “It requires strategy, governance, and an operator who carries accountability from silicon to outcomes.”</p><h2 id="rackspace-eyes-sovereign-ai-gains">Rackspace eyes sovereign AI gains</h2><p>Rackspace positions itself as an operator of the full enterprise AI stack, spanning governed private cloud through to AI inference and agents in production. </p><p>Its offering is built around an "Outcomes as a Service" model covering infrastructure, data foundations, and forward-deployed engineering.</p><p>The company said Gupta’s appointment will strengthen its ability to help organizations deploy AI safely, economically, and at scale – particularly across regulated industries, sovereign jurisdictions, and mission-critical operations.</p><p>Commenting on his new role, Gupta said AI has reached “an inflection point” as organizations shift their focus away from the technology’s capabilities and towards tackling deployment challenges.</p><p>“The hard problem is no longer capability. It is trust: taking promising research and turning it into systems that hold up in the real world, under real regulatory and operational constraints," he explained.</p><p>"Rackspace occupies a distinct position in the market, operating the full stack for institutions that cannot afford to get AI wrong. I look forward to leading our AI strategy and advancing enterprise and sovereign AI for our customers and across the business." </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/leadership/rackspace-names-chetan-gupta-as-chief-ai-officer-in-sovereignty-push</link>
                                                                            <description>
                            <![CDATA[ The AI veteran joins the enterprise infrastructure vendor from Hitachi and will lead its strategy around enterprise and sovereign AI ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">dSTwwEboLCw4fWEKEWrj46</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/qyZvkzeoWWUTQjnnUnUFjP-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 17 Aug 2026 10:55:45 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Leadership]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (Daniel Todd) ]]></author>                    <dc:creator><![CDATA[ Daniel Todd ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/SRyC34qeLpNDj3dJtsVDhT.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/qyZvkzeoWWUTQjnnUnUFjP-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Rackspace logo and branding pictured on a smartphone screen with stock market graph pictured in background.]]></media:description>                                                            <media:text><![CDATA[Rackspace logo and branding pictured on a smartphone screen with stock market graph pictured in background.]]></media:text>
                                <media:title type="plain"><![CDATA[Rackspace logo and branding pictured on a smartphone screen with stock market graph pictured in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/qyZvkzeoWWUTQjnnUnUFjP-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/cloud/private-cloud/rackspace-openstack-business-private-cloud-open-source">Rackspace</a> has announced the appointment of Chetan Gupta as chief AI officer, as the enterprise infrastructure specialist looks to advance its enterprise and sovereign AI strategy.</p><p>Gupta will lead Rackspace’s Office of AI, overseeing <a href="https://www.itpro.com/technology/artificial-intelligence/why-buy-vs-build-is-the-wrong-question-for-ai-strategy">AI strategy</a>, research, innovation, governance, and adoption across the company and its customers.</p><p>He joins the business following almost a decade at Hitachi, where he served in a number of senior AI leadership roles – including general manager of the Advanced AI Center in Japan, vice president of the Industrial AI Lab in North America, and head of Hitachi’s Global AI Center of Excellence.</p><p>Earlier in his career, Gupta also spent seven years at HP Labs, where he worked on deploying AI solutions across areas such as logistics, manufacturing, energy, and mobility. He has also authored nearly 300 papers and patents, as well as mentored AI researchers and engineers.</p><p>In an announcement, Rackspace CEO Gajen Kandiah said Gupta’s experience developing AI systems for critical environments will be a valuable asset as the firm advances its AI strategy.</p><p>"Chetan has spent his career building AI for the institutions the world depends on,” he explained. “At Hitachi, that meant trains, grids, and factories, where AI is not a demo, but an operating commitment measured in uptime, safety, and trust." </p><p>Kandiah said that experience will be particularly relevant as Rackspace customers move AI into production within regulated and sovereign environments.</p><p>"Chetan understands that success depends on more than model capability,” he added. “It requires strategy, governance, and an operator who carries accountability from silicon to outcomes.”</p><h2 id="rackspace-eyes-sovereign-ai-gains">Rackspace eyes sovereign AI gains</h2><p>Rackspace positions itself as an operator of the full enterprise AI stack, spanning governed private cloud through to AI inference and agents in production. </p><p>Its offering is built around an "Outcomes as a Service" model covering infrastructure, data foundations, and forward-deployed engineering.</p><p>The company said Gupta’s appointment will strengthen its ability to help organizations deploy AI safely, economically, and at scale – particularly across regulated industries, sovereign jurisdictions, and mission-critical operations.</p><p>Commenting on his new role, Gupta said AI has reached “an inflection point” as organizations shift their focus away from the technology’s capabilities and towards tackling deployment challenges.</p><p>“The hard problem is no longer capability. It is trust: taking promising research and turning it into systems that hold up in the real world, under real regulatory and operational constraints," he explained.</p><p>"Rackspace occupies a distinct position in the market, operating the full stack for institutions that cannot afford to get AI wrong. I look forward to leading our AI strategy and advancing enterprise and sovereign AI for our customers and across the business." </p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Poor business context is scuppering enterprise AI adoption – here’s why that matters ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Organizations are mostly seeing a return on their AI investment, new research shows, but many are struggling to translate business context into AI systems and workflows. </p><p>Eight-in-ten IT leaders globally expect AI spending to increase over the next two years, according to Alteryx's <a href="https://www.alteryx.com/resources/report/the-state-of-ai-ownership-agents-and-roi" target="_blank"><em>2026 IT Leader Research: The State of AI Ownership, Agents, and ROI</em></a> report.</p><p>While 77% agree business context - the rules, definitions, and operational knowledge that shape how their organizations operate - is critical to producing accurate and relevant AI outputs, 53% say they struggle to incorporate this within AI systems and workflows.</p><p>The result here is that AI models are forced to make generic assumptions that could lead to mistakes, false insights, or incorrect metrics – and that has a big impact on business efficiency.  </p><p>More than a third of respondents told researchers that the ability to <a href="https://www.itpro.com/business/business-strategy/roi-is-about-more-than-profitability-when-it-comes-to-ai-adoption-heres-what-enterprises-are-looking-for">measure AI ROI</a> will be one of the capabilities that most distinguishes technology leaders from their peers. </p><p>Notably, firms are increasingly measuring AI success through productivity improvements (53%), cost reduction (45%), and revenue growth or broader business impact (39%).</p><p>“Our research highlights a growing gap between AI ambition and enterprise-scale execution,” said Andy MacMillan, CEO of Alteryx. </p><p>"Organizations have proven they're willing to invest in AI, and many are already seeing returns. But scaling AI requires more than better models. It requires making the business knowledge people use every day available to the systems making decisions.”</p><h2 id="lacking-context">Lacking context</h2><p>While AI can analyze information and generate responses, it can't consistently apply company-specific rules, policies, thresholds, and decision criteria unless that knowledge is built into the workflows it uses to make decisions.</p><p>Part of the problem is limited data access, Alteryx found, with only 18% of organizations reporting that business users have fully self-service access to cloud data. </p><p>Indeed, most are still relying on IT or data teams for routine data access and analytics, with 38% describing  a mixed model and 15% saying business users remain largely dependent on technical teams.</p><p>Two-thirds of technology leaders say AI and agent-based systems are most productive when managed within the line of business, with 71% saying that AI initiatives are most successful when IT and business teams collaborate closely.</p><p>However, strategy (37%) and delivery (38%) remain concentrated within IT, while business teams are most often responsible for defining requirements (30%). </p><p>"The organizations creating lasting value from AI will be the ones that operationalize their business logic so it becomes visible, governed, repeatable, and ready for AI," said MacMillan.</p><h2 id="what-s-driving-ai-roi">What’s driving AI ROI?</h2><p>The AI investments that appear to be delivering the best ROI are workflow automation and autonomous agents, cited by 27%, followed by copilots or assistants, at 16%, and AI-powered customer experience at 14%.</p><p>Virtually all IT leaders (93%) told Alteryx they were confident agentic AI could deliver measurable ROI for their enterprise within the next two years.</p><p>The first processes to be automated by agentic AI, they reckon, will be IT operations and incident management, cited by 47%, followed by customer support and service workflows at 39% and data analysis and reporting at 36%.</p><p>"Within our research, a small group of organizations self-identified as leading the way in AI innovation, confirming a clear path to achieving meaningful business value with AI technologies," the researchers concluded. </p><p>"These organizations point to a clear set of priorities behind their progress: rigorous measurement of AI's business impact, treating AI rollout as a strategic and operational priority, and building the governance and literacy needed to scale with confidence."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/business-strategy/poor-business-context-is-scuppering-enterprise-ai-adoption-heres-why-that-matters</link>
                                                                            <description>
                            <![CDATA[ Research from Alteryx has found that more than half of organizations can't effectively operationalize the business knowledge AI needs ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">y9nsprhMppRtPjyMYPjZ6X</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Su7jfDrRkaqV3sZcdmfPHc-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 17 Aug 2026 10:52:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Business Strategy]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Su7jfDrRkaqV3sZcdmfPHc-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Male and female IT leaders discussing data strategy in an open plan office space while observing source code on a screen.]]></media:description>                                                            <media:text><![CDATA[Male and female IT leaders discussing data strategy in an open plan office space while observing source code on a screen.]]></media:text>
                                <media:title type="plain"><![CDATA[Male and female IT leaders discussing data strategy in an open plan office space while observing source code on a screen.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Su7jfDrRkaqV3sZcdmfPHc-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Organizations are mostly seeing a return on their AI investment, new research shows, but many are struggling to translate business context into AI systems and workflows. </p><p>Eight-in-ten IT leaders globally expect AI spending to increase over the next two years, according to Alteryx's <a href="https://www.alteryx.com/resources/report/the-state-of-ai-ownership-agents-and-roi" target="_blank"><em>2026 IT Leader Research: The State of AI Ownership, Agents, and ROI</em></a> report.</p><p>While 77% agree business context - the rules, definitions, and operational knowledge that shape how their organizations operate - is critical to producing accurate and relevant AI outputs, 53% say they struggle to incorporate this within AI systems and workflows.</p><p>The result here is that AI models are forced to make generic assumptions that could lead to mistakes, false insights, or incorrect metrics – and that has a big impact on business efficiency.  </p><p>More than a third of respondents told researchers that the ability to <a href="https://www.itpro.com/business/business-strategy/roi-is-about-more-than-profitability-when-it-comes-to-ai-adoption-heres-what-enterprises-are-looking-for">measure AI ROI</a> will be one of the capabilities that most distinguishes technology leaders from their peers. </p><p>Notably, firms are increasingly measuring AI success through productivity improvements (53%), cost reduction (45%), and revenue growth or broader business impact (39%).</p><p>“Our research highlights a growing gap between AI ambition and enterprise-scale execution,” said Andy MacMillan, CEO of Alteryx. </p><p>"Organizations have proven they're willing to invest in AI, and many are already seeing returns. But scaling AI requires more than better models. It requires making the business knowledge people use every day available to the systems making decisions.”</p><h2 id="lacking-context">Lacking context</h2><p>While AI can analyze information and generate responses, it can't consistently apply company-specific rules, policies, thresholds, and decision criteria unless that knowledge is built into the workflows it uses to make decisions.</p><p>Part of the problem is limited data access, Alteryx found, with only 18% of organizations reporting that business users have fully self-service access to cloud data. </p><p>Indeed, most are still relying on IT or data teams for routine data access and analytics, with 38% describing  a mixed model and 15% saying business users remain largely dependent on technical teams.</p><p>Two-thirds of technology leaders say AI and agent-based systems are most productive when managed within the line of business, with 71% saying that AI initiatives are most successful when IT and business teams collaborate closely.</p><p>However, strategy (37%) and delivery (38%) remain concentrated within IT, while business teams are most often responsible for defining requirements (30%). </p><p>"The organizations creating lasting value from AI will be the ones that operationalize their business logic so it becomes visible, governed, repeatable, and ready for AI," said MacMillan.</p><h2 id="what-s-driving-ai-roi">What’s driving AI ROI?</h2><p>The AI investments that appear to be delivering the best ROI are workflow automation and autonomous agents, cited by 27%, followed by copilots or assistants, at 16%, and AI-powered customer experience at 14%.</p><p>Virtually all IT leaders (93%) told Alteryx they were confident agentic AI could deliver measurable ROI for their enterprise within the next two years.</p><p>The first processes to be automated by agentic AI, they reckon, will be IT operations and incident management, cited by 47%, followed by customer support and service workflows at 39% and data analysis and reporting at 36%.</p><p>"Within our research, a small group of organizations self-identified as leading the way in AI innovation, confirming a clear path to achieving meaningful business value with AI technologies," the researchers concluded. </p><p>"These organizations point to a clear set of priorities behind their progress: rigorous measurement of AI's business impact, treating AI rollout as a strategic and operational priority, and building the governance and literacy needed to scale with confidence."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Dynatrace acquires observability firm Arize in $915m deal ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.itpro.com/business/business-strategy/kyndryl-partners-with-dynatrace-to-equip-businesses-with-enhanced-insights">Dynatrace</a> has agreed to acquire observability specialist Arize for $915 million, as the vendor looks to expand its capabilities across the <a href="https://www.itpro.com/technology/artificial-intelligence/what-would-pausing-ai-development-actually-achieve">AI development</a> lifecycle.</p><p>The deal will bring together Arize’s AI evaluation technology with Dynatrace’s production monitoring capabilities, enabling customers to evaluate, operate, and continuously improve AI applications.</p><p><a href="https://www.itpro.com/security/observability-will-be-key-to-agentic-ai-safety-says-microsoft-security-exec">AI observability</a> has become increasingly important as businesses move AI applications into production, connecting model and agent behaviour with application performance, GPU utilization, infrastructure health, and business processes.</p><p>Following closure of the acquisition, Dynatrace said customers will gain continuous coverage across the AI lifecycle, spanning experimentation and deployment readiness, through to runtime evaluation and observability.</p><p>The combined offering will also provide context of AI behavior and business impact, as well as an enterprise data foundation for <a href="https://www.itpro.com/cloud/hybrid-cloud/growing-ai-workloads-are-causing-hybrid-cloud-headaches">AI workloads</a> powered by exabyte-scale analysis and AI lakehouse capabilities.</p><p>The acquisition is expected to close later this quarter or early in Dynatrace’s third quarter, subject to regulatory review and customary closing conditions.</p><p>In an announcement, Dynatrace CEO Rick McConnell described the AI observability market opportunity as “enormous” with the category projected to exceed $10 billion by 2030.</p><p>“Acquiring Arize advances our AI observability leadership, accelerates our roadmap, enhances our long-term growth profile, expands our reach with the developer community, and adds an incredible AI-first team to Dynatrace,” he said.</p><h2 id="combining-ai-evaluation-and-observability">Combining AI evaluation and observability</h2><p>Founded in 2020, Arize provides AI observability and LLM evaluation technology designed to help development teams identify issues with AI applications, assess output quality, and monitor AI behavior.</p><p>The firm's platform is used across AI frameworks and model providers, with Dynatrace highlighting its open source community and developer-focused presence as part of the rationale for the acquisition.</p><p>The vendor said Arize’s addition will address fragmentation in the way AI applications are developed and operated, with <a href="https://www.itpro.com/business/business-strategy/engineering-firms-see-little-productivity-benefit-from-use-of-ai">AI engineering</a> teams often using one set of tools to evaluate model and agent behavior, while another is used to monitor the applications and infrastructure beneath them.</p><p>Instead, the combined platform intends to connect AI evaluation and production observability to give developers and engineering teams greater visibility into issues across the AI application stack.</p><p>For developers, the deal also aims to provide a clear path from AI experimentation through to enterprise deployment, backed by Dynatrace’s existing production monitoring and observability capabilities.</p><h2 id="leadership-continuity">Leadership continuity</h2><p>Post-acquisition, Arize CEO and co-founder Jason Lopatecki, and fellow co-founder Aparna Dhinakaran, will both join Dynatrace. Lopatecki will continue leading the Arize team, reporting to McConnell.</p><p>Commenting on the acquisition, Lopatecki said the move will strengthen Arize’s focus on helping AI teams assess whether their agents are working correctly rather than simply running.</p><p>“Together, we can bring AI evaluation and software observability into an end-to-end system, enabling teams to build more ambitious AI applications faster,” he explained.</p><p>“This is the kind of innovation that only happens when two companies with highly complementary solutions and go-to-market models come together, setting a new bar for what AI Observability can deliver for the entire industry.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/acquisition/dynatrace-acquires-observability-firm-arize-in-usd915m-deal</link>
                                                                            <description>
                            <![CDATA[ The move will see Arize’s AI evaluation capabilities combined with Dynatrace’s production monitoring technology across the AI development lifecycle ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">6cKySLgnRBuhuAMTStWJv7</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/R5hJxYvsnJvDTZWJYuxByk-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 14 Aug 2026 10:59:04 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Acquisition]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (Daniel Todd) ]]></author>                    <dc:creator><![CDATA[ Daniel Todd ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/SRyC34qeLpNDj3dJtsVDhT.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/R5hJxYvsnJvDTZWJYuxByk-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Dynatrace logo and branding pictured on a smartphone screen placed on top of a laptop keyboard in dimly lit room.]]></media:description>                                                            <media:text><![CDATA[Dynatrace logo and branding pictured on a smartphone screen placed on top of a laptop keyboard in dimly lit room.]]></media:text>
                                <media:title type="plain"><![CDATA[Dynatrace logo and branding pictured on a smartphone screen placed on top of a laptop keyboard in dimly lit room.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/R5hJxYvsnJvDTZWJYuxByk-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/business/business-strategy/kyndryl-partners-with-dynatrace-to-equip-businesses-with-enhanced-insights">Dynatrace</a> has agreed to acquire observability specialist Arize for $915 million, as the vendor looks to expand its capabilities across the <a href="https://www.itpro.com/technology/artificial-intelligence/what-would-pausing-ai-development-actually-achieve">AI development</a> lifecycle.</p><p>The deal will bring together Arize’s AI evaluation technology with Dynatrace’s production monitoring capabilities, enabling customers to evaluate, operate, and continuously improve AI applications.</p><p><a href="https://www.itpro.com/security/observability-will-be-key-to-agentic-ai-safety-says-microsoft-security-exec">AI observability</a> has become increasingly important as businesses move AI applications into production, connecting model and agent behaviour with application performance, GPU utilization, infrastructure health, and business processes.</p><p>Following closure of the acquisition, Dynatrace said customers will gain continuous coverage across the AI lifecycle, spanning experimentation and deployment readiness, through to runtime evaluation and observability.</p><p>The combined offering will also provide context of AI behavior and business impact, as well as an enterprise data foundation for <a href="https://www.itpro.com/cloud/hybrid-cloud/growing-ai-workloads-are-causing-hybrid-cloud-headaches">AI workloads</a> powered by exabyte-scale analysis and AI lakehouse capabilities.</p><p>The acquisition is expected to close later this quarter or early in Dynatrace’s third quarter, subject to regulatory review and customary closing conditions.</p><p>In an announcement, Dynatrace CEO Rick McConnell described the AI observability market opportunity as “enormous” with the category projected to exceed $10 billion by 2030.</p><p>“Acquiring Arize advances our AI observability leadership, accelerates our roadmap, enhances our long-term growth profile, expands our reach with the developer community, and adds an incredible AI-first team to Dynatrace,” he said.</p><h2 id="combining-ai-evaluation-and-observability">Combining AI evaluation and observability</h2><p>Founded in 2020, Arize provides AI observability and LLM evaluation technology designed to help development teams identify issues with AI applications, assess output quality, and monitor AI behavior.</p><p>The firm's platform is used across AI frameworks and model providers, with Dynatrace highlighting its open source community and developer-focused presence as part of the rationale for the acquisition.</p><p>The vendor said Arize’s addition will address fragmentation in the way AI applications are developed and operated, with <a href="https://www.itpro.com/business/business-strategy/engineering-firms-see-little-productivity-benefit-from-use-of-ai">AI engineering</a> teams often using one set of tools to evaluate model and agent behavior, while another is used to monitor the applications and infrastructure beneath them.</p><p>Instead, the combined platform intends to connect AI evaluation and production observability to give developers and engineering teams greater visibility into issues across the AI application stack.</p><p>For developers, the deal also aims to provide a clear path from AI experimentation through to enterprise deployment, backed by Dynatrace’s existing production monitoring and observability capabilities.</p><h2 id="leadership-continuity">Leadership continuity</h2><p>Post-acquisition, Arize CEO and co-founder Jason Lopatecki, and fellow co-founder Aparna Dhinakaran, will both join Dynatrace. Lopatecki will continue leading the Arize team, reporting to McConnell.</p><p>Commenting on the acquisition, Lopatecki said the move will strengthen Arize’s focus on helping AI teams assess whether their agents are working correctly rather than simply running.</p><p>“Together, we can bring AI evaluation and software observability into an end-to-end system, enabling teams to build more ambitious AI applications faster,” he explained.</p><p>“This is the kind of innovation that only happens when two companies with highly complementary solutions and go-to-market models come together, setting a new bar for what AI Observability can deliver for the entire industry.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Expired domains are a goldmine for hackers – and some cyber crime groups are investing millions in 'dropcatch' scams to deliver malware ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Cyber criminals are spending millions buying up expired domains to repurpose them for <a href="https://www.itpro.com/malware/28076/what-is-malware">malware</a>, scams, illegal streaming, and online gambling, according to new research. </p><p>Taking advantage of the domains' trust, backlinks, and web traffic, they're not only being used by the original threat actors, but are also being sold on.</p><p>Domains originally registered years ago, dropped, and then acquired by someone else can still carry signals associated with their history. Researchers, security products, and reputation-based algorithms may view them more favorably than a genuinely brand-new registration.</p><p>This makes these re-registered 'dropcatch' domains a hot property for threat actors. <a href="https://www.infoblox.com/blog/threat-intelligence/drop-something-dont-worry-someone-caught-it/" target="_blank">Analysis </a>conducted by Infoblox Threat Intel observed around 65,000 being registered per day during the first half of this year, representing nearly one-in-five of all newly observed domains. </p><p>"The sheer volume of dropcatch domains is astounding. We’ve known that bad guys buy expired domains to repurpose them, but the way in which they were used, and the amount of money actors are willing to spend wasn’t well understood.” said Renée Burton, VP of Infoblox Threat Intel. </p><p>"Expired domains can be a shortcut to both trust and traffic, making dropcatch domains a higher risk than the average newly-registered domain.”</p><h2 id="huge-investment">Huge investment</h2><p>One investigation uncovered a threat actor dubbed Sable Squirrel, estimated to have invested more than $7 million in acquiring over 10,000 expired domains now used for illegal streaming, online gambling, and malware distribution.</p><p>Most support a large Asian sports piracy operation whose sites look like consumer streaming products. These offer live football, match schedules, chat rooms, mirrors, and mobile promotion. </p><p>However, Infoblox said it's not the streaming that's the real business: it's the betting platforms that the group appears to control.  </p><p>"A subset of these same domains also operate as malware C2. We identified over 31,000 malware samples connecting to Sable Squirrel domains, including Quasar RAT, AsyncRAT, DCRat, NanoCore, Remcos, njRAT, and samples carrying HiddenTear <a href="https://www.itpro.com/security/28084/what-is-ransomware">ransomware </a>signatures," said the researchers. </p><p>"In such cases, a human visitor sees a live football streaming site while an infected device uses the same domain as a control channel."</p><p>Meanwhile, other threat actors are taking over well-known malicious domains that are inserted into compromised websites. Researchers uncovered one actor delivering potential victims to SocGholish, the <a href="https://www.itpro.com/security/malware/this-operation-marked-a-shift-in-strategy-three-notorious-malware-networks-have-been-taken-down-using-rico-legislation">notorious 'fake update' infrastructure</a> which was the target of <a href="https://www.itpro.com/security/ransomware/its-been-a-bad-week-for-ransomware-operators">Operation Endgame</a> in June 2026. </p><p>Tracked as Shady Squirrel by Infoblox Threat Intel, the group delivered malware through scareware and call centers before partnering up with SocGholish’s operator TA569 in July.</p><p>"We see around 65,000 new dropcatch domains every day. Some of them are legitimate registrations picking up domains people are going to use for commercial or personal use. But an awful lot are grabbed for grey to black purposes," the researchers said. </p><p>"Any way you slice it, the risk posed by dropcatch domains is significant, arguably greater than that of newly registered domains."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/security/cyber-crime/expired-domains-are-a-goldmine-for-hackers-and-some-cyber-crime-groups-are-investing-millions-in-dropcatch-scams-to-deliver-malware</link>
                                                                            <description>
                            <![CDATA[ Tens of thousands of so-called 'dropcatch' domains are being registered every day ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">fYa5evNWABEXTq23J5Vvo5</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/rvaWWDDqxKsTbUB3bzVu5Q-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 14 Aug 2026 10:54:44 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Crime]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/rvaWWDDqxKsTbUB3bzVu5Q-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A pile of multi-colored cubes with regional domain options such as .co.uk and .org.]]></media:description>                                                            <media:text><![CDATA[A pile of multi-colored cubes with regional domain options such as .co.uk and .org.]]></media:text>
                                <media:title type="plain"><![CDATA[A pile of multi-colored cubes with regional domain options such as .co.uk and .org.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/rvaWWDDqxKsTbUB3bzVu5Q-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Cyber criminals are spending millions buying up expired domains to repurpose them for <a href="https://www.itpro.com/malware/28076/what-is-malware">malware</a>, scams, illegal streaming, and online gambling, according to new research. </p><p>Taking advantage of the domains' trust, backlinks, and web traffic, they're not only being used by the original threat actors, but are also being sold on.</p><p>Domains originally registered years ago, dropped, and then acquired by someone else can still carry signals associated with their history. Researchers, security products, and reputation-based algorithms may view them more favorably than a genuinely brand-new registration.</p><p>This makes these re-registered 'dropcatch' domains a hot property for threat actors. <a href="https://www.infoblox.com/blog/threat-intelligence/drop-something-dont-worry-someone-caught-it/" target="_blank">Analysis </a>conducted by Infoblox Threat Intel observed around 65,000 being registered per day during the first half of this year, representing nearly one-in-five of all newly observed domains. </p><p>"The sheer volume of dropcatch domains is astounding. We’ve known that bad guys buy expired domains to repurpose them, but the way in which they were used, and the amount of money actors are willing to spend wasn’t well understood.” said Renée Burton, VP of Infoblox Threat Intel. </p><p>"Expired domains can be a shortcut to both trust and traffic, making dropcatch domains a higher risk than the average newly-registered domain.”</p><h2 id="huge-investment">Huge investment</h2><p>One investigation uncovered a threat actor dubbed Sable Squirrel, estimated to have invested more than $7 million in acquiring over 10,000 expired domains now used for illegal streaming, online gambling, and malware distribution.</p><p>Most support a large Asian sports piracy operation whose sites look like consumer streaming products. These offer live football, match schedules, chat rooms, mirrors, and mobile promotion. </p><p>However, Infoblox said it's not the streaming that's the real business: it's the betting platforms that the group appears to control.  </p><p>"A subset of these same domains also operate as malware C2. We identified over 31,000 malware samples connecting to Sable Squirrel domains, including Quasar RAT, AsyncRAT, DCRat, NanoCore, Remcos, njRAT, and samples carrying HiddenTear <a href="https://www.itpro.com/security/28084/what-is-ransomware">ransomware </a>signatures," said the researchers. </p><p>"In such cases, a human visitor sees a live football streaming site while an infected device uses the same domain as a control channel."</p><p>Meanwhile, other threat actors are taking over well-known malicious domains that are inserted into compromised websites. Researchers uncovered one actor delivering potential victims to SocGholish, the <a href="https://www.itpro.com/security/malware/this-operation-marked-a-shift-in-strategy-three-notorious-malware-networks-have-been-taken-down-using-rico-legislation">notorious 'fake update' infrastructure</a> which was the target of <a href="https://www.itpro.com/security/ransomware/its-been-a-bad-week-for-ransomware-operators">Operation Endgame</a> in June 2026. </p><p>Tracked as Shady Squirrel by Infoblox Threat Intel, the group delivered malware through scareware and call centers before partnering up with SocGholish’s operator TA569 in July.</p><p>"We see around 65,000 new dropcatch domains every day. Some of them are legitimate registrations picking up domains people are going to use for commercial or personal use. But an awful lot are grabbed for grey to black purposes," the researchers said. </p><p>"Any way you slice it, the risk posed by dropcatch domains is significant, arguably greater than that of newly registered domains."</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ OpenAI forges closer ties with IBM in enterprise push ]]></title>
                                                                                                <dc:content><![CDATA[ <p>IBM and OpenAI have partnered up to help customers deploy AI at scale for core business operations.</p><p>Under the deal, IBM will create a dedicated OpenAI Practice, training thousands of consultants and engineers for expert-level certifications through the OpenAI Partner Network.</p><p>OpenAI models and products will be combined with IBM Consulting technology and expertise, the duo said, with the first areas to be targeted including financial services, government, telecommunications, and financial services.</p><p>“The organizations pulling ahead with AI are the ones turning it into a trusted part of how their business operates,” said Denise Dresser, former chief revenue officer at OpenAI. </p><p>“IBM Consulting and OpenAI are helping organizations make that shift, combining deep transformation expertise to deploy AI that is secure, operational, and aligned with real business priorities.” </p><h2 id="driving-adoption-rates">Driving adoption rates</h2><p>According to the two firms, the partnership will focus on applying AI to specific business industry processes, while also modernizing applications, redesigning back-office workflows, and strengthening <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity</a>.</p><p>"We’re starting with the business use case,” said Michael Healy, managing partner of offerings, assets and generative AI at IBM Consulting. “Then we bring IBM’s process transformation and industry expertise together with OpenAI’s models to change how that work actually gets done.”</p><p>OpenAI frontier models like GPT-5.6 and products such as <a href="https://www.itpro.com/technology/artificial-intelligence/openais-codex-app-is-now-available-on-macos-and-its-free-for-some-chatgpt-users-for-a-limited-time">Codex </a>and ChatGPT Work will be embedded into IBM’s AI platform for delivering consulting services, IBM Consulting Advantage.</p><p>This will allow operating procedures and workflows to be analyzed to identify inefficiencies and help teams automate and streamline work using AI across finance, procurement, customer operations, and HR. </p><h2 id="tech-modernization">Tech modernization</h2><p>As part of the deal, IBM said the duo also plan to help clients <a href="https://www.itpro.com/business/digital-transformation/it-leaders-are-throwing-money-away-with-legacy-systems-enterprises-report-usd370-million-in-losses-each-year-due-to-outdated-tech">modernize legacy applications</a> and <a href="https://www.itpro.com/technology/artificial-intelligence/the-pros-and-cons-of-ai-coding-in-the-it-industry">accelerate software development</a> by bringing together OpenAI Codex and ChatGPT Work with IBM’s industry, technology and domain expertise, including integration. </p><p>Here, the aim is to help organizations simplify engineering processes and speed up the delivery of new digital products and services.</p><p>“Codex as a coding assistant will accelerate the application development modernization cycle in combination with IBM Consulting Advantage’s coding harness and OpenAI’s models,” said Healy.</p><p>Following IBM’s participation in the OpenAI Daybreak Cyber Partner Program, the duo will expand their collaboration on cybersecurity. </p><p>This will involve combining OpenAI frontier AI capabilities with IBM Autonomous Security. This is an agentic AI service designed to deliver coordinated decision-making, response, and intelligence for cyber professionals. </p><p>“While enterprises are rapidly investing in AI, they are looking for practical ways to apply it across their core operations to deliver measurable business outcomes and create new commercial models,” said Andy Baldwin, global senior vice president, IBM Consulting. </p><p>“The challenge is not access to AI technologies — it’s integrating AI securely and at scale into complex enterprise environments and workflows. By embedding OpenAI’s technology with IBM Consulting’s AI assets, industry solutions, and cybersecurity capabilities, we can help clients accelerate secure, AI deployments at scale.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/technology/artificial-intelligence/openai-forges-closer-ties-with-ibm-in-enterprise-push</link>
                                                                            <description>
                            <![CDATA[ The duo will combine OpenAI models and products with IBM Consulting expertise ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">KREkr97iKt86MeDp9nbL27</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/t9VeuX9MMJ2baxoKmRyR2m-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 14 Aug 2026 10:23:16 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/t9VeuX9MMJ2baxoKmRyR2m-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[IBM logo illuminated in white against a black background at the company&#039;s exhibitor stall at Mobile World Congress 2025. ]]></media:description>                                                            <media:text><![CDATA[IBM logo illuminated in white against a black background at the company&#039;s exhibitor stall at Mobile World Congress 2025. ]]></media:text>
                                <media:title type="plain"><![CDATA[IBM logo illuminated in white against a black background at the company&#039;s exhibitor stall at Mobile World Congress 2025. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/t9VeuX9MMJ2baxoKmRyR2m-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>IBM and OpenAI have partnered up to help customers deploy AI at scale for core business operations.</p><p>Under the deal, IBM will create a dedicated OpenAI Practice, training thousands of consultants and engineers for expert-level certifications through the OpenAI Partner Network.</p><p>OpenAI models and products will be combined with IBM Consulting technology and expertise, the duo said, with the first areas to be targeted including financial services, government, telecommunications, and financial services.</p><p>“The organizations pulling ahead with AI are the ones turning it into a trusted part of how their business operates,” said Denise Dresser, former chief revenue officer at OpenAI. </p><p>“IBM Consulting and OpenAI are helping organizations make that shift, combining deep transformation expertise to deploy AI that is secure, operational, and aligned with real business priorities.” </p><h2 id="driving-adoption-rates">Driving adoption rates</h2><p>According to the two firms, the partnership will focus on applying AI to specific business industry processes, while also modernizing applications, redesigning back-office workflows, and strengthening <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity</a>.</p><p>"We’re starting with the business use case,” said Michael Healy, managing partner of offerings, assets and generative AI at IBM Consulting. “Then we bring IBM’s process transformation and industry expertise together with OpenAI’s models to change how that work actually gets done.”</p><p>OpenAI frontier models like GPT-5.6 and products such as <a href="https://www.itpro.com/technology/artificial-intelligence/openais-codex-app-is-now-available-on-macos-and-its-free-for-some-chatgpt-users-for-a-limited-time">Codex </a>and ChatGPT Work will be embedded into IBM’s AI platform for delivering consulting services, IBM Consulting Advantage.</p><p>This will allow operating procedures and workflows to be analyzed to identify inefficiencies and help teams automate and streamline work using AI across finance, procurement, customer operations, and HR. </p><h2 id="tech-modernization">Tech modernization</h2><p>As part of the deal, IBM said the duo also plan to help clients <a href="https://www.itpro.com/business/digital-transformation/it-leaders-are-throwing-money-away-with-legacy-systems-enterprises-report-usd370-million-in-losses-each-year-due-to-outdated-tech">modernize legacy applications</a> and <a href="https://www.itpro.com/technology/artificial-intelligence/the-pros-and-cons-of-ai-coding-in-the-it-industry">accelerate software development</a> by bringing together OpenAI Codex and ChatGPT Work with IBM’s industry, technology and domain expertise, including integration. </p><p>Here, the aim is to help organizations simplify engineering processes and speed up the delivery of new digital products and services.</p><p>“Codex as a coding assistant will accelerate the application development modernization cycle in combination with IBM Consulting Advantage’s coding harness and OpenAI’s models,” said Healy.</p><p>Following IBM’s participation in the OpenAI Daybreak Cyber Partner Program, the duo will expand their collaboration on cybersecurity. </p><p>This will involve combining OpenAI frontier AI capabilities with IBM Autonomous Security. This is an agentic AI service designed to deliver coordinated decision-making, response, and intelligence for cyber professionals. </p><p>“While enterprises are rapidly investing in AI, they are looking for practical ways to apply it across their core operations to deliver measurable business outcomes and create new commercial models,” said Andy Baldwin, global senior vice president, IBM Consulting. </p><p>“The challenge is not access to AI technologies — it’s integrating AI securely and at scale into complex enterprise environments and workflows. By embedding OpenAI’s technology with IBM Consulting’s AI assets, industry solutions, and cybersecurity capabilities, we can help clients accelerate secure, AI deployments at scale.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Flexibility is a huge advantage for small businesses adopting AI, but clear strategy and bold leadership is critical ]]></title>
                                                                                                <dc:content><![CDATA[ <p>UK small businesses have an increasingly optimistic outlook on the potential of AI tools, new research suggests, but bold leadership will be required to ensure successful deployment. </p><p>A study published by Dell Technologies shows two-thirds (66%) of UK SMBs now view AI as a “route to growth”. More than half (56%), meanwhile, told the firm that AI could give their business a competitive advantage moving forward.</p><p>This optimism is driving investment, the research found, with funding primarily aimed at <a href="https://www.itpro.com/business/business-strategy/productivity-gains-on-the-menu-as-cfos-target-bullish-tech-spending-in-2026">unlocking productivity gains</a>, improving customer experience, and improving decision making. </p><p>Brian Horsburgh, UK small business country manager at <a href="https://www.itpro.com/hardware/everything-you-need-to-know-about-dell">Dell Technologies</a>, told <em>ITPro </em>the study shows AI is having a marked positive impact for SMBs, particularly in terms of allowing workers to sharpen their focus on specific tasks. </p><p>“One of the realities of working in a small business is that everyone wears multiple hats. Many people find themselves spending hours on admin, reporting, marketing or customer queries, even though those aren't the things that inspired them to start or join the business,” he told <em>ITPro</em>. </p><p>“AI can help take some of that work off their plate, giving them more time to focus on customers, creativity, and growth.”</p><h2 id="pulling-ahead-of-the-pack">Pulling ahead of the pack</h2><p>According to Dell Technologies, a small group of “AI front runners” has emerged among UK small businesses. </p><p>Representing around 7% of the firms surveyed, these report the strongest gains from using AI, allowing them to free up six or more hours each week with the technology. </p><p>Horsburgh told <em>ITPro </em>that a recurring theme with these front runners is having a clear cut strategy and not rushing headlong into adoption for the sake of it. </p><p>Indeed, these companies are more likely to have dedicated leaders championing AI than their slower-moving competitors. </p><p>More than half (52%) have “clearly defined specific AI use cases”, the study found, often starting with small examples before moving to more complex use cases as they mature. </p><p>“Having the right strategy is critical. Our research shows that those who are gaining the most from AI today say that AI use is coming from leadership as a priority,” Horsburgh said. </p><p>“Adopting AI means identifying ways it can help you do more of what helps your business grow and in fact, the number one piece of advice that came through from businesses of all sizes is to start small and iterate.”</p><p>Horsburgh said the findings highlight the need for dynamic, open-minded leadership when it comes to AI adoption. Initial use cases are key, he noted, but employee training and cultivating an “AI-friendly culture” are equally important.</p><p>“Those three pieces are critical to building a culture that drives benefits,” he told <em>ITPro</em>. “The outcomes that SMBs are seeing are positive for staff: more time to think strategically, improving decision making, improving customer experience, and having the right environment can help teams see those benefits sooner.”</p><h2 id="the-smb-agility-dynamic">The SMB agility dynamic</h2><p>Dell Technologies’ study emphasized that small businesses have an inherent advantage over larger organizations when it comes to adoption. </p><p>First and foremost, they’re typically more agile and flexible with how they approach the technology – and the report noted that is now translating into higher rates of success. </p><p>This advantage isn’t lost on large businesses, either, Dell Technologies found. Nearly two-thirds (61%) of larger firms said greater flexibility is a key advantage for SMBs. Similarly, they have “more focused business needs” and are less risk averse. </p><p>SMBs also recognize these advantages, according to Dell Technologies, and are less likely than their larger counterparts to cite key barriers, such as lengthy approval processes, employee resistance to change, or fear of failure. </p><p>“Smaller businesses can have an advantage because they're often more flexible and can move faster than larger businesses, so starting with one or two key opportunities can potentially have an outsized impact.” Horsburgh told <em>ITPro</em>.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/business-strategy/flexibility-is-a-huge-advantage-for-small-businesses-adopting-ai-but-clear-strategy-and-bold-leadership-is-critical</link>
                                                                            <description>
                            <![CDATA[ While small businesses continue warming to AI, Dell research shows they need to capitalize on inherent flexibility to drive adoption ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">9zbuKk3iwBMAALN7PkGG8W</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/2imUJTCu7XjxNqSWbSo26j-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 14 Aug 2026 10:15:14 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Business Strategy]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/2imUJTCu7XjxNqSWbSo26j-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Female business leader standing in a meeting room discussing company strategy with male and female colleague, with statistics on screen behind her. ]]></media:description>                                                            <media:text><![CDATA[Female business leader standing in a meeting room discussing company strategy with male and female colleague, with statistics on screen behind her. ]]></media:text>
                                <media:title type="plain"><![CDATA[Female business leader standing in a meeting room discussing company strategy with male and female colleague, with statistics on screen behind her. ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/2imUJTCu7XjxNqSWbSo26j-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>UK small businesses have an increasingly optimistic outlook on the potential of AI tools, new research suggests, but bold leadership will be required to ensure successful deployment. </p><p>A study published by Dell Technologies shows two-thirds (66%) of UK SMBs now view AI as a “route to growth”. More than half (56%), meanwhile, told the firm that AI could give their business a competitive advantage moving forward.</p><p>This optimism is driving investment, the research found, with funding primarily aimed at <a href="https://www.itpro.com/business/business-strategy/productivity-gains-on-the-menu-as-cfos-target-bullish-tech-spending-in-2026">unlocking productivity gains</a>, improving customer experience, and improving decision making. </p><p>Brian Horsburgh, UK small business country manager at <a href="https://www.itpro.com/hardware/everything-you-need-to-know-about-dell">Dell Technologies</a>, told <em>ITPro </em>the study shows AI is having a marked positive impact for SMBs, particularly in terms of allowing workers to sharpen their focus on specific tasks. </p><p>“One of the realities of working in a small business is that everyone wears multiple hats. Many people find themselves spending hours on admin, reporting, marketing or customer queries, even though those aren't the things that inspired them to start or join the business,” he told <em>ITPro</em>. </p><p>“AI can help take some of that work off their plate, giving them more time to focus on customers, creativity, and growth.”</p><h2 id="pulling-ahead-of-the-pack">Pulling ahead of the pack</h2><p>According to Dell Technologies, a small group of “AI front runners” has emerged among UK small businesses. </p><p>Representing around 7% of the firms surveyed, these report the strongest gains from using AI, allowing them to free up six or more hours each week with the technology. </p><p>Horsburgh told <em>ITPro </em>that a recurring theme with these front runners is having a clear cut strategy and not rushing headlong into adoption for the sake of it. </p><p>Indeed, these companies are more likely to have dedicated leaders championing AI than their slower-moving competitors. </p><p>More than half (52%) have “clearly defined specific AI use cases”, the study found, often starting with small examples before moving to more complex use cases as they mature. </p><p>“Having the right strategy is critical. Our research shows that those who are gaining the most from AI today say that AI use is coming from leadership as a priority,” Horsburgh said. </p><p>“Adopting AI means identifying ways it can help you do more of what helps your business grow and in fact, the number one piece of advice that came through from businesses of all sizes is to start small and iterate.”</p><p>Horsburgh said the findings highlight the need for dynamic, open-minded leadership when it comes to AI adoption. Initial use cases are key, he noted, but employee training and cultivating an “AI-friendly culture” are equally important.</p><p>“Those three pieces are critical to building a culture that drives benefits,” he told <em>ITPro</em>. “The outcomes that SMBs are seeing are positive for staff: more time to think strategically, improving decision making, improving customer experience, and having the right environment can help teams see those benefits sooner.”</p><h2 id="the-smb-agility-dynamic">The SMB agility dynamic</h2><p>Dell Technologies’ study emphasized that small businesses have an inherent advantage over larger organizations when it comes to adoption. </p><p>First and foremost, they’re typically more agile and flexible with how they approach the technology – and the report noted that is now translating into higher rates of success. </p><p>This advantage isn’t lost on large businesses, either, Dell Technologies found. Nearly two-thirds (61%) of larger firms said greater flexibility is a key advantage for SMBs. Similarly, they have “more focused business needs” and are less risk averse. </p><p>SMBs also recognize these advantages, according to Dell Technologies, and are less likely than their larger counterparts to cite key barriers, such as lengthy approval processes, employee resistance to change, or fear of failure. </p><p>“Smaller businesses can have an advantage because they're often more flexible and can move faster than larger businesses, so starting with one or two key opportunities can potentially have an outsized impact.” Horsburgh told <em>ITPro</em>.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Tricentis names Erika Dean as chief information security officer ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Tricentis has announced the appointment of Erika Dean as <a href="https://www.itpro.com/careers/28228/ciso-job-description-what-does-a-ciso-do">chief information security officer (CISO)</a>, as the software quality specialist moves to strengthen its enterprise and product security capabilities.</p><p>Dean is tasked with leading Tricentis’ global security strategy, with responsibility for enterprise <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity</a>, compliance, and product security.</p><p>A seasoned industry veteran, she joins the company with more than two decades of <a href="https://www.itpro.com/security/cybersecurity-leaders-must-stop-seeing-resilience-as-a-tick-box-exercise-to-achieve-meaningful-protection-says-gartner-expert">cybersecurity leadership</a> experience across the financial services and technology sectors. Previously, she built and led security programs at Robinhood and Capital One.</p><p>As CISO, Dean will work across the business to develop its enterprise and product security programs, with a focus on strengthening software supply chain security, as well as <a href="https://www.itpro.com/security/data-breaches/businesses-need-to-boost-cyber-resilience-heres-how">cyber resilience</a> and governance across its portfolio.</p><p>Her remit also includes supporting the Tricentis Agentic Quality Engineering Platform as AI becomes increasingly embedded in the software development lifecycle.</p><p>“Cybersecurity is foundational to the trust our customers place in Tricentis,” said Tricentis CEO Kevin Thompson in an announcement. “Erika's expertise in building enterprise security programs and her customer-centric approach make her the ideal leader to drive Tricentis’ continued efforts to deliver innovative software quality solutions that enable customers to move faster without compromising security or governance.”</p><p>Dean’s appointment comes as businesses face increasingly sophisticated cyber threats and greater scrutiny around AI adoption, software supply chains, and the protection of sensitive data.</p><h2 id="tricentis-eyes-resilience-gains">Tricentis eyes resilience gains</h2><p>Austin-headquartered Tricentis develops software quality and testing technology designed to help enterprises automate and accelerate software development and release processes. </p><p>Its Agentic Quality Engineering Platform uses AI to automate software quality processes across enterprise application environments.</p><p>Tricentis said its latest leadership appointment reinforces its ongoing efforts to maintain a robust security program while helping customers deliver software securely.</p><p>Commenting on her new role, Dean said the growing use of AI in software development is changing the role security teams must play in protecting both businesses and their customers.</p><p>“As AI continues to transform the way software is built, security must extend beyond protecting our own organization to earning our customers’ trust in the software running in their critical environments,” she explained. </p><p>“Tricentis sits at a critical point in the software development lifecycle, where quality, security and governance all work together.</p><p>“I’m excited to build on the company’s strong security-first culture and partner with our customers to help them navigate the evolving cybersecurity landscape with confidence.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/business/leadership/tricentis-names-erika-dean-as-chief-information-security-officer</link>
                                                                            <description>
                            <![CDATA[ The former Robinhood and Capital One security leader will oversee enterprise and product security as AI adoption continues to accelerate ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">fDMVNmxvXntWqdd5J9iBJX</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/yDJKgtuBwaxvZ7BZMsMee4-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 14 Aug 2026 09:22:34 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Leadership]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (Daniel Todd) ]]></author>                    <dc:creator><![CDATA[ Daniel Todd ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/SRyC34qeLpNDj3dJtsVDhT.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/yDJKgtuBwaxvZ7BZMsMee4-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Close up of a handshake with between people in suits.]]></media:description>                                                            <media:text><![CDATA[Close up of a handshake with between people in suits.]]></media:text>
                                <media:title type="plain"><![CDATA[Close up of a handshake with between people in suits.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/yDJKgtuBwaxvZ7BZMsMee4-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Tricentis has announced the appointment of Erika Dean as <a href="https://www.itpro.com/careers/28228/ciso-job-description-what-does-a-ciso-do">chief information security officer (CISO)</a>, as the software quality specialist moves to strengthen its enterprise and product security capabilities.</p><p>Dean is tasked with leading Tricentis’ global security strategy, with responsibility for enterprise <a href="https://www.itpro.com/security/28133/what-is-cyber-security">cybersecurity</a>, compliance, and product security.</p><p>A seasoned industry veteran, she joins the company with more than two decades of <a href="https://www.itpro.com/security/cybersecurity-leaders-must-stop-seeing-resilience-as-a-tick-box-exercise-to-achieve-meaningful-protection-says-gartner-expert">cybersecurity leadership</a> experience across the financial services and technology sectors. Previously, she built and led security programs at Robinhood and Capital One.</p><p>As CISO, Dean will work across the business to develop its enterprise and product security programs, with a focus on strengthening software supply chain security, as well as <a href="https://www.itpro.com/security/data-breaches/businesses-need-to-boost-cyber-resilience-heres-how">cyber resilience</a> and governance across its portfolio.</p><p>Her remit also includes supporting the Tricentis Agentic Quality Engineering Platform as AI becomes increasingly embedded in the software development lifecycle.</p><p>“Cybersecurity is foundational to the trust our customers place in Tricentis,” said Tricentis CEO Kevin Thompson in an announcement. “Erika's expertise in building enterprise security programs and her customer-centric approach make her the ideal leader to drive Tricentis’ continued efforts to deliver innovative software quality solutions that enable customers to move faster without compromising security or governance.”</p><p>Dean’s appointment comes as businesses face increasingly sophisticated cyber threats and greater scrutiny around AI adoption, software supply chains, and the protection of sensitive data.</p><h2 id="tricentis-eyes-resilience-gains">Tricentis eyes resilience gains</h2><p>Austin-headquartered Tricentis develops software quality and testing technology designed to help enterprises automate and accelerate software development and release processes. </p><p>Its Agentic Quality Engineering Platform uses AI to automate software quality processes across enterprise application environments.</p><p>Tricentis said its latest leadership appointment reinforces its ongoing efforts to maintain a robust security program while helping customers deliver software securely.</p><p>Commenting on her new role, Dean said the growing use of AI in software development is changing the role security teams must play in protecting both businesses and their customers.</p><p>“As AI continues to transform the way software is built, security must extend beyond protecting our own organization to earning our customers’ trust in the software running in their critical environments,” she explained. </p><p>“Tricentis sits at a critical point in the software development lifecycle, where quality, security and governance all work together.</p><p>“I’m excited to build on the company’s strong security-first culture and partner with our customers to help them navigate the evolving cybersecurity landscape with confidence.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ AMD pledges support for Oxford frontier AI research lab ]]></title>
                                                                                                <dc:content><![CDATA[ <p><a href="https://www.itpro.com/business/business-strategy/everything-you-need-to-know-about-amd">AMD </a>is planning to offer up to £5 million in support for a new lab in Oxford carrying out research into frontier AI.</p><p>The company has signed a memorandum of understanding to provide compute resources for researchers at the British Open-ended Learning and Discovery Lab (BOLD) during the lab's first eighteen months in operation.</p><p>BOLD is led by the University of Oxford, and brings together researchers affiliated with the University of Oxford, University College London, and Imperial College London. </p><p>They, together with AMD researchers, plan to explore initiatives spanning compute access, software optimization, research collaboration and open-source development. </p><p>Work could include experiments to explore model training techniques beyond backpropagation, discovery using <a href="https://www.itpro.com/technology/artificial-intelligence/practical-ai-the-age-of-agentic-ai">multi-agent systems</a> and adaptive <a href="https://www.itpro.com/technology/artificial-intelligence/ai-in-retail-industry-growth-nvidia">physical AI</a>. </p><p>The lab will be built around three research aims - new learning algorithms, human-centered AI and embodied systems such as robots - and will translate breakthroughs into <a href="https://www.itpro.com/software/28109/what-is-open-source">open source</a> tools and encourage commercial spin-outs. </p><p>“Through our memorandum of understanding with the BOLD lab, AMD is exploring bringing together advanced computing, open software and technical expertise to help researchers pursue ambitious new frontiers in AI," said Thomas Zacharia, senior vice president, global public sector and strategic partnerships at AMD. </p><p>"By expanding access to compute and supporting open academic research, our aim would be to help BOLD researchers accelerate experimentation and contribute to the UK’s leadership in AI innovation and scientific discovery.”</p><h2 id="amd-to-provide-underpinning-infrastructure">AMD to provide underpinning infrastructure</h2><p>AMD plans to provide support through infrastructure that will be maintained by the company itself, along with cloud service providers, public-sector partnerships and hardware contributions. </p><p>Phase 1 of the research program will focus on broad exploratory experiments, with later phases following up select research directions and validating the most promising ideas. </p><p>The company said it will work with BOLD researchers across the AI technology stack, exploring novel ways to optimize AI workloads using its open software ecosystem. </p><p>The ecosystem envisaged by the MOU would be built on permissively licensed open-source projects such as <a href="https://www.itpro.com/hardware/amd-expands-its-software-stack-with-rocm-ai">AMD ROCm software</a>. AMD would help BOLD researchers publish research software, benchmarks, and evaluation tools.  </p><p>"BOLD aims to advance a more open, efficient and human-centered path for AI through collaboration between academia and industry. Working with AMD, the University of Oxford would combine world-leading research with computing technology to test ideas, learn quickly and translate breakthroughs into applications," said associate professor Jakob Foerster, of the University of Oxford's Department of Engineering Science.</p><p>"This support would help BOLD develop approaches to learning, human-AI collaboration and embodied intelligence while expanding open access to computing resources that benefit science, healthcare, education, transportation and public services globally.”</p><h2 id="uk-pledges-continue">UK pledges continue</h2><p>The MoU marks the latest in a number of UK-related pledges made by AMD in recent months. </p><p>In June, for example, the chipmaker announced plans to invest £2 billion in the UK to drive AI innovation and research. This also saw AMD pledge to expand access to compute resources for enterprises across the country. </p><p>Along with University College London-led research lab Science of Fundamental AI Research (SOFAIR), BOLD is to receive a share of £60 million in government funding over the next six years. </p><p>This funding forms part of the £1.6 billion UKRI AI Strategy, which aims to strengthen the UK’s leadership in AI over the next four years.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/infrastructure/amd-pledges-support-for-oxford-frontier-ai-research-lab</link>
                                                                            <description>
                            <![CDATA[ The British Open-ended Learning and Discovery Lab (BOLD) will work on new learning algorithms, human-centered AI and embodied systems such as robots ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">CLpRpwU4UgeMqrzS9VZcjn</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/9UYzc2inFPC7jftqaavwmP-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 14 Aug 2026 05:00:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Infrastructure]]></category>
                                                                                                                    <dc:creator><![CDATA[ Emma Woollacott ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/aWfskavxoVSMDy6cDWtYmJ.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/9UYzc2inFPC7jftqaavwmP-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[AMD logo and branding pictured on a dark reflective surface with faint blue lighting in background.]]></media:description>                                                            <media:text><![CDATA[AMD logo and branding pictured on a dark reflective surface with faint blue lighting in background.]]></media:text>
                                <media:title type="plain"><![CDATA[AMD logo and branding pictured on a dark reflective surface with faint blue lighting in background.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/9UYzc2inFPC7jftqaavwmP-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p><a href="https://www.itpro.com/business/business-strategy/everything-you-need-to-know-about-amd">AMD </a>is planning to offer up to £5 million in support for a new lab in Oxford carrying out research into frontier AI.</p><p>The company has signed a memorandum of understanding to provide compute resources for researchers at the British Open-ended Learning and Discovery Lab (BOLD) during the lab's first eighteen months in operation.</p><p>BOLD is led by the University of Oxford, and brings together researchers affiliated with the University of Oxford, University College London, and Imperial College London. </p><p>They, together with AMD researchers, plan to explore initiatives spanning compute access, software optimization, research collaboration and open-source development. </p><p>Work could include experiments to explore model training techniques beyond backpropagation, discovery using <a href="https://www.itpro.com/technology/artificial-intelligence/practical-ai-the-age-of-agentic-ai">multi-agent systems</a> and adaptive <a href="https://www.itpro.com/technology/artificial-intelligence/ai-in-retail-industry-growth-nvidia">physical AI</a>. </p><p>The lab will be built around three research aims - new learning algorithms, human-centered AI and embodied systems such as robots - and will translate breakthroughs into <a href="https://www.itpro.com/software/28109/what-is-open-source">open source</a> tools and encourage commercial spin-outs. </p><p>“Through our memorandum of understanding with the BOLD lab, AMD is exploring bringing together advanced computing, open software and technical expertise to help researchers pursue ambitious new frontiers in AI," said Thomas Zacharia, senior vice president, global public sector and strategic partnerships at AMD. </p><p>"By expanding access to compute and supporting open academic research, our aim would be to help BOLD researchers accelerate experimentation and contribute to the UK’s leadership in AI innovation and scientific discovery.”</p><h2 id="amd-to-provide-underpinning-infrastructure">AMD to provide underpinning infrastructure</h2><p>AMD plans to provide support through infrastructure that will be maintained by the company itself, along with cloud service providers, public-sector partnerships and hardware contributions. </p><p>Phase 1 of the research program will focus on broad exploratory experiments, with later phases following up select research directions and validating the most promising ideas. </p><p>The company said it will work with BOLD researchers across the AI technology stack, exploring novel ways to optimize AI workloads using its open software ecosystem. </p><p>The ecosystem envisaged by the MOU would be built on permissively licensed open-source projects such as <a href="https://www.itpro.com/hardware/amd-expands-its-software-stack-with-rocm-ai">AMD ROCm software</a>. AMD would help BOLD researchers publish research software, benchmarks, and evaluation tools.  </p><p>"BOLD aims to advance a more open, efficient and human-centered path for AI through collaboration between academia and industry. Working with AMD, the University of Oxford would combine world-leading research with computing technology to test ideas, learn quickly and translate breakthroughs into applications," said associate professor Jakob Foerster, of the University of Oxford's Department of Engineering Science.</p><p>"This support would help BOLD develop approaches to learning, human-AI collaboration and embodied intelligence while expanding open access to computing resources that benefit science, healthcare, education, transportation and public services globally.”</p><h2 id="uk-pledges-continue">UK pledges continue</h2><p>The MoU marks the latest in a number of UK-related pledges made by AMD in recent months. </p><p>In June, for example, the chipmaker announced plans to invest £2 billion in the UK to drive AI innovation and research. This also saw AMD pledge to expand access to compute resources for enterprises across the country. </p><p>Along with University College London-led research lab Science of Fundamental AI Research (SOFAIR), BOLD is to receive a share of £60 million in government funding over the next six years. </p><p>This funding forms part of the £1.6 billion UKRI AI Strategy, which aims to strengthen the UK’s leadership in AI over the next four years.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Airbnb CEO Brian Chesky says companies need to start building useful AI products ]]></title>
                                                                                                <dc:content><![CDATA[ <p>Want people to actually use AI? Then make it more useful according to Airbnb CEO Brian Chesky. </p><p>Speaking during a recent <a href="https://www.youtube.com/watch?v=YaXvXstjBgk" target="_blank"><u><em>Power Players</em></u></a> podcast appearance, Chesky said people are still using AI as an "interactive search product" but predicted further progress when it comes to interfaces, rather than just typing.</p><p>"I think part of it's a narrative issue that we're not talking about AI correctly," he said. "But part of it is we need to actually be developing more products that just regular people can use and say, 'I love AI because AI allows me to have a doctor on demand and I can't have that. I can't afford that.' And so I think we need more regular things."</p><p>Given Airbnb’s market, Chesky noted that the focus on largely enterprise-related AI innovation could be holding back broader adoption. He noted that 159 out of 175 startups at Y Combinator, where Chesky is a board member, focused on enterprise AI rather than consumer products. </p><p>"Maybe a simple way of saying it is we're getting really, really deep on enterprise, but there's been very little progress on consumer AI," he added. </p><h2 id="ai-backlash">AI backlash</h2><p>Chesky <a href="https://www.businessinsider.com/airbnb-ceo-brian-chesky-ai-backlash-build-products-regular-people-2026-8" target="_blank"><u>said</u></a> that it's in Silicon Valley's interest to make consumer apps that improve people's lives in order to shift increasingly negative opinions about the tech, warning that "regular people in the United States do not like AI." </p><p>This year has seen the start of a mainstream <a href="https://www.itpro.com/technology/artificial-intelligence/ai-fatigue-is-the-backlash-against-ai-already-here"><u>backlash against the technology</u></a>, perhaps inevitable given the hype, but concerns have also been boosted by rising prices and environmental concerns around data centres. </p><p>Survey after survey also suggests many people simply don't like AI. <a href="https://www.itpro.com/technology/artificial-intelligence/your-customers-arent-keen-on-that-customer-service-chatbot-you-introduced-heres-why"><u>Research via YouGov</u></a> showed two-thirds of people weren't confident in the way businesses use generative AI, in particular with customer service. </p><p>A poll by Pew suggested just <a href="https://novaramedia.com/2026/07/07/people-who-use-ai-more-also-dislike-it-most-study-reveals/" target="_blank"><u>16% of Americans</u></a> think AI will prove to be a positive tool for society. </p><p>Chesky's argument is that building actually useful products powered by AI could help to undercut some of that negative sentiment – and he believes that will happen. </p><p>The Airbnb chief predicted that within in the next two or three years there will be a "renaissance around consumer AI that is going to begin to change daily life."</p><h2 id="ai-booster">AI booster</h2><p>Chesky has long been positive about AI. In 2023, he compared the technology's impact to electricity and <a href="https://www.youtube.com/watch?v=ooVzEEoVUlg" target="_blank"><u>said</u></a> it will "change everyone's life." </p><p>In the podcast, he noted there haven’t yet been any major changes to our daily lives on par with the internet or iPhone.</p><p>Chesky also called for moving beyond the chatbot model, saying later that year that it should "augment humanity in a positive way".  </p><p>Airbnb <a href="https://news.airbnb.com/airbnb-has-acquired-gameplanner-ai/" target="_blank"><u>bought GamePlannerAI</u></a> in November 2023, and earlier this year <a href="https://fortune.com/2026/02/17/airbnb-ceo-brian-chesky-says-ai-best-thing-ever-happened-company-warns-other-founders-get-onboard-or-else/?queryly=related_article&utm_source=chatgpt.com"><u>said</u></a> AI was the "best thing that ever happened to Airbnb," in part thanks to a third of customer service tickets now handled by the technology. </p><p>After its last round of results, that <a href="https://finance.yahoo.com/technology/ai/articles/airbnb-reaches-another-milestone-ai-145500025.html" target="_blank"><u>number had jumped to 45%</u></a> – despite those previously mentioned concerns about AI driven customer service.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/technology/artificial-intelligence/airbnb-ceo-brian-chesky-says-companies-need-to-start-building-useful-ai-products</link>
                                                                            <description>
                            <![CDATA[ The Airbnb chief called for better consumer AI tools to undercut backlash against the technology ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">HAHEHFhQfqxfp3ZTxo5GeU</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/JpyqiiJAFjit2XHncBf4Qm-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 13 Aug 2026 12:25:02 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                                    <dc:creator><![CDATA[ Nicole Kobie ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/8Y8JDDTQ7XDEk49FoAFP2S.png ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Nicole Kobie first started writing for ITPro in 2007. As a freelance journalist covering technology and business, Nicole&#039;s work includes  bylines in New Scientist, Wired, PC Pro and many more. &lt;/p&gt;&lt;p&gt;Nicole the author of a book about the history of technology, The Long History of the Future.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/JpyqiiJAFjit2XHncBf4Qm-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Airbnb CEO Brian Chesky pictured at the company&#039;s annual product event in San Francisco, USA.]]></media:description>                                                            <media:text><![CDATA[Airbnb CEO Brian Chesky pictured at the company&#039;s annual product event in San Francisco, USA.]]></media:text>
                                <media:title type="plain"><![CDATA[Airbnb CEO Brian Chesky pictured at the company&#039;s annual product event in San Francisco, USA.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/JpyqiiJAFjit2XHncBf4Qm-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Want people to actually use AI? Then make it more useful according to Airbnb CEO Brian Chesky. </p><p>Speaking during a recent <a href="https://www.youtube.com/watch?v=YaXvXstjBgk" target="_blank"><u><em>Power Players</em></u></a> podcast appearance, Chesky said people are still using AI as an "interactive search product" but predicted further progress when it comes to interfaces, rather than just typing.</p><p>"I think part of it's a narrative issue that we're not talking about AI correctly," he said. "But part of it is we need to actually be developing more products that just regular people can use and say, 'I love AI because AI allows me to have a doctor on demand and I can't have that. I can't afford that.' And so I think we need more regular things."</p><p>Given Airbnb’s market, Chesky noted that the focus on largely enterprise-related AI innovation could be holding back broader adoption. He noted that 159 out of 175 startups at Y Combinator, where Chesky is a board member, focused on enterprise AI rather than consumer products. </p><p>"Maybe a simple way of saying it is we're getting really, really deep on enterprise, but there's been very little progress on consumer AI," he added. </p><h2 id="ai-backlash">AI backlash</h2><p>Chesky <a href="https://www.businessinsider.com/airbnb-ceo-brian-chesky-ai-backlash-build-products-regular-people-2026-8" target="_blank"><u>said</u></a> that it's in Silicon Valley's interest to make consumer apps that improve people's lives in order to shift increasingly negative opinions about the tech, warning that "regular people in the United States do not like AI." </p><p>This year has seen the start of a mainstream <a href="https://www.itpro.com/technology/artificial-intelligence/ai-fatigue-is-the-backlash-against-ai-already-here"><u>backlash against the technology</u></a>, perhaps inevitable given the hype, but concerns have also been boosted by rising prices and environmental concerns around data centres. </p><p>Survey after survey also suggests many people simply don't like AI. <a href="https://www.itpro.com/technology/artificial-intelligence/your-customers-arent-keen-on-that-customer-service-chatbot-you-introduced-heres-why"><u>Research via YouGov</u></a> showed two-thirds of people weren't confident in the way businesses use generative AI, in particular with customer service. </p><p>A poll by Pew suggested just <a href="https://novaramedia.com/2026/07/07/people-who-use-ai-more-also-dislike-it-most-study-reveals/" target="_blank"><u>16% of Americans</u></a> think AI will prove to be a positive tool for society. </p><p>Chesky's argument is that building actually useful products powered by AI could help to undercut some of that negative sentiment – and he believes that will happen. </p><p>The Airbnb chief predicted that within in the next two or three years there will be a "renaissance around consumer AI that is going to begin to change daily life."</p><h2 id="ai-booster">AI booster</h2><p>Chesky has long been positive about AI. In 2023, he compared the technology's impact to electricity and <a href="https://www.youtube.com/watch?v=ooVzEEoVUlg" target="_blank"><u>said</u></a> it will "change everyone's life." </p><p>In the podcast, he noted there haven’t yet been any major changes to our daily lives on par with the internet or iPhone.</p><p>Chesky also called for moving beyond the chatbot model, saying later that year that it should "augment humanity in a positive way".  </p><p>Airbnb <a href="https://news.airbnb.com/airbnb-has-acquired-gameplanner-ai/" target="_blank"><u>bought GamePlannerAI</u></a> in November 2023, and earlier this year <a href="https://fortune.com/2026/02/17/airbnb-ceo-brian-chesky-says-ai-best-thing-ever-happened-company-warns-other-founders-get-onboard-or-else/?queryly=related_article&utm_source=chatgpt.com"><u>said</u></a> AI was the "best thing that ever happened to Airbnb," in part thanks to a third of customer service tickets now handled by the technology. </p><p>After its last round of results, that <a href="https://finance.yahoo.com/technology/ai/articles/airbnb-reaches-another-milestone-ai-145500025.html" target="_blank"><u>number had jumped to 45%</u></a> – despite those previously mentioned concerns about AI driven customer service.</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Software teams should take a leaf out of manufacturers books when it comes to testing code ]]></title>
                                                                                                <dc:content><![CDATA[ <p>As AI continues accelerating code production, developers should take a leaf out of the manufacturing industry’s book to automate testing processes safely. </p><p>That’s according to Ingo Philipp, VP of product engineering at UiPath. Speaking to <em>ITPro</em>, Philipp suggested that “lights-out” manufacturing-style processes could alleviate strain placed on teams facing a torrent of code. </p><p>Also known as ‘dark factories’, lights-out manufacturing techniques involve fully automated production lines, and are a tried and tested method in the manufacturing industry. </p><p>Japanese engineering firm FANUC has been <a href="https://www.fanucamerica.com/case-studies/high-mix-low-volume-prototype-shop-achieves-lights-out-manufacturing-with-robotic-automation"><u>running these autonomous factories</u></a> for more than two decades, requiring minimal human input except for quality control and overseeing production. </p><p>For developer teams, Philipp noted the same techniques could be applied to software development. UiPath coined the term ‘dark testing factories’ in a recent <a href="https://www.uipath.com/resources/automation-whitepapers/dark-testing-factory-accelerated-software-delivery" target="_blank">whitepaper</a>, noting that this could both speed up and secure software testing. </p><p>“We see that the demand for software testing is just exploding these days. That’s what we see day in, day out from our customers,” he told <em>ITPro</em>. </p><p>“At the same time, we also see that they are struggling with the demand. That means they can’t really keep up with this increased volume, increased velocity of software development,” Philipp added. </p><p>“That means there is a gap essentially between the demand and the supply. So that's the challenge. I think it has always been a challenge.”</p><h2 id="matching-velocity">Matching velocity</h2><p>As Philipp noted, the concept comes amid the growing use of AI in software development. Figures from Stack Overflow’s most recent <a href="https://survey.stackoverflow.co/2025/" target="_blank"><em>Developer Survey</em></a> found 84% of devs have adopted AI, with more than half (51%) using these tools everyday. </p><p>With increased production velocity comes added risks, however. In its 2026 <a href="https://www.faros.ai/blog/ai-acceleration-whiplash-takeaways" target="_blank"><u>AI</u> Engineering report</a>, engineering analytics platform Faros, showed teams now report 54% more bugs per developer compared to pre-AI processes. </p><p>Similar <a href="https://www.itpro.com/software/development/enterprises-are-shipping-so-much-ai-generated-code-they-cant-control-or-secure-it"><u>research from GitLab</u></a> found that the volume of code written using AI is surging, yet 92% of developers reported significant governance challenges. </p><p>With these issues expected to continue, creating an isolated, automated production pipeline in which code can be tested safely is critical, according to Philipp.</p><p>“Think of <a href="https://www.itpro.com/technology/artificial-intelligence/openais-codex-app-is-now-available-on-macos-and-its-free-for-some-chatgpt-users-for-a-limited-time">Codex</a>, think of <a href="https://www.itpro.com/software/development/anthropic-labs-chief-mike-krieger-claims-claude-is-essentially-writing-itself-and-it-validates-a-bold-prediction-by-ceo-dario-amodei">Claude</a>, think of all the Copilots and <a href="https://www.itpro.com/technology/artificial-intelligence/microsoft-get-used-to-working-with-ai-powered-digital-colleagues">Coworks </a>out there,” he said. “They’re enabling our friends in software development to crank out more code faster than ever these days.</p><p>“We see our customers, our partners really struggling to keep up with this increased volume and velocity in software development with the traditional approaches they are using in their software testing.”</p><h2 id="automating-the-pipeline">Automating the pipeline</h2><p>UiPath’s contention is that with ‘dark testing factories’, AI agents can automate aspects of software testing before it has the potential to cause downstream issues. </p><p>In these settings, AI agents would weed out potential bugs while human developers focus more on quality control, security, and governance. Philipp added that testers will eventually “teach the factory to do the work”. </p><p>Automation in software testing is by no means a new trend, he noted. In this instance though, it’s a case of speeding things up in line with acceleration across the broader development lifecycle. </p><p>“It’s autonomous testing on steroids,” he told <em>ITPro</em>. “The goal here is to … do away with all the operational, repetitive, mundane testing work from the humans and elevate them into more ‘quality leaders’.”</p><p>This does raise the question of whether enterprises are simply adding more automation – and complexity – to an already complicated and highly-automated process. </p><p>Philip said, however, that automation in this context will still require robust human oversight. Customers adopting this approach are able to create strict guardrails on what tasks agents can perform, much like other areas in which agents are deployed and a human-in-the-loop approach is still vital. </p><p>One customer, he said, set boundaries around what actions agents can take without human intervention, reverting to testers in certain circumstances. </p><p>“Who is actually the quality owner? Who is the person that needs to provide clarity on that? This is not something new, because they already have it as part of their existing testing process. We just factored it in.”</p><p>Philip told <em>ITPro </em>that while customers are shifting toward this approach, it’s at a moderate pace. Long-term, he envisages a far more AI-fuelled testing setup but only a handful of companies have the capabilities right now to achieve this. </p><p>“I want to be brutally honest here, almost none of our customers are there at the moment,” he said. “None of our customers [have] achieved the holy grail of making testing fully autonomous. I don’t think it is achievable in the short-term and mid-term.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3> ]]></dc:content>
                                                                                                                                            <link>https://www.itpro.com/software/software-teams-should-take-a-leaf-out-of-manufacturers-books-when-it-comes-to-ai-generated-code</link>
                                                                            <description>
                            <![CDATA[ Software testers are struggling to keep up with the pace of code production. UiPath thinks it has the solution ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">Sx4pvHr372zBF5FMeJJfQa</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/ZrKiHubMdJey6e69wPSy7m-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 13 Aug 2026 11:13:18 +0000</pubDate>                                                                                                                                <updated>Thu, 13 Aug 2026 11:14:17 +0000</updated>
                                                                                                                                            <category><![CDATA[Software]]></category>
                                                                                                <author><![CDATA[ ross.kelly@futurenet.com (Ross Kelly) ]]></author>                    <dc:creator><![CDATA[ Ross Kelly ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/Y5vrV2V98Np6jHAGmAtCd3.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ &lt;p&gt;Ross Kelly is ITPro&#039;s News &amp;amp; Analysis Editor, with a keen interest in cyber security, business leadership and emerging technologies.&lt;/p&gt;
&lt;p&gt;He graduated from Edinburgh Napier University in 2016 with a BA (Hons) in Journalism, and joined ITPro in 2022 after four years working in technology conference research.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;In his spare time, Ross enjoys cycling, walking and is an avid reader of history and non-fiction.&lt;/p&gt;
&lt;p&gt;You can contact Ross at ross.kelly@futurenet.com or on &lt;a href=&quot;https://twitter.com/rosswritesetc&quot;&gt;Twitter&lt;/a&gt; and &lt;a href=&quot;https://www.linkedin.com/in/ross-kelly-18a54411a/&quot;&gt;LinkedIn&lt;/a&gt;.&lt;/p&gt; ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/ZrKiHubMdJey6e69wPSy7m-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Female software developer with pink hair and headphones conducting software testing on a desktop computer in an open plan office space.]]></media:description>                                                            <media:text><![CDATA[Female software developer with pink hair and headphones conducting software testing on a desktop computer in an open plan office space.]]></media:text>
                                <media:title type="plain"><![CDATA[Female software developer with pink hair and headphones conducting software testing on a desktop computer in an open plan office space.]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/ZrKiHubMdJey6e69wPSy7m-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>As AI continues accelerating code production, developers should take a leaf out of the manufacturing industry’s book to automate testing processes safely. </p><p>That’s according to Ingo Philipp, VP of product engineering at UiPath. Speaking to <em>ITPro</em>, Philipp suggested that “lights-out” manufacturing-style processes could alleviate strain placed on teams facing a torrent of code. </p><p>Also known as ‘dark factories’, lights-out manufacturing techniques involve fully automated production lines, and are a tried and tested method in the manufacturing industry. </p><p>Japanese engineering firm FANUC has been <a href="https://www.fanucamerica.com/case-studies/high-mix-low-volume-prototype-shop-achieves-lights-out-manufacturing-with-robotic-automation"><u>running these autonomous factories</u></a> for more than two decades, requiring minimal human input except for quality control and overseeing production. </p><p>For developer teams, Philipp noted the same techniques could be applied to software development. UiPath coined the term ‘dark testing factories’ in a recent <a href="https://www.uipath.com/resources/automation-whitepapers/dark-testing-factory-accelerated-software-delivery" target="_blank">whitepaper</a>, noting that this could both speed up and secure software testing. </p><p>“We see that the demand for software testing is just exploding these days. That’s what we see day in, day out from our customers,” he told <em>ITPro</em>. </p><p>“At the same time, we also see that they are struggling with the demand. That means they can’t really keep up with this increased volume, increased velocity of software development,” Philipp added. </p><p>“That means there is a gap essentially between the demand and the supply. So that's the challenge. I think it has always been a challenge.”</p><h2 id="matching-velocity">Matching velocity</h2><p>As Philipp noted, the concept comes amid the growing use of AI in software development. Figures from Stack Overflow’s most recent <a href="https://survey.stackoverflow.co/2025/" target="_blank"><em>Developer Survey</em></a> found 84% of devs have adopted AI, with more than half (51%) using these tools everyday. </p><p>With increased production velocity comes added risks, however. In its 2026 <a href="https://www.faros.ai/blog/ai-acceleration-whiplash-takeaways" target="_blank"><u>AI</u> Engineering report</a>, engineering analytics platform Faros, showed teams now report 54% more bugs per developer compared to pre-AI processes. </p><p>Similar <a href="https://www.itpro.com/software/development/enterprises-are-shipping-so-much-ai-generated-code-they-cant-control-or-secure-it"><u>research from GitLab</u></a> found that the volume of code written using AI is surging, yet 92% of developers reported significant governance challenges. </p><p>With these issues expected to continue, creating an isolated, automated production pipeline in which code can be tested safely is critical, according to Philipp.</p><p>“Think of <a href="https://www.itpro.com/technology/artificial-intelligence/openais-codex-app-is-now-available-on-macos-and-its-free-for-some-chatgpt-users-for-a-limited-time">Codex</a>, think of <a href="https://www.itpro.com/software/development/anthropic-labs-chief-mike-krieger-claims-claude-is-essentially-writing-itself-and-it-validates-a-bold-prediction-by-ceo-dario-amodei">Claude</a>, think of all the Copilots and <a href="https://www.itpro.com/technology/artificial-intelligence/microsoft-get-used-to-working-with-ai-powered-digital-colleagues">Coworks </a>out there,” he said. “They’re enabling our friends in software development to crank out more code faster than ever these days.</p><p>“We see our customers, our partners really struggling to keep up with this increased volume and velocity in software development with the traditional approaches they are using in their software testing.”</p><h2 id="automating-the-pipeline">Automating the pipeline</h2><p>UiPath’s contention is that with ‘dark testing factories’, AI agents can automate aspects of software testing before it has the potential to cause downstream issues. </p><p>In these settings, AI agents would weed out potential bugs while human developers focus more on quality control, security, and governance. Philipp added that testers will eventually “teach the factory to do the work”. </p><p>Automation in software testing is by no means a new trend, he noted. In this instance though, it’s a case of speeding things up in line with acceleration across the broader development lifecycle. </p><p>“It’s autonomous testing on steroids,” he told <em>ITPro</em>. “The goal here is to … do away with all the operational, repetitive, mundane testing work from the humans and elevate them into more ‘quality leaders’.”</p><p>This does raise the question of whether enterprises are simply adding more automation – and complexity – to an already complicated and highly-automated process. </p><p>Philip said, however, that automation in this context will still require robust human oversight. Customers adopting this approach are able to create strict guardrails on what tasks agents can perform, much like other areas in which agents are deployed and a human-in-the-loop approach is still vital. </p><p>One customer, he said, set boundaries around what actions agents can take without human intervention, reverting to testers in certain circumstances. </p><p>“Who is actually the quality owner? Who is the person that needs to provide clarity on that? This is not something new, because they already have it as part of their existing testing process. We just factored it in.”</p><p>Philip told <em>ITPro </em>that while customers are shifting toward this approach, it’s at a moderate pace. Long-term, he envisages a far more AI-fuelled testing setup but only a handful of companies have the capabilities right now to achieve this. </p><p>“I want to be brutally honest here, almost none of our customers are there at the moment,” he said. “None of our customers [have] achieved the holy grail of making testing fully autonomous. I don’t think it is achievable in the short-term and mid-term.”</p><h3 class="article-body__section" id="section-follow-us-on-social-media"><span>FOLLOW US ON SOCIAL MEDIA</span></h3>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
            </channel>
</rss>