Instagram's AI Chatbot Gave Away a Bunch of Accounts to Hackers
https://www.cnet.com/tech/services-and-software/hackers-asked-meta-ai-customer-support-for-account-access-the-ai-said-okay/
Meta has since fixed the exploit, but it's yet another example of AI doing it worse than humans.
https://www.cnet.com/tech/services-and-software/hackers-asked-meta-ai-customer-support-for-account-access-the-ai-said-okay/
Meta has since fixed the exploit, but it's yet another example of AI doing it worse than humans.
State of Play: Wolverine Trailer Unveils Game's Story, Villains and Combat
https://www.cnet.com/tech/gaming/state-of-play-wolverine-gameplay-trailer/
Wolverine is going to be a lot of bloody fun.
https://www.cnet.com/tech/gaming/state-of-play-wolverine-gameplay-trailer/
Wolverine is going to be a lot of bloody fun.
Trump's New AI Executive Order Has No Teeth and No Requirements
https://www.cnet.com/tech/services-and-software/trump-ai-executive-order-has-no-requirements/
The order, intended to review artificial intelligence models that could pose risks to the US, is strictly voluntary.
https://www.cnet.com/tech/services-and-software/trump-ai-executive-order-has-no-requirements/
The order, intended to review artificial intelligence models that could pose risks to the US, is strictly voluntary.
God of War: Laufey Brings a New Hero to PlayStation's Flagship Series
https://www.cnet.com/tech/gaming/state-of-play-2026-god-of-war-laufey-gameplay/
Faye is having her own adventure without Kratos.
https://www.cnet.com/tech/gaming/state-of-play-2026-god-of-war-laufey-gameplay/
Faye is having her own adventure without Kratos.
Today's NYT Mini Crossword Answers for Wednesday, June 3
https://www.cnet.com/tech/gaming/todays-nyt-mini-crossword-answers-for-wednesday-june-3/
Here are the answers for The New York Times Mini Crossword for June 3.
https://www.cnet.com/tech/gaming/todays-nyt-mini-crossword-answers-for-wednesday-june-3/
Here are the answers for The New York Times Mini Crossword for June 3.
Join Us on a Fast Tour of the Asus ROG 20th Anniversary Event at Computex 2026 video
https://www.cnet.com/videos/asus-edition-20-launch-tour/
Asus didn't hold back at Computex 2026, unloading a range of ROG 20th Anniversary graphics cards, keyboards and more. We ran through the packed reveal event to find the coolest new products.
https://www.cnet.com/videos/asus-edition-20-launch-tour/
Asus didn't hold back at Computex 2026, unloading a range of ROG 20th Anniversary graphics cards, keyboards and more. We ran through the packed reveal event to find the coolest new products.
With Perplexity's Push for Hybrid AI, Your Laptop Could Function as a Data Center
https://www.cnet.com/tech/services-and-software/perplexity-wants-to-move-more-ai-work-from-the-cloud-to-your-computer/
Perplexity is shifting how some sensitive AI data is stored, balancing processing between local silicon and cloud servers.
https://www.cnet.com/tech/services-and-software/perplexity-wants-to-move-more-ai-work-from-the-cloud-to-your-computer/
Perplexity is shifting how some sensitive AI data is stored, balancing processing between local silicon and cloud servers.
This Apple TV Horror Comedy Is Fun, Frightful and One of the Best Shows of the Year
https://www.cnet.com/culture/entertainment/widows-bay-apple-tv-horror-comedy/
Commentary: What wicked smart genre mashup blends the sensibilities of Stephen King, Parks and Recreation and Jaws? Widow's Bay is the answer, and now's the perfect time to catch up.
https://www.cnet.com/culture/entertainment/widows-bay-apple-tv-horror-comedy/
Commentary: What wicked smart genre mashup blends the sensibilities of Stephen King, Parks and Recreation and Jaws? Widow's Bay is the answer, and now's the perfect time to catch up.
Spring Cleaning Your Laptop: Tidy Up Your Computer Inside and Out
https://www.cnet.com/tech/computing/spring-cleaning-your-laptop-tidy-up-your-computer-inside-and-out/
It's time to clean up your computer's chassis, keyboard and all of the bloat cluttering the device.
https://www.cnet.com/tech/computing/spring-cleaning-your-laptop-tidy-up-your-computer-inside-and-out/
It's time to clean up your computer's chassis, keyboard and all of the bloat cluttering the device.
Is Apple Finally Ready to Talk Future Wearables at WWDC? video
https://www.cnet.com/videos/is-apple-finally-ready-to-talk-future-wearables-at-wwdc/
Glasses, pendants, AirPods, watches -- what else? Apple may not reveal everything at WWDC, but it should start discussing the AI changes that are coming.
https://www.cnet.com/videos/is-apple-finally-ready-to-talk-future-wearables-at-wwdc/
Glasses, pendants, AirPods, watches -- what else? Apple may not reveal everything at WWDC, but it should start discussing the AI changes that are coming.
Polaroid's Go Generation 3 Instant Camera Has Arrived for Your Analog Summer
https://www.cnet.com/tech/computing/polaroid-go-generation-3-instant-camera/
As younger generations spend less time on screens, Polaroid's Go Generation 3 lets you capture moments in real time, offline.
https://www.cnet.com/tech/computing/polaroid-go-generation-3-instant-camera/
As younger generations spend less time on screens, Polaroid's Go Generation 3 lets you capture moments in real time, offline.
Does Your TV Live Up to the Hype? Vote in Our 2026 People's Picks
https://www.cnet.com/tech/home-entertainment/peoples-picks-tvs-2026/
We want to know what you really think about your TV.
https://www.cnet.com/tech/home-entertainment/peoples-picks-tvs-2026/
We want to know what you really think about your TV.
Cisco Webex Meetings Cross-Site Scripting Vulnerability
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-jw3NeQzS?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Webex%20Meetings%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1
A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. Cisco has addressed this vulnerability in the Webex Meetings service, and no customer action is needed.
This vulnerability existed because of insufficient validation of user input. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by persuading a user to follow a malicious link. A successful exploit could have allowed the attacker to execute arbitrary script code in the browser of the targeted user or access sensitive, browser-based information.
As mentioned, Cisco has addressed this vulnerability in the Webex Meetings service, and no customer action is necessary to update on-premises software or devices. There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-jw3NeQzS
Security Impact Rating: Medium
CVE: CVE-2026-20233
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-jw3NeQzS?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Webex%20Meetings%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1
A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. Cisco has addressed this vulnerability in the Webex Meetings service, and no customer action is needed.
This vulnerability existed because of insufficient validation of user input. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by persuading a user to follow a malicious link. A successful exploit could have allowed the attacker to execute arbitrary script code in the browser of the targeted user or access sensitive, browser-based information.
As mentioned, Cisco has addressed this vulnerability in the Webex Meetings service, and no customer action is necessary to update on-premises software or devices. There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-jw3NeQzS
Security Impact Rating: Medium
CVE: CVE-2026-20233
The Future of Apple Watch AI Isn't a Chatbot. It's a Coach
https://www.cnet.com/tech/mobile/wwdc-watchos-27-apple-watch-ai-health-coach/
Commentary: With Siri expected to take the spotlight, where does WatchOS 27 fit in? Here's everything we're expecting, hoping for and firmly opposed to.
https://www.cnet.com/tech/mobile/wwdc-watchos-27-apple-watch-ai-health-coach/
Commentary: With Siri expected to take the spotlight, where does WatchOS 27 fit in? Here's everything we're expecting, hoping for and firmly opposed to.
Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unified%20Communications%20Manager%20Server-Side%20Request%20Forgery%20Vulnerability%26vs_k=1
A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device.
This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to write files to the underlying operating system that could be used later to elevate to root.
Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.
Note: To exploit this vulnerability, the WebDialer service must be enabled. WebDialer is disabled by default.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW
Security Impact Rating: Critical
CVE: CVE-2026-20230
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unified%20Communications%20Manager%20Server-Side%20Request%20Forgery%20Vulnerability%26vs_k=1
A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device.
This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to write files to the underlying operating system that could be used later to elevate to root.
Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.
Note: To exploit this vulnerability, the WebDialer service must be enabled. WebDialer is disabled by default.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW
Security Impact Rating: Critical
CVE: CVE-2026-20230
Apple Needs a Next-Gen Siri at WWDC to Power Its Future Devices
https://www.cnet.com/tech/services-and-software/apple-wwdc-2026-siri-update-gemini-ai-wearables/
Commentary: Glasses, camera-enabled AirPods, a pendant and perhaps major Apple Watch updates all need a Gemini-powered AI revamp that isn't here yet. WWDC should be where that journey begins.
https://www.cnet.com/tech/services-and-software/apple-wwdc-2026-siri-update-gemini-ai-wearables/
Commentary: Glasses, camera-enabled AirPods, a pendant and perhaps major Apple Watch updates all need a Gemini-powered AI revamp that isn't here yet. WWDC should be where that journey begins.
Cisco Finesse Remote File Inclusion Vulnerability
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-finesse-rfi-gwpkdc89?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Finesse%20Remote%20File%20Inclusion%20Vulnerability%26vs_k=1
A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations into an active user session on an affected device, possibly leading to browser-based attacks.
This vulnerability is due to insufficient validation of user-supplied input for HTTP requests that are sent to an affected device. An attacker who has knowledge of the address of the affected device could exploit this vulnerability by persuading a user to click a crafted link that contains the affected device address. A successful exploit could allow the attacker to conduct browser-based attacks and execute arbitrary script code in the context of the affected interface or access sensitive information on the affected device.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-finesse-rfi-gwpkdc89
Security Impact Rating: Medium
CVE: CVE-2026-20175
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-finesse-rfi-gwpkdc89?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Finesse%20Remote%20File%20Inclusion%20Vulnerability%26vs_k=1
A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations into an active user session on an affected device, possibly leading to browser-based attacks.
This vulnerability is due to insufficient validation of user-supplied input for HTTP requests that are sent to an affected device. An attacker who has knowledge of the address of the affected device could exploit this vulnerability by persuading a user to click a crafted link that contains the affected device address. A successful exploit could allow the attacker to conduct browser-based attacks and execute arbitrary script code in the context of the affected interface or access sensitive information on the affected device.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-finesse-rfi-gwpkdc89
Security Impact Rating: Medium
CVE: CVE-2026-20175
Google Is Testing an Option for Websites to Opt Out of AI Search
https://www.cnet.com/tech/services-and-software/google-now-testing-option-website-owners-opt-out-ai/
The search giant also plans to give publishers more information about the ways their content shows up in AI Overviews and AI Mode.
https://www.cnet.com/tech/services-and-software/google-now-testing-option-website-owners-opt-out-ai/
The search giant also plans to give publishers more information about the ways their content shows up in AI Overviews and AI Mode.
Xfinity Is Giving 2026 World Cup Fans an Interactive, Bilingual Experience
https://www.cnet.com/tech/services-and-software/xfinity-is-giving-2026-world-cup-fans-an-interactive-experience/
You can tap into several new features while watching the tournament.
https://www.cnet.com/tech/services-and-software/xfinity-is-giving-2026-world-cup-fans-an-interactive-experience/
You can tap into several new features while watching the tournament.
Hisense's Colorful RGB TV, the UR8, Hits Shelves From $1,300
https://www.cnet.com/tech/home-entertainment/hisense-shrinks-30000-tech-into-smaller-tvs-for-2026/
Hisense has released the RGB Mini-LED UR8, which promises brighter colors than before.
https://www.cnet.com/tech/home-entertainment/hisense-shrinks-30000-tech-into-smaller-tvs-for-2026/
Hisense has released the RGB Mini-LED UR8, which promises brighter colors than before.
Cisco Live US 2026 Day 2: From Agentic Vision to Enterprise Reality
https://newsroom.cisco.com/c/r/newsroom/en/us/a/y2026/m06/cisco-live-us-2026-day-2-from-agentic-vision-to-enterprise-reality.html?source=rss
https://newsroom.cisco.com/c/r/newsroom/en/us/a/y2026/m06/cisco-live-us-2026-day-2-from-agentic-vision-to-enterprise-reality.html?source=rss