Epic Games has extended Fortnite's Blitz Royale play period by four more weeks, making fans wonder if the studio plans on making the mode a permanent feature.
Blitz Royale, a fast-paced, 32-player version of regular Battle Royale matches that only last for five minutes, was added to the game last month. But what was sure to be a limited-time game mode could potentially stick around for good.
In a new social media post, Epic Games announced that "four more weeks of updates" are on the way, with the first beginning on July 15.
The developer also teased that new abilities, locations, like Mega City, and surprise collaborations will be dropping over the next month.
It’s all about that Blitz - four more weeks of updates comin’ your way!New loot drops, new map updates, new surprise collabs! pic.twitter.com/GqNIDkxZtpJuly 9, 2025
With Epic Games extending the Blitz Royale, players are curious to see if this means the game mode will become a permanent fixture of the popular online shooter.
"I love Blitz, it should definitely remain permanent. Wonder if it’ll come to FN as a permanent mode for next season," one user said on the game's subreddit.
It seems that the developer is already considering it, because earlier this month, it released a poll on X / Twitter asking fans what changes they'd like to see besides "make Blitz permanent".
The options include new points of interest, more collaboration items, new Boons and Powers, and "more Megalo Don plz", suggesting that improvements to the game mode are already in the works.
Epic has yet to detail the content of the next month of Blitz Royale, but those who have missed out will be able to jump in in the coming days.
You might also like...Lucid now has an official Guinness World Records trophy to add to its cabinet, as its Air Grand Touring model just managed to complete just under 749 miles on a single charge while traveling on public roads.
The record-breaking journey started in St. Moritz, Switzerland and finished in Munich, Germany, with the trip taking in winding mountain passes, fast highway sections and narrow secondary roads in a true display of real-world range.
Lucid is already considered one of the leading figures in electric vehicle efficiency, with the Air Grand Touring boasting an official WLTP (Worldwide Harmonized Light Vehicle Test Procedure) range of 960km (596 miles), yet it still manages to deliver some 831hp and a top speed of almost 170mph.
London-based entrepreneur, hyper-miling legend and owner of the world's strongest bladder, Umit Sabanci, was behind the wheel for this attempt, having previously set a Guinness World Record for the most countries visited on a single charge in a production battery electric vehicle, crossing nine countries back in 2024.
Lucid set another @GWR title for the history books.Together with @Umit_Sabanci, we have officially set a new Guinness World Records title for the longest journey by an electric car on a single charge. The Lucid Air Grand Touring covered an astonishing 1,205 kilometers (~ 749… pic.twitter.com/2LeayLnjgcJuly 8, 2025
Lucid claims that Sabanci’s endeavor beat the previous record by around 100 miles and added a mind-boggling 237 miles to the vehicle’s official WLTP range.
This was made possible by some very sensible driving, but also by some clever route selection, with the journey effectively beginning at the top of The Alps and ending a good 4,300ft lower in Munich.
Heavy use of regenerative braking would have helped keep the monster 112kWh batteries brimmed. Although Lucid is keen to point out that its charging technology can add an impressive 248 miles of range in just 16 minutes from the appropriate fast charging outlet, for those not keen on traveling almost 750 miles in one hit.
Lucid leads the way in EV efficiency(Image credit: Lucid)The US electric vehicle maker clearly used some clever route-planning to achieve this record-breaking feat, but nothing should be taken away from the company’s dedication to EV performance and efficiency.
Lucid is one of the few to engineer and produce most of its powertrain components, with a laser focus on creating an aerodynamic vehicle that is as light and efficient as possible.
The Air Pure, for example, was one of the first EVs to boast an enviable energy efficiency rating of 5 miles per kWh – you’ll be lucky if you get over 3 miles per kWh in most modern electric cars.
However, this technology is currently reserved for the wealthiest in society, with prices of the Air ranging from $69,900 to over $169,000 in the US.
The company has stated that it plans to produce a more affordable version of its $79,900 (around £59,000 / AU$121,000) Gravity SUV in the near future, which will be based on a new midsize platform and will deliver the same sort of range as competitors, but with a much smaller battery.
This will allow it to compete with the likes of Tesla, offering the Lucid’s renowned efficiencies at a fraction of the current line-up’s price.
You might also likeItaly's infamous anti-piracy system, Piracy Shield, may be breaching European law.
On June 13, 2025, the EU Commission sent a letter to Italy's Minister of Foreign Affairs, Antonio Tajani, warning that the Piracy Shield may not be compliant with Digital Services Act (DSA) rules. The system, lawmakers said, may even undermine citizens' fundamental rights to freedom of expression and information as ruled by the EU Charter of Fundamental Rights.
Italy's Piracy Shield allows authorities to not only require ISPs, but also VPN and DNS providers, to block suspected pirated content within 30 minutes. A feature praised by rightholders in the country, which also led to significant overblocking incidents and sparked strong criticism across the industry.
What's wrong with Italy's Piracy Shield?Italy first enforced its Piracy Shield system in February 2024 to prevent citizens from accessing live sports events through pirate sites, especially football matches. To do so, rightsholders can demand that piracy-related domain names and IP addresses suspected of copyright infringement be blocked within 30 minutes.
The Italian anti-piracy system has certainly proven effective so far. Yet, tech companies have been raising concerns with EU authorities about multiple overblocking incidents that have even affected, among others, legitimate Google domains.
Specifically, the Computer & Communications Industry Association (CCIA) warned against a lack of transparency over the blocking and a lack of support for those sites wrongfully blocked.
These concerns have sparked an EU investigation into the technical details of Italy's anti-piracy system, which has highlighted a few notable issues.
Lawmakers pointed out how the DSA "does not provide a legal basis for the issuing of orders by national administrative or judicial authorities, nor does it regulate the enforcement of such orders," inviting Italian authorities to clarify how these procedures meet DSA requirements in the final text.
(Image credit: Sitade/via Getty Images)Crucially, the letter also emphasises that "the effective tackling of illegal content must also take into account the fundamental right to freedom of expression and information under the Charter of Fundamental Rights of the EU."
This point is likely linked to Italian communication regulator AGCOM's decision to require DNS and virtual private network (VPN) providers to actively block alleged illegal streams upon request.
Privacy experts and technologists have previously pointed out that targeting VPN providers could have "sweeping consequences" for people's internet security and privacy. A VPN provider (AirVPN) has, in fact, already stopped accepting new Italian subscribers.
"A model of what not to do"While we need to wait to see whether the EU Commission's comments will change how Italy deals with illegal streaming in the future, that's certainly not an isolated case.
Other European countries have been increasingly using such infrastructure-level blocking against pirated or other harmful content, sparking concerns among the industry.
France, for example, has recently taken a strong stance against VPN providers. After a successful legal action against DNS services in 2024, on May 15, 2025, the Paris Judicial Court backed Canal+'s request and ordered five of TechRadar's best VPN services – NordVPN, ExpressVPN, Surfshark, Proton VPN, and CyberGhost – to block access to 203 domains linked to illegal sports streaming sites.
Spanish sports streaming giants, LaLiga and Telefónica, have also been increasingly issuing IP blocking orders since February 2025. Again, this tactic has led to many overblocking incidents, with Google Fonts, institutional sites, and payment platforms among the legitimate domains mistakenly blocked so far. This is why US-based DNS giant Cloudflare is fighting in court to fix these issues ahead of the next LaLiga season.
Nonetheless, according to the Executive Director of the i2Coalition, Christian Dawson, Italy remains the worst example out there.
Dawson told TechRadar: "The number of problems that we are seeing with Italy's Piracy Shield is remarkable, and we want the rest of Europe to see that as a cautionary tale. We do worry, though, that a lot of other member states are looking to Italy's Piracy Shield as a model, and we think it's a model of exactly what not to do."
You might also likeA new investigation has revealed 245 browser extensions, installed on almost a million devices, have been leading a double life, as besides the operations they were designed for, they were also silently disabling key security protections in the browsers to enable paid web scraping operations.
This is according to security researcher John Tuckner from Security Annex, who found numerous extensions doing different things, from managing bookmarks, to boosting speaker volume. All of them embed a JavaScript library called MellowTel-js, which connects to an external AWS server and collects data about the user’s location, bandwidth, and browser status.
It also injects hidden iframes into the web pages users are visiting, and then loads other websites, chosen by MellowTel’s infrastructure. Furthermore, it strips web security headers, bypasses bot detection, and ultimately - shares bandwidth for profit.
Leveraging unused bandwidthThe JavaScript is tied to a company named Olostep, which promotes itself as a high-performance web scraping API that bypasses bot detection and can send out up to 100,000 parallel requests.
When paying clients submit a target website, Olostep uses the devices running affected extensions to scrape the site, effectively turning the browsers into distributed scraping bots, without the end users’ knowledge, or consent.
Ars Technica found MellowTel’s founder said the library was designed to share user bandwidth without stuffing affiliate links, unrelated ads, or collecting personal data.
“The primary reason why companies are paying for the traffic is to access publicly available data from websites in a reliable and cost-effective way,” he was cited saying, adding that extension developers receive 55%of the revenue, while the rest went to MellowTel.
Despite claims of a privacy-friendly way to monetize unused bandwidth, critics argue it exposes users to serious privacy and security risks, especially in enterprise environments. In its writeup, CyberInsider says the scale and architecture of the system makes it “ripe for abuse” by threat actors.
“The use of real browser sessions, potentially behind corporate VPNs or inside private networks, introduces profound risks. These include the potential for unauthorized internal resource access, impersonation of legitimate traffic, and degradation of browser security due to the removal of enforced headers.”
Some extensions have been removed or deactivated after being flagged for malware, while others cleaned up the controversial code in recent updates. Many remain active, and users are advised to review the full list of extensions found here.
You might also likeByeon Woo-seok is set to take on the lead role of Jinwoo in Netflix’s freshly announced live-action adaptation of Solo Leveling. While we’ve got no further details on the project as of yet, the anime’s success means the K-drama will likely enter the ranks of the best Netflix shows of all time.
If you’ve signed up for Crunchyroll during the Prime Day deals in the US, you’ll know Solo Leveling isn’t actually a Netflix IP. The anime streaming service already hosts the first two seasons of the original series alongside -ReAwakening, the 2024 movie that offers a recap of the first season along with a sneak peek of the first two episodes of season 2.
Solo Leveling will be a live-action K-drama, but fans of the anime – like me – might be worried about the incredibly vague third season… and there’s good reason to be.
Netflix’s live-action Solo Leveling could delay season 3 of the anime Jinoo in Solo Leveling. (Image credit: Crunchyroll)After Solo Leveling season 2 wrapped up in March, there’s been absolutely no word on whether season 3 will exist, let alone when we’ll be able to see it. From a storyline perspective, we know it should return, with Jinwoo last seen deciding to stay on Jeju Island to fight off the remaining ants that terrorised the area. We know from the manga that the Jeju Island Arc is a springboard for more action, so technically there’s more than enough story to tell.
So why hasn’t Crunchyroll announced anything? The answer is unknown, but if there’s crossover between the webtoon, anime and live-action teams, the Netflix adaptation could now be a roadblock for season 3 progress. We don’t have an expected release date for either, but at least there’s confirmation that the upcoming K-drama exists.
If industry guesses are correct, the earliest we could see Solo Leveling season 3 would be in late 2026, leaning into 2027 worst case. Of course, this all hinges on whether it’s actually announced, with animation producer Atsushi Kaneko alluding to potential planning for it in a behind-the-scenes YouTube video for Crunchyroll. Still, no official news is no news at all.
Annoyingly, we’ve got a bunch of questions that the anime desperately needs to answer. What are the mysterious creatures that arrived at the end of season 2? What does Jinwoo’s dad want? Will Beru overpower him or turn against him? Will we ever get answers? Hopefully. But we’re likely to relive Jinwoo’s season 1 story all over again in live-action first.
You might also likeHear that, Marvel fans? It's the unexpected sound of filming wrapping on Daredevil: Born Again season 2.
Taking to Instagram today (July 10), showrunner Dario Scardapane and stunt co-ordinator Philip Silvera confirmed principal photography had concluded on the show's second season. That means it took just four months to shoot the Disney+ series' next entry.
A post shared by Dario Scardapane (@dariojscardapane)
A photo posted by on
Of course, there's plenty more work to be done on Daredevil: Born Again's sophomore chapter before it debuts on one of the world's best streaming services. Nevertheless, it's a remarkably quick turnaround for this season's round of filming and indicates it'll be ready to air sometime in early 2026.
We already know that Daredevil's standalone show will launch on Disney+ in the first few months of next year, too. Posting on Instagram in mid-April, Scardapane confirmed it'll be with us in March 2026. Let's hope that's still the case and it doesn't suffer the same fate as other Marvel projects, such as Avengers: Doomsday, whose release date was recently pushed back seven months to December 2026.
What do we know so far about Daredevil: Born Again season 2?Krysten Ritter will reprise her role as Jessica Jones from Netflix's Marvel TV Universe in Born Again season 2 (Image credit: Marvel / Netflix)Aside from its seemingly concrete release window, we've learned other tidbits about one of the best Disney+ shows' second installment since Born Again season 1 ended.
The headline news is that season 2 will feature the return of Krysten Ritter's Jessica Jones. Like Charlie Cox's Matt Murdock/Daredevil, Ritter's fan-favorite portrayal of the heavy drinking, hard-hitting private investigator was a fixture of the Marvel TV shows that originally aired on Netflix. The pair even shared screen time in The Defenders, a street-level team-up miniseries whose biggest highlight was the natural rapport between Cox and Ritter. Unsurprisingly, then, fans can't wait to see the duo reunite and fire more humor-laced barbs at each other in the Marvel Phase 6 project.
That casting news aside, we know season 2 of the Marvel Cinematic Universe (MCU) TV Original will comprise eight episodes and should pick up immediately after last season's finale. Refresh your memory on that front by reading my Daredevil: Born Again season 1 ending explained piece and then check out my ultimate guide on Daredevil: Born Again season 2 for more on what to expect from cast and plot perspectives.
You might also likeStalker 2: Heart of Chornobyl is officially coming to PlayStation 5 and PlayStation 5 Pro later this year.
Developer GSC World made the announcement in the most low-key way possible on X / Twitter, posting, "OK. One like and we announce S.T.A.L.K.E.R. 2 for PlayStation 5."
The post, which garnered 28,000 likes, was followed by another, more official statement that confirmed that the game will finally be coming to PS5 and PS5 Pro "in late 2025". You can wishlist the game now.
GSC World also said in its announcement video that the PS5 version "will fully utilize DualSense controller features, including haptic feedback and adaptive triggers for deeper player immersion."
For the PS5 Pro version, "technical enhancements" are also in development, but the studio didn't describe what those could be.
If we're to guess, the game could offer the hardware's PlayStation Spectral Super Resolution (PSSR) AI-upscaling technology, which would make significant improvements to graphics.
Stalker 2 first launched on Xbox Series X, Xbox Series S, Xbox Game Pass, and PC last year.
In TechRadar Gaming's four-star review, Echo Apsey called Stalker 2: Heart of Chornobyl "one of the most haunting and atmospheric survival games of this generation".
"Small bugs and AI issues here and there mean that it is a little rough around the edges but the game’s world, atmosphere, and combat are breathtaking," Apsey wrote. "Stalker 2 holds nothing back and forces you to play by its rules and is all the more refreshing because of it."
You might also like...Microsoft has declared that artificial intelligence is now saving the company money across sales, customer services and software engineering.
Reports have claimed that in a recent company meeting, Microsoft's Chief Commercial Officer Judson Althoff revealed the company has saved over $500 million in its call centers alone, thanks to the implementation of artificial intelligence, while simultaneously improving employee and customer satisfaction.
AI's direct effects on the workforce remain uncertain, but Microsoft has laid off thousands of workers recently since overhiring during the pandemic, and it seems AI-induced efficiency gains have only worsened the effects.
Microsoft is making huge savings thanks to AIArtificial intelligence is now handling Microsoft interactions with smaller customers, generating tens of millions in revenue with reduced human input.
Apart from using AI in customer-facing roles, Microsoft has also rolled out generative AI coding tools across new product development and existing updates. Around one-third of Microsoft code is now AI-generated, putting the company on par with its fellow tech giant, Google.
With Microsoft due to release its latest quarterly report soon, we're yet to see how financial performance has been affected by its use of AI.
However, last quarter the company posted a 13% increase in revenue, with CEO Satya Nadella commenting, "From AI infra and platforms to apps, we are innovating across the stack to deliver for our customers."
Microsoft has been in a battle for pole position as the world's most valuable company in recent months. Though often overtaken by Nvidia, it remains several billion dollars ahead of Apple.
More broadly, Microsoft isn't the only company making productivity gains. Salesforce, a company that has also been going in hard on generative AI and agentic AI, now reports that around 30% of its internal work is handled by artificial intelligence.
Via Bloomberg
You might also likeGoogle just added a new powerful tool to its Gemini Veo 3 image generation feature that allows users to turn still photos into videos, and it's pretty incredible.
Available for Google AI Ultra and Pro subscribers, you'll now be able to transform static photos into dynamic videos directly from within the Gemini app on the web. Google says the features will roll out to iOS and Android throughout the rest of the week.
Google is yet to confirm when, or if, Veo 3 will become available to free users, although you can get three months of Veo 3 for free with a Google Cloud trial.
The new photo-to-video feature will create an eight-second 720p video clip and can even add audio to make the video even more realistic.
Google's Veo 3 is the best video generation tool on the market, outshining even OpenAI's Sora at the time of writing. Now, with this added functionality that allows users to turn their photo memories into videos, Veo 3 is better than ever before.
How to bring your photos to life with Veo 3You can see some examples of Veo 3's new feature above, and trying it out is pretty straightforward. Just follow these steps:
This new feature is so easy to use, and the results are pretty impressive. Considering that less than a year ago, we couldn't even generate videos using AI, the power of Gemini and Veo 3 is staggering.
Veo 3's ability to sync audio to moving images and create videos of your photos from a prompt makes this a welcome addition to the world of AI video generation.
You might also likeAlongside an increasingly competitive EV market, China is also seemingly embroiled in a power struggle, as a number of the country’s most popular manufacturers are turning towards performance stats as the latest way to convince buyers to part with their cash. And now Zeekr is rumored to be launching a new model that will set a new high bar for EV performance.
Zeeker’s 001 FR model already sits towards the top of the high performance tree, boasting some 1,300hp and the ability to rocket from a standstill to 62mph in just over two seconds. All of this for 769,000 yuan — or around $107,000 / £79,000 / AU$164,000.
The quad motor drivetrain and 100kWh battery pair up to produce scintillating performance statistics, but a number of high-profile bloggers have taken to Chinese social media to declare that an updated version is already on the way and that it is slated to develop in excess of 2,000hp.
Car News China reported that several high profile bloggers and influencers took to Weibo to declare that Zeekr is preparing an updated version, presumably to take back its high performance crown from Xiaomi, which recently introduced the 1,500hp SU7 Ultra – a vehicle that toppled Nurburgring lap times set by the world’s most famous automakers.
The Chinese automotive news outlet goes on to state that Zeekr’s new model is expected to feature revised exterior styling, numerous weight-saving measures and uprated suspension and brakes to handle such power.
Despite only being four years old, Zeekr already offers a line-up of seven vehicles in China (with around four or five in Asian and European markets), including a 001 model to suit most budgets and tastes.
These range from a luxurious long-distance cruiser to the recently-announced 001 Sport model that will be the first taste of its performance for customers outside of its domestic market.
Limited to just 250 units, the 001 Sport will accelerate from 0-62mph in under four seconds, offer bespoke sports styling and deliver 544hp, as well as 363 miles of range. It is already available to order in a number of European countries.
China is coming for the performance crown(Image credit: Xiaomi)It is telling that the $2.6million Rimac Nevera R is among the few electric hypercars that can better Zeeker’s proposed 2,000hp monster, as Chinese automotive manufacturers are repeatedly ripping up the rulebook.
Need more examples? Well, tech giant Xiaomi’s recently-launched SU7 Ultra managed to translate some 1,550hp to the road and still cost just $73,000 – a far cry from the $231,995 Porsche Taycan Turbo GT, which is arguably its only current competitor.
Both ends of the EV spectrum are being bludgeoned by Chinese competition at the moment, whether that’s the cheaper everyday stuff that is currently challenging Tesla’s dominance or the high-performance market that was once the reserve of Porsche, BMW, Audi and more.
Granted, those 'legacy' automakers still arguably produce the better driver's cars, but the gap is rapidly narrowing. Zeekr's recently-launched European 7X is a great example of this.
But even Zeekr made the mistake of boldly proclaiming that “competitors wouldn’t be able to build this in five years” after launching the original 001 FR, only for Xiaomi to respond and better it in under two.
The pace of progress in the Chinese EV market is staggering and, despite the recent efforts made by most western automakers, it’s difficult not to think they are still drastically lagging behind.
you might also likeApple TV+ has released the first trailer for The Morning Show season 4, which confirms that the hit workplace drama will return to the streaming service on September 17. While details of the new TV show are largely kept under wraps, we know there’s been a time jump since the season 3 ending, picking up after the UBA-NBN merger was finalized.
After Bradley (Reese Witherspoon) turned herself into the FBI for concealing evidence about her brother’s actions on the January 6th insurrection, Alex (Jennifer Aniston) broke off her relationship with Paul (Jon Hamm) for having Bradley tailed in the lead-up to the season 3 finale. While their bond is strong, Alex and Bradley’s careers have never been further apart… and that sets us up for some riveting drama in season 4.
As the trailer explains, new episodes will be focused on the “truth coming out”, and that means more tension behind the camera than there is in front. Frankly, that’s exactly the type of scandal we want to see, and one new character (blink and you’ll miss her) could well be at its beating heart.
Marion Cotillard gets first look in The Morning Show season 4 trailerEnter Oscar winner and all-around incredible talent Marion Cotillard, who’s set to play Celine Dumont in The Morning Show season 4. You can catch her 48 seconds into the trailer, seen telling Alex through a glass window, “I like to know who’s an ally and who’s a liability.”
All we know for certain is that Celine is a “savvy operator from a storied European family,” though it’s unclear if she’s friend or foe to Alex and Bradley. It almost doesn’t matter for two reasons: firstly, any bad blood is going to make amazing TV for us, and secondly, any time Cotillard is on screen is one to appreciate.
If you were to ask me, Cotillard is one of those actresses who is supposedly beloved by Hollywood, but completely underutilised. After her Best Actress Academy Award win for playing Edith Piaf in La Vie en Rose in 2008, her career-defining leading roles have been few and far between. We had Inception in 2010, 2011’s Contagion and about a million Chanel perfume commercials, but her global reign ran undeservedly cold.
The Morning Show has made a smart move with this casting, and fans are about to reap all the benefits. Beautifully toeing the line between seductive and mysterious, Cotillard’s suspense in any scene holds us in the palm of our hands. She’s as charismatic as she is aloof, all of which feeds into absolutely delicious merger drama in September. Basically, if you don’t know, get to know.
As the weeks tick by in the meantime, we’re sure to be drip-fed tasty morsels of what we can expect from The Morning Show season 4 when it drops. In the meantime, I’ll be happy with the fantasy that Cotillard’s casting could change the game for good.
You might also likeIt doesn't matter how large your organization is, you are at risk and sooner or later cyber criminals will try to attack you. It’s not a matter of whether your organization will face a security incident but when. That's why a robust incident response plan is crucial.
So, what elements should your incident response plan include to be truly effective?
The key components of an effective Incident Response PlanStructure: well-structured and straightforward
Simplicity and structure are your allies when creating an incident response plan. A complicated plan will only create confusion. Use charts, bullet points, and clear language to make it easily understandable.
Utilizing templates and frameworks
Many organizations opt to use established frameworks ISO standards as templates for their plans. These frameworks offer a structured approach, providing sections and subsections that cover all essential areas, from governance to technical responses. By using a recognized framework, you not only ensure completeness but also facilitate easier communication with external parties who may be familiar with the framework.
Roles and responsibilities:
Who's in Charge? An Incident Response Team (IRT), typically led by a Chief Information Security Officer (CISO), should be designated to take charge during an incident. The plan should also specify roles and responsibilities for each stakeholder, from IT personnel to legal advisors.
Budget: allocate funds wisely
Budget considerations must be part of the planning process. Allocate sufficient funds for personnel, technologies, and training. This allocation should be proportional to the organization's size and risk profile.
Small businesses might not have the same resources as larger corporations. A good incident response plan for a small business should be scaled to their specific needs, focusing on the most critical assets and functions. It should prioritize simplicity, clarity, and actionable steps that can be taken with limited cybersecurity personnel.
Challenges in implementing an Incident Response Plan and how to overcome them?Whilst implementing an incident response plan, various challenges may arise. One example of this could be ensuring all team members are fully trained and understand their roles within the plan. Another challenge might be maintaining the plan's effectiveness over time. To overcome these challenges companies should enforce regular training sessions, continuous plan updates based on new threats and lessons learned from past incidents, and ensuring clear communication channels within the organization.
Measuring the effectiveness of an Incident Response Plan?The effectiveness of an incident response plan can be measured through regular testing, such as tabletop exercises or live drills, to ensure team readiness. Additionally, metrics like the time to detect, respond to, and recover from incidents can provide insights into the plan's effectiveness. Continuous improvement based on these metrics and feedback from incident post-mortems is crucial for maintaining a robust incident response capability.
Detection, reporting, and identification procedures
Proactive Monitoring Systems - Your first line of defense is detecting an incident quickly. Invest in advanced monitoring systems and allocate personnel to supervise them round the clock.
Reporting and identification
Streamline reporting protocols so that incidents can be rapidly identified and acted upon. Simplicity is key here, ensuring even the least technical person can report a problem.
Communication strategies: internal and externalThe importance of good PR
Public Relations (PR) and your marketing team (if you have one) play a pivotal role in managing perceptions during an incident. Transparent, timely communication can mitigate panic, control misinformation, and maintain your organization's reputation.
Internal communication flow
Internal stakeholders need to be in the loop as well. Have a plan to keep everyone from top management to the frontline workers informed.
External communication plan
Customers, partners, suppliers, and sometimes the media will require timely and accurate updates. Your plan should specify who communicates this information, how, and when. A failure to report an incident to customers can land you in hot water with regulators and impact your reputation.
Containment, eradication, and recovery guidelinesImmediate and long-term containment
After identifying an incident, containment is the first priority. Your plan should have procedures for immediate and long-term containment actions, such as isolating affected systems or updating security protocols.
Eradication and recovery
The plan must spell out how to find the root cause of an incident and eliminate it. It should also outline the steps to restore and validate system functionality for business operations to resume.
Training, exercises, and cyber insurancePerforming cyber incident exercises
Regularly scheduled simulated attack scenarios help keep your team prepared and your strategy up to date. It’s crucial for identifying gaps in your plan and rectifying them.
Some notable security testing services include penetration testing, red team testing, vulnerability assessments, and cyber security risk assessments.
The role of cyber insurance
Cyber insurance can be a lifesaver, covering costs that can range from legal fees to ransom payments. Your incident response plan should clearly state how and when to engage your cyber insurance coverage.
Dos and don'ts: best practices and pitfallsDos
- Train staff regularly
- Update plans frequently
- Communicate transparently
- Analyze and learn from every incident
Don'ts
- Ignore early warning signs
- Underestimate the importance of employee training
- Neglect to update stakeholders
- Fail to adapt your strategy post-incident
The role of training, simulations, and cyber insurance are also crucial. Remember, a good plan is dynamic, so always be ready to adapt and evolve. By incorporating these elements, your organization will not just be preparing for the worst-case scenario but also building a resilient and secure operational environment for the future.
We've featured the best ransomware protection.
This article was produced as part of TechRadarPro's Expert Insights channel where we feature the best and brightest minds in the technology industry today. The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/news/submit-your-story-to-techradar-pro
Apple's Macs could leave the shelf with a fully up-to-date installation of macOS on board in the future, preventing any need for a day-one update from the buyer, if clues in the latest developer beta are any indication.
9 to 5 Mac reports that the macOS Tahoe 26 beta 3 contains the groundwork (initial references and code) for such a system, which is already in place for the iPhone.
It's called Presto and it allows boxed iPhones to be updated to the very latest version of iOS by retailers - without removing the hardware from its sealed package - if the devices need an update beyond the version of the operating system they shipped with.
This saves the customer the trouble of applying an update right out of the gate, which is incredibly convenient.
The Presto hardware itself is a rack with six bays that can have six iPhones placed within. It uses wireless technologies to switch the phones on, update them, then turn them off. (MagSafe and NFC to turn the devices on, by all accounts, and Wi-Fi to pipe the actual update through.)
Analysis: Boxing clever(Image credit: Apple)If Macs are going to get the benefit of having fully up-to-date software when they're taken home by the buyer, it begs the question: how is Apple going to pull this off with laptops and PCs? The system might have to work very differently for a bigger piece of hardware, and Macs don't have NFC either - so it's not clear how the sealed PC could be triggered to power on in its box (and off again afterwards).
9to5Mac suggests that maybe Apple could add NFC back to its macOS devices, or that perhaps a different mix of wireless tech could be used with Macs. Whatever the case, it's not clear how Apple would pull this off as it does with iPhones, but it may require a substantially different spin on the concept.
Furthermore, just because a potential feature is spotted in the background of beta software doesn't mean it'll ever come to fruition. That said, the presence of the code here does indicate that this is at least something Apple is seriously considering - watch this space, I guess.
You might also like...A ransomware attack is a nightmare scenario for any organization. It’s disruptive, costly, and often deeply damaging to your reputation. How you respond in the first 24 hours can make all the difference between containment and catastrophe. In those critical moments, fast and informed action is essential. Not just to mitigate harm, but to enable recovery and identify root causes.
Whether you’re facing a live breach or want to prepare your response strategy in advance, here’s what needs to happen in the vital first 24 hours.
Step one: confirm the attack and isolate systemsThe moment ransomware is suspected, the priority is to confirm what’s happened. Ransomware doesn’t always announce itself with a dramatic pop-up screen. It may begin quietly, encrypting files and spreading laterally across your network. Early signs might include inaccessible files, failed logins, or unusual outbound traffic.
Once confirmed, isolate affected systems from the network immediately. Time is of the essence—ransomware often seeks to maximize damage by spreading across shared drives and cloud platforms. Disconnecting devices, disabling Wi-Fi and VPNs, and blocking access at the firewall level are essential measures to prevent further infection.
Having a cybersecurity team on standby allows for experts to provide step-by-step guidance in real time, helping you make the right moves to contain the threat without destroying forensic evidence. Panic can lead to mistakes. Having a calm, expert-led approach ensures you stay focused and strategic.
Step two: notify internal stakeholders and assemble your response teamRansomware response is not just an IT issue—it’s a business-wide challenge. Once containment is underway, inform key internal stakeholders, including executive leadership, legal, compliance, and communications teams. Appoint a central response lead, ideally from your crisis management team, who can coordinate efforts and make key decisions quickly.
If you’ve already established an incident response plan, now is the time to activate it.
Step three: secure backups and avoid engaging attackersIt may be tempting to click the ransom note or initiate contact with attackers to understand their demands. This is strongly advised against.
Not only does it carry legal and ethical risks, but it may compromise your recovery options or make you more vulnerable to secondary attacks. Instead, secure all backups and logs. Identify when the attack began, which systems are affected, and what data may be at risk. This information will be crucial for both remediation and regulatory reporting.
Having an expert partner will improve this process, by providing rapid forensic support to help assess the impact by identifying indicators of compromise (IOCs), tracing the attack vector, and determining the attacker’s dwell time. This information can also help you understand if data exfiltration occurred—an increasingly common element of modern ransomware.
Step four: report the incident and consider legal obligationsDepending on your industry and location, you may have regulatory or legal requirements to report a ransomware incident. This could include notifying the Information Commissioner’s Office (ICO), your industry regulator, or affected third parties.
It’s important not to delay these conversations. Having clear documentation and technical insights to back up your reporting will help this process run smoothly.
Step five: begin recovery with expert guidanceOnce the ransomware is contained and systems are stabilized, it’s time to begin recovery. This involves more than just restoring files from backup. You must ensure the attacker’s access is removed, vulnerabilities are patched, and your environment is safe to bring back online.
This is where a trusted partner makes all the difference. Incident response specialists will work alongside IT and cyber teams to validate clean systems, conduct a secure restoration, and put new protections in place. Your business shouldn’t just bounce back, it should come back stronger.
Why speed and expertise matterThe damage caused by ransomware isn’t just financial—it’s operational, reputational, and often long-lasting. The quicker and more effectively you respond, the more you reduce the long-term impact.
Cyber security firms offer different ways to ensure organizations are ready to face ransomware. This includes emergency incident response, where teams can rapidly deploy to help take control, contain the threat, and recover operations. Whether remote or on-site. Another option is to hold an incident response retainer, this is designed for preparedness. Retainer services give you guaranteed access to expert responders when you need them most. With predefined SLAs, threat intelligence, and environment familiarity, these tools can help businesses respond faster and more effectively.
Prepare now, respond better laterThe first 24 hours of a ransomware attack are often chaotic - but they don’t have to be. With the right preparation and expert support, you can act swiftly, reduce damage, and return to normal operations with confidence. When minutes matter, experience is your strongest defense.
We've featured the best encryption software.
This article was produced as part of TechRadarPro's Expert Insights channel where we feature the best and brightest minds in the technology industry today. The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/news/submit-your-story-to-techradar-pro
A flaw in ServiceNow could have allowed threat actors to exfiltrate sensitive data from other user’s tables without them ever knowing, security experts have warned.
The flaw, tracked as CVE-2025-3648 and given a severity score of 8.2/10 (high), was dubbed “Count(er) Strike”, and was spotted by security researchers Varonis.
According to Varonis, the bug stems from faulty Access Control Lists (ACLs), used to restrict access to data within the tables. Apparently, each ACL evaluates four conditions when deciding whether or not a user should be granted access to certain resources. To gain access to a resource, all resources need to be satisfied, but if a resource is protected with multiple ACLs, the tool reverts to a previously used “allow if” condition.
Updating the systemsThis means that if the user satisfied just one ACL, they would be given (sometimes full) access.
"Each resource or table in ServiceNow can have numerous ACLs, each defining different conditions for access," Varonis said in its report.
"However, if a user passes just one ACL, they gain access to the resource, even if other ACLs might not grant access. If there is no ACL present for the resource, access will default to the default access property which is set to deny in most cases."
According to BleepingComputer, the bug has since been squashed, as ServiceNow introduced a number of new features, including a “Deny Unless ACL”.
This one requires users to pass all ACLs before being granted access. All ServiceNow users are advised to manually review their tables and modify ACs to ensure they are not being overly permissive.
ServiceNow is a cloud-based platform that helps organizations automate and manage IT services, workflows, and business processes, and boasts more than 8,400 companies, including the majority of Fortune 500 businesses.
Via BleepingComputer
You might also likeA new NYT Strands puzzle appears at midnight each day for your time zone – which means that some people are always playing 'today's game' while others are playing 'yesterday's'. If you're looking for Thursday's puzzle instead then click here: NYT Strands hints and answers for Thursday, July 10 (game #494).
Strands is the NYT's latest word game after the likes of Wordle, Spelling Bee and Connections – and it's great fun. It can be difficult, though, so read on for my Strands hints.
Want more word-based fun? Then check out my NYT Connections today and Quordle today pages for hints and answers for those games, and Marc's Wordle today page for the original viral word game.
SPOILER WARNING: Information about NYT Strands today is below, so don't read on if you don't want to know the answers.
NYT Strands today (game #495) - hint #1 - today's themeWhat is the theme of today's NYT Strands?• Today's NYT Strands theme is… It could be verse
NYT Strands today (game #495) - hint #2 - clue wordsPlay any of these words to unlock the in-game hints system.
• Spangram has 6 letters
NYT Strands today (game #495) - hint #4 - spangram positionWhat are two sides of the board that today's spangram touches?First side: left, 5th row
Last side: right, 5th row
Right, the answers are below, so DO NOT SCROLL ANY FURTHER IF YOU DON'T WANT TO SEE THEM.
NYT Strands today (game #495) - the answers(Image credit: New York Times)The answers to today's Strands, game #495, are…
So, even though I saw the word SONNET really quickly, I struggled with the rest of today’s word search and needed a couple of hints to get me home.
Anyway, I think I may have been distracted by the number of rhyming non-game words on the board (I couldn’t resist) and the incredibly short spangram – it’s been quite a while since we’ve had a minimal six-letter snake.
Despite being only eight letters left, ACROSTIC still took me a while to get as it was a new word to me – it’s a poem where the first letter of each line forms a word. Kind of like a puzzle within a poem.
How did you do today? Let me know in the comments below.
Yesterday's NYT Strands answers (Thursday, July 10, game #494)Strands is the NYT's not-so-new-any-more word game, following Wordle and Connections. It's now a fully fledged member of the NYT's games stable that has been running for a year and which can be played on the NYT Games site on desktop or mobile.
I've got a full guide to how to play NYT Strands, complete with tips for solving it, so check that out if you're struggling to beat it each day.
A new Quordle puzzle appears at midnight each day for your time zone – which means that some people are always playing 'today's game' while others are playing 'yesterday's'. If you're looking for Thursday's puzzle instead then click here: Quordle hints and answers for Thursday, July 10 (game #1263).
Quordle was one of the original Wordle alternatives and is still going strong now more than 1,100 games later. It offers a genuine challenge, though, so read on if you need some Quordle hints today – or scroll down further for the answers.
Enjoy playing word games? You can also check out my NYT Connections today and NYT Strands today pages for hints and answers for those puzzles, while Marc's Wordle today column covers the original viral word game.
SPOILER WARNING: Information about Quordle today is below, so don't read on if you don't want to know the answers.
Quordle today (game #1264) - hint #1 - VowelsHow many different vowels are in Quordle today?• The number of different vowels in Quordle today is 4*.
* Note that by vowel we mean the five standard vowels (A, E, I, O, U), not Y (which is sometimes counted as a vowel too).
Quordle today (game #1264) - hint #2 - repeated lettersDo any of today's Quordle answers contain repeated letters?• The number of Quordle answers containing a repeated letter today is 2.
Quordle today (game #1264) - hint #3 - uncommon lettersDo the letters Q, Z, X or J appear in Quordle today?• No. None of Q, Z, X or J appear among today's Quordle answers.
Quordle today (game #1264) - hint #4 - starting letters (1)Do any of today's Quordle puzzles start with the same letter?• The number of today's Quordle answers starting with the same letter is 0.
If you just want to know the answers at this stage, simply scroll down. If you're not ready yet then here's one more clue to make things a lot easier:
Quordle today (game #1264) - hint #5 - starting letters (2)What letters do today's Quordle answers start with?• L
• D
• F
• G
Right, the answers are below, so DO NOT SCROLL ANY FURTHER IF YOU DON'T WANT TO SEE THEM.
Quordle today (game #1264) - the answers(Image credit: Merriam-Webster)The answers to today's Quordle, game #1264, are…
LAPEL took me ages to get. It would have been quicker if I’d have guessed label instead of babel, but that’s the only thing I could have done differently.
Lapel will forever remind me of a London menswear shop that closed down many years ago called Le Pel, home to classy Italian shirts and jumpers and some very questionable French grammar.
How did you do today? Let me know in the comments below.
Daily Sequence today (game #1264) - the answers(Image credit: Merriam-Webster)The answers to today's Quordle Daily Sequence, game #1264, are…
A new NYT Connections puzzle appears at midnight each day for your time zone – which means that some people are always playing 'today's game' while others are playing 'yesterday's'. If you're looking for Thursday's puzzle instead then click here: NYT Connections hints and answers for Thursday, July 10 (game #760).
Good morning! Let's play Connections, the NYT's clever word game that challenges you to group answers in various categories. It can be tough, so read on if you need Connections hints.
What should you do once you've finished? Why, play some more word games of course. I've also got daily Strands hints and answers and Quordle hints and answers articles if you need help for those too, while Marc's Wordle today page covers the original viral word game.
SPOILER WARNING: Information about NYT Connections today is below, so don't read on if you don't want to know the answers.
NYT Connections today (game #761) - today's words(Image credit: New York Times)Today's NYT Connections words are…
What are some clues for today's NYT Connections groups?
Need more clues?
We're firmly in spoiler territory now, but read on if you want to know what the four theme answers are for today's NYT Connections puzzles…
NYT Connections today (game #761) - hint #2 - group answersWhat are the answers for today's NYT Connections groups?
Right, the answers are below, so DO NOT SCROLL ANY FURTHER IF YOU DON'T WANT TO SEE THEM.
NYT Connections today (game #761) - the answers(Image credit: New York Times)The answers to today's Connections, game #761, are…
I made my first mistake trying to connect four birds, with DODO, SWAN, GOOSE, and FOWL.
Then a miracle happened and I actually cracked a homophone group – something that I usually suffer Connections blindness with.
My victory laps were short-lived, however, as I floundered on the rocks making groups of four groups and getting one away three times. If only I stopped to think about it instead of hoping to get lucky.
How did you do today? Let me know in the comments below.
Yesterday's NYT Connections answers (Thursday, July 10, game #760)NYT Connections is one of several increasingly popular word games made by the New York Times. It challenges you to find groups of four items that share something in common, and each group has a different difficulty level: green is easy, yellow a little harder, blue often quite tough and purple usually very difficult.
On the plus side, you don't technically need to solve the final one, as you'll be able to answer that one by a process of elimination. What's more, you can make up to four mistakes, which gives you a little bit of breathing room.
It's a little more involved than something like Wordle, however, and there are plenty of opportunities for the game to trip you up with tricks. For instance, watch out for homophones and other word games that could disguise the answers.
It's playable for free via the NYT Games site on desktop or mobile.
When you’re out enjoying the great outdoors, the last thing you want to do is ruin your experience by constantly having to check your phone for directions. That’s doubly true when you’re running or cycling, where a distraction like a phone could be a real nuisance.
If you have a Garmin wearable, though, you won’t need to worry about that, as Garmin has just added Google Maps to its fitness tracker app store. The idea is you’ll get turn-by-turn directions on your wrist, enabling you to keep your phone in your pocket or your bag.
It’s compatible with popular models like Garmin’s Venu 3, Vivoactive 5 and Fenix 8 smartwatches, among many others (you can find the full list of compatible models at the end of this article).
In a press release, Susan Lyman, Vice President of Consumer Sales and Marketing at Garmin, said “Whether exploring a new city, mapping out a run or casually cycling with friends, the Google Maps app in the Connect IQ store will keep users going in the right direction.”
They added: “The turn-by-turn notifications will be a game changer for those who want to stay hands-free and keep their phone in their pocket.”
Quick directions on your wrist(Image credit: Breslavtsev Oleg / Shutterstock)Garmin says this will benefit both pedestrians and fitness fans. For walkers, your Garmin wearable will vibrate gently as you approach a turn. If you tap the app, it’ll show you the next three turns.
If you want to go for a run or bike ride, you can still measure your fitness metrics while getting directions from Google Maps. Once you’re done, you can sync your activity data from Garmin Connect to third-party Android health and fitness apps using Google Health Connect.
Garmin is not the first company to implement a feature like this, but it’s a welcome addition regardless. My Apple Watch offers similar functionality through the Apple Maps app, and it’s perfect for when I need to get directions without pulling up my phone every time. I find that it’s ideal not only when I’m out on a run, but also for those times when I’m in a busy city and want to keep my phone safely stowed.
If Garmin’s latest update sounds like something you’d use, you can download the Google Maps app from the Garmin Connect IQ Store, where it's available for free.
The full list: the Garmin watches getting turn-by-turn Google Maps directionsAMD has discovered several security vulnerabilities affecting many of its chips can be chained together to create a concerning hack which could result in information disclosure.
The four vulnerabilities are tracked as CVE-2024-36349 (3.8), CVE-2024-36348 (3.8), CVE-2024-36357 (5.6), and CVE-2024-36350 (5.6). Together, they can be used in a so-called Transient Scheduler Attack (TSA), a side-channel, or timing-based attack that likely exploits transient scheduling decisions made by the CPU scheduler to leak information.
Since this is a side-channel attack that results in information disclosure, it is similar to the infamous Meltdown and Spectre flaws which dominated the security scene for months.
Updating the systemsSeparately, the vulnerabilities were given relatively low severity scores, since the devices need to be compromised in advance, either by physical presence, or through malware, before they can be leveraged.
Furthermore, the TSA would need to be executed many times before any meaningful data could be extracted.
Here is how a theoretical attack would occur: A CPU expects load instructions to complete rather quickly. However, if there is a condition that prevents them from doing so, a “false completion” happens. Since the load didn’t complete, the data from the load is forwarded to dependent operations, affecting the timing of the instructions the CPU executes - something the attackers can observe.
The worst-case scenario is AMD chips leaking OS kernel information - but other applications or VMs could leak data as well.
A patch is already available, and AMD advised system admins to update to the latest Windows versions as soon as possible.
Those who are unable to install the patch quickly can implement a workaround involving a VERW instruction, but AMD has advised against it since it could reduce the performance of the system. In any case, the details about the mitigation can be found here.
The full list of all affected chips, including EPYC, Ryzen, Instinct, Ahtlon, and others, can be found in AMD’s advisory.
Via The Register
You might also like