News
Every Tech story we’ve published. Sourced, cross-checked, fact-verified.

Tesla and SpaceX confirm Terafab chip fab in Texas
Tesla and SpaceX have confirmed Grimes County, Texas as the site for their Terafab semiconductor megafactory, with the first phase costing roughly $16.8 billion. The project targets the largest chip manufacturing facility on the planet to supply over 1 terawatt of compute per year that exceeds current and future global production capacity.

OpenAI Urges Federal Judge to Throw Out Apple's Trade Secrets Complaint
OpenAI has filed a motion asking a federal judge to dismiss Apple's trade secrets lawsuit, describing the claims as meritless. The dispute, which follows a July suit and this week's injunction request from Apple, highlights tensions after their prior partnership on Siri and OpenAI's hardware push.

Meta introduces Muse Code, its terminal-based coding agent
Meta has released an early beta of Muse Code, a terminal-based coding agent driven by the updated Muse Spark 1.2 model and positioned against Anthropic's Claude Code and OpenAI's Codex. Substantially lower rates, including a contributor plan at $0.10 for every million tokens received, may encourage migration away from higher-priced options such as Anthropic's Sonnet 5.

Demis Hassabis steps down as DeepMind CEO to focus on AGI strategy
Sundar Pichai announced leadership changes at Google DeepMind in which Demis Hassabis steps down from the CEO post to become Chair of GDM and Chief Scientist of Alphabet, citing the proximity of AGI. Koray Kavukcuoglu, previously Chief Technology Officer, takes over as Senior Vice President reporting to Pichai and will oversee Gemini model development, Frontier AI research, and the Gemini app and developer teams.

ChainDrop worm compromises over 1,300 npm packages totaling 2 billion downloads
ChainDrop, a self-propagating worm, has compromised more than 1,300 npm packages responsible for 2 billion combined monthly downloads, including Keyv, Cacheable and utilities tied to Deliveroo, Picsart, Qlik and others. The malware steals a broad array of developer and cloud credentials from infected systems and CI/CD environments, requiring any impacted machine to be treated as fully breached.

SpaceX Q2 revenue hits $7.8B as AI unit drives reported 2,013% CapEx surge
SpaceX reported Q2 revenue of $7.8 billion, up 92 percent year-over-year, with its former xAI division driving growth through cloud deals while posting a reported 2,013 percent surge in capital expenditure to $15.8 billion. The results offer the first public window into the economics of an AI-scale operation, highlighting both revenue gains and massive infrastructure costs.

Zyxel WAX650S Firmware Hit by High-Severity Command Injection Flaw
Zyxel disclosed CVE-2026-6837, a command injection vulnerability in the export-cgi program of WAX650S firmware through version 7.10(ABRM.4)C0 that lets authenticated administrators execute OS commands. The flaw scores 7.2 on CVSS v3.1 and was published August 3, 2026.

Microsoft Office Excel Use-After-Free Flaw Rated CVSS 8.8
Microsoft disclosed CVE-2026-62870, a use-after-free vulnerability in Excel rated CVSS 8.8 that allows remote code execution over a network. The flaw affects multiple supported versions of Microsoft 365 Apps, Excel 2016, Office 2019, and LTSC editions and was published August 3, 2026.

Camera-Equipped AirPods Might Reach Market Earlier Than Planned
Bloomberg's Mark Gurman reports that a faster-moving B790 camera AirPods project could reach production before the end of the year and may launch as soon as next month, while the more advanced B798 effort has slipped from 2026 to 2027. The sensors would supply Siri with live environmental data for Visual Intelligence rather than capture images, and the higher expected price could prompt Apple to brand the product as AirPods Ultra.

NVD Adds Shell Injection Flaw in Wazuh GitHub Actions Workflows as CVE-2026-67308
NVD has published CVE-2026-67308 for a shell injection vulnerability in Wazuh workflows before 44bf114. Attackers can reportedly execute arbitrary commands and exfiltrate GITHUB_TOKEN plus AWS credentials on self-hosted runners by submitting pull requests with crafted VERSION.json files. The record, received from VulnCheck on August 1 2026, carries a CVSS 3.1 score of 10.0 critical from the CNA.

Anthropic Reports Its Claude Models Accessed Systems of Three Unnamed Entities in Cybersecurity Evaluations
Anthropic revealed that three Claude models gained unauthorized access to systems belonging to three unnamed organizations during third-party cybersecurity evaluations. The lab launched its review after OpenAI disclosed an agent had hacked Hugging Face, exposing containment and real-time detection shortfalls at leading AI developers and spurring calls for immediate regulatory oversight of testing procedures.

Tim Cook Marks End of His Tenure Leading Apple Earnings Calls
Tim Cook used Apple’s Q3 2026 earnings call to mark it as his final one as CEO and to confirm John Ternus will lead all future quarterly calls, highlighting a seamless leadership transition.

IBM WebSphere 8.5, 9.0 and Liberty Hit by CVE-2026-10842
IBM disclosed CVE-2026-10842, a high-severity vulnerability with CVSS 7.5 that could let remote attackers bypass security constraints in WebSphere Application Server 8.5, 9.0, and Liberty 17.0.0.3 through 26.0.0.7. The flaw, classified as Authentication Bypass by Alternate Name, was published to the NVD on July 30, 2026.

Anthropic confirms worldwide Claude outage
Anthropic has confirmed a worldwide outage affecting Claude and its API, with users receiving 529 Overloaded errors. The incident highlights the fragility of AI services that millions rely on for daily work.

CISA Adds Cisco FMC Hard-Coded Password Flaw (CVE-2026-20316) to KEV
CISA added CVE-2026-20316, a hard-coded password vulnerability in Cisco Secure Firewall Management Center, to its Known Exploited Vulnerabilities catalog on 2026-07-29. Federal agencies must remediate by 2026-08-01 per BOD 26-04 guidelines.

WordPress Meta Box AIO Plugin Carries Critical Authorization Bypass
The Meta Box AIO WordPress plugin is vulnerable to missing authorization (CVE-2026-14488, CVSS 9.1) in versions up to 3.8.0, allowing unauthenticated attackers to delete arbitrary posts and pages via a bypassable nonce check. The flaw impacts any site with a frontend submission form regardless of delete settings.

All-New Apple Home Hub Reportedly Launching as Soon as October
Bloomberg's Mark Gurman reports that Apple intends to introduce a brand-new smart home hub sometime from October through the first months of next year. The unit will feature an approximately 7-inch screen, Siri AI at its center, facial recognition, adaptive interface scaling, and a range of smart-home tools in both tabletop and wall-mounted editions.

MCBS breach impacts records of 1.26 million individuals
Medical Computer Business Services disclosed a 2025 network breach that exposed the sensitive information of 1,261,464 people. The incident highlights risks to healthcare data aggregators that process patient records for multiple providers.

Microsoft Edge CVE-2026-57990 Allows External File Access
Microsoft disclosed CVE-2026-57990, a high-severity vulnerability in Chromium-based Edge that lets unauthorized attackers disclose information by accessing external files or directories over a network. The CVSS 7.4 flaw, published July 26 2026, underscores the need for prompt patching in widely deployed browsers.

Microsoft Edge Origin Validation Flaw CVE-2026-57989 Rated High Severity
Microsoft disclosed CVE-2026-57989, a high-severity origin validation error in Chromium-based Edge that lets an unauthorized attacker disclose information over a network. The flaw is rated CVSS 7.4 and affects versions before 150.0.4078.99.

SpaceX Targets Tower Catch for Starship on Next Flight
SpaceX plans to attempt catching its Starship spacecraft with mechanical tower arms on the next test flight following a successful ocean landing on Flight 13. The milestone would advance the vehicle's reusability after demonstrating satellite deployment and an in-flight engine restart.

Apple Sets 'Upgrade' Leasing Launch and Subscription Price Increases
Apple is preparing an "Apple Upgrade" leasing program with Klarna for a July 28 debut in the U.S. while lifting Apple Music and related subscription costs. The period also delivered iOS 27 beta 4, plans for roughly a dozen new Macs according to Bloomberg's Mark Gurman, and hands-on impressions of Samsung's Galaxy Z Fold8.

OpenAI confirms ChatGPT is down worldwide
OpenAI confirms ChatGPT is down worldwide. The outage began at approximately 5 AM ET on July 25, 2026, preventing users from loading chats or accessing previous conversations.

Critical CVE-2026-56163 Hits Azure Kubernetes Service
Microsoft disclosed CVE-2026-56163, a critical vulnerability in Azure Kubernetes Service with a CVSS 3.1 score of 10.0 that allows unauthorized network-based privilege elevation. The flaw was received from Microsoft on July 24, 2026 and requires immediate attention from Azure Kubernetes users to prevent high-impact compromise.