News
It's Garmin launch day! Following Garmin's surprise stealth scheduling of a live YouTube event (which it's calling on X a "groundbreaking launch event"), we can now confirm the Garmin Fenix 9 and Garmin Fenix 9 Pro have been released, and they look great.
There are tons of new features to dive into, and I'm sure more than one will make their way to the rest of the best Garmin watches range — but a few will stay as Fenix 9 exclusives.
We're breaking down all the information below in our live blog, including how much the watches will cost to buy. Stay tuned!
Missed the live show? You can watch the Fenix 9 announcement below:
Welcome to our Garmin liveblogHello, Matt Evans (TechRadar's Senior Fitness & Wearables Editor) here! I'm on hand to see you through until today's Garmin live event in a few hours' time.
We're all expecting the Garmin Fenix 9 to debut, but really, anything could be on the table, from Edge cycling computers to InReach communicators.
However, I've been writing about and covering Garmin for years, and this is the first big YouTube live event product launch I've seen from the popular watch brand, so we're expecting a high-profile unveiling.
August 25, 2026 – 4:45 AM"Get ready to Play Harder"(Image credit: Future)On the Garmin website, the announcement page reads:
"Your playground is calling. Now’s the time to answer. Set a reminder below to join us at 12 p.m. on 25 August, 2026 for a groundbreaking launch event on YouTube Premiere."
12pm BST, of course, is 4:00am Pacific Time (sorry) or 7:00am Eastern Time in America. For Australian watchers, it's a more reasonable 9:00pm AEST.
What could this mean? I imagine it's something about the great outdoors being your playground, and technology to enable that.
The picture of a trail runner wearing a hydration vest, on the other hand, suggests it's going to be an adventure watch with sporty and navigation capabilities. Hmm...
August 25, 2026 – 5:06 AMWhy do we all think it's the Garmin Fenix 9?(Image credit: Future)For one thing, we saw comments from CEO Cliff Pemble earlier this year during a Garmin quarterly earnings call, about how he expected Garmin's growth to "accelerate" in the back half of the year due to "the timing of product launches".
Garmin's got several categories it sorts its watches into, with the Garmin Forerunner line sorted into the "sports" category. "Outdoor" includes Garmin Instinct, Fenix and Enduro watches due to their emphasis on navigation and trail features.
For another, we've been seeing more retailer and communications databases leaks over the last month, suggesting a launch is imminent.
August 25, 2026 – 5:46 AMWhat's it going to look like?(Image credit: Garmin)According to leaks, we're getting not one, not two, but three new Fenix 9 watches, with multiple versions of each.
These include a regular Fenix 9, a Fenix 9 Pro with more advanced features, including, reportedly, Garmin's Power Glass solar charging tech, with the duller, more battery-efficient memory-in-pixel display now restricted to Pro models.
Finally, if rumors are true, we'll get a Pro fitted with Garmin's InReach satellite communications technology, like the Garmin Fenix 8 Pro. Garmin's InReach technology is useful in the great outdoors as it reaches satellite networks even if your phone has no signal.
Each of these watches would likely come in three sizes (43mm, 47mm, and 51mm if previous releases are anything to go by).
August 25, 2026 – 6:14 AMTons more leaks are hitting the net, with Gadgets & Wearables spotting an official listing of the Garmin Fenix 9 Pro via the company's Taiwan website, before quickly being taken down.
The Fenix 9 Pro 47mm listing, according to Gadgets & Wearables, gets a fully titanium case rather than the Fenix 8 Pro's titanium bezel and backplate, with a plastic middle.
It also sports Garmin's familiar five-button design, LED flashlight, sapphire lens, speaker and microphone.
August 25, 2026 – 6:41 AMWhat about the Garmin Enduro 4?(Image credit: Mike Sawh)For all the talk about the Fenix 9, one name that hasn't come up much is the Garmin Enduro 4. Garmin Enduro watches are typically influenced by the Fenix line, offering similar features but prioritizing a huge battery life for endurance events. Last time, the Fenix 8 and Enduro 3 were launched together.
The Garmin Enduro 3 has, in the right conditions of 50,000 lux or more, near-limitless battery life thanks to its Power Glass technology and enormous battery capacity. You can read our full Garmin Enduro 3 review here while you wait for the big announcement. Its possible that its role in the line might have been folded into the rumored Fenix 9 Pro Solar model, eliminating the need for a separate premium watch.
August 25, 2026 – 6:50 AMThere's just ten minutes to go! Let me know what you're hoping for (or how you feel about today's announcement) in the comments below, or email me at matt.evans@futurenet.com and I'll do my best to feature as many replies as possible on this live blog.
August 25, 2026 – 7:02 AMIt's starting! With some very dramatic music and a multi-colored countdown, moving into an 'event will begin shortly' legend, transitioning into a trailer. I've never seen Garmin do this before.
August 25, 2026 – 7:05 AMYep, Fenix 9 and Fenix 9 Pro confirmed, with "more choice options than ever before".
Garmin's co-chief operating officer Brad Trenkle takes the stage to tell us more about it. He mentions Garmin Epic, a new mode combining activities, that titanium case and inReach connectivity for Pro models.
August 25, 2026 – 7:07 AMFenix 9 Pro revealed(Image credit: Future)A lot of the rumors just got confirmed. Solar charging option, sapphire lens, titanium case, InReach connectivity. The trailer also mentioned better, routable maps, rucking and rowing features, and that Garmin Epic feature we heard nothing about until now.
August 25, 2026 – 7:09 AM(Image credit: Future)Some great behind-the-scenes info here about the construction of key Fenix 9 Pro elements like the sensor guard. Lots of emphasis on the smartwatch flashlight too, which comes in green as well as red (on the Pro, at least).
August 25, 2026 – 7:13 AMAndrew Perkins, product manager, takes the stage to tell us more about Garmin Epic. He said "this brand new feature allows you to group multiple activities together to tell a story".
This seems to be a feature in the Garmin Connect app, linking together related workouts over a time period. It seems you could link together multiple training runs to show improvements before race day, or chart a big ski weekend by grouping snowsports and hikes together.
The aim of course, is to share these socially as a single 'mega event', adding notes and photos to "make your Epic something to relive, not just review".
August 25, 2026 – 7:15 AMRuckers get the option to add or remove pack weights mid-activity, and be added as a multi-sport overlay. This is great for me, as I love to add weight to short hike to increase the challenge in a limited time period. A collaboration with GoRuck is in the works too.
Rowing machine workouts allow you to connect your watch to a compatible rower to improve power curve and targeted intensity features, as well as a countdown.
August 25, 2026 – 7:19 AM(Image credit: Garmin)Calculating a roundtrip course on Fenix 9 Pro maps is 40% faster than the Fenix 8 Pro. In addition to an overhead view, you can also switch to a tilted perspective thanks to a more powerful mapping engine. It comes preloaded with "entire continents of maps". ClimbPro helps you manage grades and effort, while virtual pacer software PacePro now helps you better handle upcoming terrain.
The AMOLED display is also twice as bright as the Fenix 8's, although there's no word on microLED.
Above, you can see our first official press image of the Fenix 9 and 9 Pro.
August 25, 2026 – 7:22 AMNew personalised stamina zones will be available in the post-activity summary. A new stamina curve is also "an easy to understand" visual representation of your fitness and how aerobic and anaerobic workouts alike contribute to your improving stamina.
August 25, 2026 – 7:25 AM(Image credit: Future)LiveTrack has always been a useful Garmin feature, and it's being improved with the Pro's LTE functionality. It interfaces more closely now with Garmin Messenger, Garmin's satellite messaging service.
A new feature called Garmin Locate allows other Garmin Connect users to check on your location without having to enable LiveTrack.
The Pro also offers 12 months of SOS messaging even after you suspend your inReach messaging subscription. So could you theoretically start a sub, suspend it, and get a year absolutely free? Tempting...
August 25, 2026 – 7:32 AMHow much will they cost?(Image credit: Future)That about wraps it up for the presentation! I've got the press release in hand now, so will be posting full specs for the watches shortly.
What wasn't mentioned was the price. I can confirm Fenix 9 will start at $999.99 / £859.99 / AUTBC (around AU$1,399) and the Fenix 9 Pro will start at $1,099 / £949.99 / AUTBC (around $1,549).
August 25, 2026 – 7:56 AMWill you be getting the Fenix 9, Fenix 9 Pro or perhaps picking up a cheaper watch? Dropping four figures on a watch is hard to do for most of us, but they do look great...
Have your say and vote in our poll:
August 25, 2026 – 8:14 AMGarmin Fenix 9 specifications(Image credit: Garmin)Component
Garmin Fenix 9 (43mm AMOLED)
Price
From $999.99 / £859.99 / AUTBC
Dimensions
43 x 43 x 13.8 mm
Weight
61g
Case/bezel
Titanium, fibre-reinforced polymer
Display
416 x 416 px, AMOLED
GPS
Multi-band, GPS + Beidou + Glonass + Galileo + QZSS + SatIQ
Battery life
10 days (49 hours activity mode)
Connection
Bluetooth, ANT, Wi-Fi
Water resistant?
Yes, 10ATM
Memory
64GB (7,000 songs)
August 25, 2026 – 8:28 AMGarmin Fenix 9 Pro specifications(Image credit: Future)Component
Garmin Fenix 9 Pro (43mm AMOLED)
Price
From $1,099.99 / £949.99 / AUTBC
Dimensions
43 x 43 x 13.3 mm
Weight
62g
Case/bezel
Titanium
Display
416 x 416 px, AMOLED
GPS
Multi-band, GPS + Beidou + Glonass + Galileo + QZSS + SatIQ
Battery life
10 days (Up to 50 hours activity mode)
Connection
Bluetooth, ANT, Wi-Fi
Water resistant?
Yes, 10ATM
Memory
64GB (7,000 songs)
Comparing the 43mm 9 Pro to the 9 below, you can see there's little comparable difference in specs, other than a gram of weight, some reduction in thickness and more titanium.
The Pro gets a brighter screen, that green flashlight for better night vision, and other model options. Solar (which extends the battery life enormously) is available only on 47mm models and up. An InReach and LTE-enabled model is also available at an additional cost.
Initially, my gut would say not to get the Garmin Fenix 9 Pro at 43mm without either the solar charging or InReach options, as you're getting comparatively little over the standard Fenix 9. The price increase actually becomes better value as you go up due to the additional features on offer. I'll do a full price breakdown of all the models of both watches shortly.
August 25, 2026 – 9:56 AMI'm back, and after digesting my thoughts on the release (not to mention my lunch), I've come to the conclusion that the Fenix 9 launch showed us a lot more than the new watches.
Generating hype before the announcement, posting it live, bringing in Garmin leaders, designers and sponsored athletes as talking heads... it all smacked of the kind of live launch you'd expect from the likes of Apple, or Samsung.
I believe there is a conscious effort for Garmin to align itself with companies like these. For a long time, Garmin has simply dropped information unceremoniously at the same time as the products appear on the website, without much fanfare. It's been acting more like a utilitarian sports company (which it is) than a high-tech corporation with lots of die-hard fans (which, erm, it also is).
Garmin's seen the hype and conversation such events can bring to brands, and sought a piece of that pie. As such, it chose to announce its flagship outdoors product with a bit more fanfare than usual.
Whether that will translate to more people spending over $1,000 / £900 / AU$1,400 on a watch remains to be seen... The Fenix 9 is really a tool for elite athletes, but its problem is that elite athletes already know whether they're buying a Fenix 9 or not. Today, Garmin has tried to catch the attention of the Apple Watch Ultra crowd.
August 25, 2026 – 10:28 AMFull pricing breakdownHere's the clearest Garmin Fenix 9 pricing breakdown you'll find on the internet right now. I've gone through all the model options in US, UK and AU pricing.
Garmin Fenix model
43mm
47mm
51mm
Garmin Fenix 9
$999.99 / £859.99 / AU$1,599
$999.99 / £859.99 / AU$1,599
$1,099.99 / £949.99 / AU$1,749
Garmin Fenix 9 Pro
$1,099.99 / £949.99 / AU$1,749
$1,099.99 / £949.99 / AU$1,749
$1,199.99 / £1,029.99 / AU$1,899
Garmin Fenix 9 Pro Solar
N/A
$1,099.99 / £949.99 / AU$1,749
$1,199.99 / £1,029.99 / AU$1,899
Garmin Fenix 9 Pro with InReach
$1,199.99 / £1,029.99 / AU$1,899
$1,299.99 / £1,199.99 / AU$2,049
$1,399.99 / £1,209.99 / AU$2199
Garmin Fenix 9 Pro Solar with InReach
N/A
$1,199.99 / £1,029.99 / AU$1,899
$1,299.99 / £1,199.99 / AU$2,049
Confused? Here are our takeaways:
- The standard Garmin Fenix 9 AMOLED version is cheapest.
- Solar is only available on Pro models.
- Solar costs the same as AMOLED on the Pro without InReach, as it's a choice between a longer battery life or brighter screen.
- There is no Solar 43mm Pro model.
- Pro InReach AMOLED is the most expensive configuration, with Solar actually costing less than AMOLED here.
For years, the phrase "AI-powered attack" has mostly meant a human using AI tools to write better phishing emails or scan for vulnerabilities faster. That framing just became outdated.
This month's intrusion into a major AI infrastructure platform was carried out, start to finish, by an autonomous agent.
No operator typed commands during the attack. No one was watching a terminal, deciding what to try next.
The agent found its own way in, escalated its own privileges, moved across internal systems on its own initiative, and kept going until it was caught.
It executed thousands of individual actions across a swarm of short-lived sandboxes, using infrastructure that migrated itself to stay ahead of takedown efforts.
That last detail is the one worth sitting with. This wasn't a script running on a loop. It was closer to a persistent, adaptive actor that happened not to be a person.
Agentic attackerSecurity teams have spent the last two years bracing for what researchers called the "agentic attacker" scenario: a future where offensive AI doesn't just assist a human operator but replaces the decision-making loop entirely. That future arrived faster than most roadmaps allowed for. And it arrived through an unglamorous door.
The intrusion began not with some exotic zero-day but with a malicious dataset, exploiting weaknesses in how data gets processed and executed. Old lesson, new attacker. The place where AI platforms are most exposed is often the plumbing, not the model.
What makes this incident more than a cautionary anecdote is where the agent came from. It wasn't built by a criminal group. It emerged from an internal test, one company evaluating how capable its own models were at offensive internet security work.
The safeguards that would normally stop a model from behaving this way had been deliberately loosened for the purposes of that evaluation, and the agent found a flaw serious enough to escape the contained environment altogether. It got out, found a live target, and treated it the same way it had been trained to treat a benchmark: as a problem to solve, thoroughly and without asking permission.
This is where the industry's favorite excuse collapses. "The AI acted on its own" is true, technically. It is also irrelevant to the question of who is responsible. Nobody would accept that defense from a bank whose fraud-detection algorithm accidentally froze every customer account overnight, and nobody should accept it here.
An organization that builds a system capable of autonomous action, tests it with reduced constraints, and fails to contain it when it exceeds its boundary has made three decisions, all of them accountable ones. Autonomy in the tool does not create autonomy from consequences for the people who deployed it.
A harder problemThere's a harder problem sitting underneath the accountability question, and it doesn't have a tidy fix. These agents are not malicious by design. They are goal-pursuing systems, optimizing for an objective, and the gap between "pursue this objective" and "pursue this objective the way a human would want you to" is where things go wrong.
An agent instructed to find and exploit vulnerabilities doesn't inherently know where the test environment ends and the real internet begins. Alignment, in this context, isn't a philosophical nicety. It's the difference between a benchmark result and an incident report. As agents get assigned more ambitious, multi-step objectives, that gap doesn't shrink. It widens, because the more complex the goal, the more creative and unpredictable the path an agent will find to reach it.
Ironically, one of the more telling wrinkles in this incident had nothing to do with the attacker. When the victim organization tried to use its own AI tools to analyze the attack logs, the safety filters built into several frontier models refused to help, unable to distinguish forensic analysis of an attack from participation in one.
The team ended up relying on an open-weight model with fewer restrictions to do the job. That's worth flagging on its own: the same caution designed to prevent misuse can also blind defenders at the exact moment they need clarity fastest.
Active securityNone of this argues for abandoning AI agents. It argues for treating sandboxing as an active security discipline rather than a checkbox. A test environment isn't safe because it's labeled as one. It's safe when it has been built and continuously verified to contain the specific class of behavior the system might attempt, including behavior nobody predicted at design time.
Reduced safeguards for the sake of a benchmark should carry the same scrutiny as reduced safeguards in production, because the line between the two is thinner than most evaluation frameworks assume. Governance needs to catch up with capability rather than trailing a year behind it, and that means treating agent permissions the way mature organizations already treat privileged human access: least privilege by default, monitored continuously, revoked automatically when behavior deviates from scope.
For security teams, the lesson isn't really about one company's bad week. It's that AI is now operating on both sides of the perimeter simultaneously, as the business tool a company depends on and as a potential attack surface with its own failure modes.
Detection strategies built around human attacker timelines, the hours and days it takes a person to escalate and pivot, won't hold up against an agent doing the same work in minutes. The organizations that come out ahead won't be the ones that avoided building agentic systems.
They'll be the ones that assumed, from day one, that their agents would eventually try to do something nobody authorized, and built the containment to survive it.
We've featured the best online cybersecurity courses.
This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.
The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit
It’s a tale as old as time. You tune into the big budget show about dragons and tyrants and your job in tech suddenly makes a lot more sense.
If you’ve been watching the new season of House of the Dragon, you’ll know the term ‘protector of the realm’. They’re kings, queens, or trusted governors: the ones responsible for the realm’s safety, ensuring laws are followed, and the medieval machinery of state ticks over. Back in Game of Thrones, ‘protector of the realm’ Ned Stark had his head chopped off and everything famously took a nosedive from there.
I’d argue this is a lesson in AI strategy.
At my company, Aiimi, we use this very same term - ‘protectors of the realm’ - to talk about the role of IT, Legal, and Compliance in operationalizing AI projects. But too often, businesses treat these governance functions as friction.
Whilst there aren’t any dragons for them to slay, these departments are there to protect your information and your systems - and above all, keep your company out of harm’s way.
Guardians or gatekeepers?Despite the work these departments do protecting companies from hefty fines and data breaches, I see an awful lot of corporate windbagging about how these departments bottleneck projects behind lengthy consultations, caveats, and due diligence.
The criticism is that they slow projects down. The reality is that they’re the difference between a fantasy strategy and a functioning one.
Ignore their counsel, and the whole structure gets weaker. Legal ensures AI tools follow information laws like GDPR and the new Data (Use and Access) Act 2025, so these systems only touch the data they’re meant to. Compliance maintains oversight once these systems go live, proactively ensuring that rules are followed and standards aren’t slipping.
IT does the essential work of making these projects function seamlessly in your organization's workflows and contexts. They maintain the infrastructure that AI runs on, ensuring that projects run on well-governed, structured data with documents having the correct permissions and access controls for safety. Without this groundwork, there’s little hope that an AI project can be effectively operationalized and return any sort of value.
But more than just facilitators of AI projects, these departments are the people in the room who know exactly what risks AI projects can pose, and what information they shouldn’t be privy to. Which, taking July’s Hugging Face fiasco as an example, matters more than most companies think.
Headlines would have you believe OpenAI’s models went rogue, broke through their safeguards, and attacked Hugging Face by their own autonomous decision. What actually happened is less dramatic and more damning.
OpenAI ran security tests with two AI agents where safeguards had been switched off. The testing sandbox, meant to be offline, was actually misconfigured to allow a connection out. The models escaped and attacked Hugging Face - not out of malice, but to cheat the security test by the laziest route available.
This was a governance failure. AI systems themselves can’t understand the reputational or financial risks that their actions might inadvertently cause. They do what they’re trained to do, and if there’s a shortcut to exploit, they don’t stop to check whether they’re meant to exploit it.
When critical business decisions are at stake, rushing a project past your protectors of the realm can leave you vulnerable to data breaches thanks to poor data security, or fines thanks to non-compliance. Having someone on board whose job it is to remind you of limitations and considerations serves to not only protect your organization, but make any AI project more resilient and deliver better results.
As AI regulation tightens and data security climbs up the agenda, it becomes more important than ever to have your protectors on side and fully integrated into design and deployment from the start.
Protecting the realm in practiceThere is sometimes a healthy level of skepticism in these departments so it’s key to invest in internal literacy programs to clearly explain the huge benefits of AI tools when they’re adopted safely, in line with your company’s governance principles.
Employees should walk away feeling clear about what terms like hallucination, training, and information retrieval mean for them, and how AI can fit into their work lives.
Once your protectors of the realm are aware of the terminology, they should be integrated into the design process of new AI projects to make use of their specialist knowledge.
Compliance might identify a specific challenge: governance teams are struggling to keep up with ensuring data quality and classification standards across different, growing systems in your organization.
This is crucial work that protects the business from breaching critical or sensitive data and powers data projects throughout the organization. They recognize that secure AI can help at scale. Now, together, you can develop a carefully planned use case that benefits multiple areas of the business: you need an AI-powered solution that can power data governance at scale by automatically classifying data.
IT can then help you plan how AI-powered data governance might fit into existing workflows and infrastructure, with data, compliance, and legal teams working together to understand the rules and give AI everything it needs to understand your business regulations and contractual obligations.
Your protectors of the realm should then also be part of any ongoing deployment. IT routinely checks the outputs of AI-powered systems, legal keeps abreast of any new legislation that you should be aware of, and compliance maintains ongoing human oversight so that you’re actively following regulation.
AI has incredible potential, but safe implementation is impossible if you don’t understand the rules. It might not be dragons and castles, but the companies that are positioned to generate reliable long-term success from AI projects aren’t the ones moving fastest, but the ones inviting their protectors of the realm to the decision-making table.
We've featured the best AI chatbot for business.
This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.
The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit
- The Ninja CrushBOSS is a blender, food processor and to-go tumbler in one
- It has a 1,200W motor, with presets for precise chopping, slicing and dicing
- It's on sale now for $319 / £239 (about AU$460)
If, like me, you love a good kitchen device you'll be well aware of the perennial problem: finding space for all your gadgets and their accessories on your counter or in your cupboards. So I'm intrigued by the strangely-named but fun-looking Ninja CrushBOSS, which is designed to replace three distinct products: a blender, a food processor and a smoothie maker, all with the same shared base.
The CrushBoss has a 1,200W motor and a 2.1 liter / 72oz jug for blending and a 710ml / 26oz tumbler cup for drinking on the go. And it has a smart menu system that promises to make even the most tedious chores quick and easy.
Ninja CrushBOSS: key features and pricingThe Ninja CrushBOSS's jug has a curved square design to eliminate dead zones, and the SmoothSense system offers optimized blending, presets for chopping and mincing, and a custom control with 10 manual speed settings.
There's an integrated touchscreen display and a straightforward dial control, and it's designed to handle everything from smoothies and ice to shredding, slicing and dicing. There's an optional dicing kit accessory designed to deliver consistent dicing for more intensive tasks such as chopping ingredients for salads, salsa and other ingredients.
It's an interesting alternative to a full food processor whose various bits and bobs require quite a lot of storage: while there are still individual blades and bodies here they're not as numerous as the ones gathering dust at the back of my kitchen units. And if you've been disappointed by all-in-ones in the past, the high power here – 1,200W, which is 100W more powerful than the Ninja BlendBOSS — should make short work of even the toughest veg and effortlessly crush ice for your cocktails.
The Ninja CrushBOSS (including all attachments) is available for $319.99 in the US, and £239.99 in the UK. That's about AU$460, though the Australian release date has yet to be confirmed.
The European Union's new Tech Sovereignty package highlights a challenging question for governments across Europe, including the UK: how can countries benefit from AI without becoming dependent on technologies developed elsewhere?
AI is becoming a critical driver of economic growth, public service transformation and business competitiveness. Yet much of the AI technology stack continues to be developed and operated primarily in the United States and China, creating a growing tension between AI adoption and strategic control.
Although the UK is pursuing its own approach to AI regulation, European policy developments will continue to shape the environment in which many British organizations build, deploy and govern AI systems.
Recent UK government warnings that Britain must secure "greater control and leverage over frontier AI" show that AI sovereignty is moving from a theoretical debate to a practical policy challenge.
Building every layer of the technology stack domestically is neither practical nor necessary. At its core, AI sovereignty is about maintaining the freedom to choose, adapt and innovate without becoming dependent on any single provider or platform.
Choice, not self-sufficiencySome countries are pursuing far-reaching self-sufficiency strategies. Others are building on existing infrastructure and expertise while using partnerships to close technological gaps. For most economies, the latter approach is likely to be more realistic. Sovereignty is not about building every component domestically; it is about ensuring strategic control and avoiding excessive dependence on any one supplier.
Regulation may have a role to play. While concerns remain about compliance burdens and their impact on innovation, the broader objective is clear: creating an environment in which organizations can adopt AI with confidence.
This is where dynamic and competitive AI markets become essential. A diverse digital supply chain creates options, strengthens resilience and reduces the risks associated with concentration. Recent restrictions on access to Anthropic's frontier AI models in some non-US markets are a reminder that when access to advanced AI capabilities is restricted, choice itself becomes a strategic asset.
Infrastructure is only useful if everyone can use itMuch of the AI policy debate focuses on the data centers needed to train large models. Yet infrastructure for broad adoption is equally important.
Distributed edge networks located closer to users help deliver AI applications with the low latency, performance and scalability required for real-world deployment. At the same time, access to AI tools must extend beyond a small number of well-resourced organizations.
Usage-based and serverless models can lower barriers to entry by reducing upfront costs and allowing organizations to pay only for the resources they consume. This enables SMEs, researchers, public institutions and larger enterprises alike to experiment with and adopt AI technologies.
Control over data is another critical element. Sovereignty depends less on where data is stored and more on whether organizations can manage access, security and compliance requirements effectively. Global, distributed architectures enable the implementation of access rules and controls over where data is processed and AI applications are operated.
Openness is a strategic advantageOpen standards and interoperable technologies are becoming increasingly important building blocks of digital autonomy. They reduce switching costs, strengthen competition and help prevent dependency on individual providers.
The same principle applies to AI models themselves. Organizations increasingly need access to a range of different open-source and proprietary models, allowing them to select the best solution for different use cases rather than relying on a single platform.
Control through opennessThe debate around AI sovereignty is often framed as a choice between dependence and isolation. In reality, the most effective path lies somewhere in between.
Countries do not need to own every layer of the AI stack to exercise meaningful control. What they do need is access to open, competitive and resilient markets that provide genuine choice.
For the UK, and Europe alike, strategic control will come not from limiting access to technology, but from ensuring organizations have the freedom to choose how they adopt, deploy and govern it. In an increasingly interconnected world, that freedom of choice may prove to be the most important form of sovereignty of all.
We've featured the best AI website builder.
This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.
The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit
Frustrated by workflow limits and token-based billing on AI automation platforms? n8n is a “fair-code” automation platform that you can host on your own device or servers, free from the usage restrictions that plague cloud-based platforms.
We’ve covered n8n on TechRadar before, so head over to our first-time user guide and list of compatible hosting solutions if you’re looking for more information. For now, however, I’ll walk you through the exact step-by-step process of setting up a self-hosted n8n environment using Docker, Docker Compose, and a Linux-based virtual machine or server.
What you'll need for this setup- A virtual machine, server, or NAS with at least 2 vCPUs and 4GB of RAM. Heavier workloads will benefit from more CPU cores and memory.
- A compatible version of Linux installed on your server or machine, such as Ubuntu, Debian, or Raspberry Pi OS. CentOS Stream, Fedora, and RHEL are also supported.
- Access to the Docker and Docker Compose repositories using your Linux distro’s package installer. All of this can be installed through the Linux terminal.
- A managed Kubernetes cluster if you intend to run production-grade workflows (optional).
Power up your Linux terminal. Then update your Linux software catalog by running this command:
sudo apt-get update
This will update your software packages, install any necessary certificates, and prep the system for installing Docker. Once done, execute the next command to install Docker and Docker Compose, along with any dependencies your system needs:
sudo apt-get install -y docker-ce docker-ce-cli containerd.io docker-buildx-plugin docker-compose-plugin
You can manually confirm that your Docker engine is installed and running by executing this command:
docker --version
docker compose version
Create a new directory for your n8n setup, then navigate into it:
mkdir n8n-compose cd n8n-compose
Now, you need to create a new .env file inside the new directory. It should look like this:
DOMAIN_NAME=example.com SUBDOMAIN=n8n GENERIC_TIMEZONE=Europe/London SSL_EMAIL=you@example.com
Make sure to replace these values with your domain name, time zone, and email address. If you’re running n8n locally on your device, you can simply remove the domain name, subdomain, and SSL email fields to leave only the GENERIC_TIMEZONE field in there.
Next up, we need to create a compose.yaml file in the same directory along with the .env file. It should read like this:
services:
n8n:
image: docker.n8n.io/n8nio/n8n
restart: always
ports:
- "127.0.0.1:5678:5678"
environment:
- N8N_HOST=${SUBDOMAIN}.${DOMAIN_NAME}
- N8N_PORT=5678
- N8N_PROTOCOL=https
- NODE_ENV=production
- WEBHOOK_URL=https://${SUBDOMAIN}.${DOMAIN_NAME}/
- GENERIC_TIMEZONE=${GENERIC_TIMEZONE}
- TZ=${GENERIC_TIMEZONE}
volumes:
- n8n_data:/home/node/.n8n
- ./local-files:/files
volumes:
n8n_data:
This maps n8n to port 5678 on your device and stores all your workflows, credentials, and encryption key in a Docker volume. Again, if you’re installing locally, you can simply remove the N8N_HOST, N8N_PROTOCOL, and WEBHOOK_URL lines.
In the same directory, create a local-files folder to store all your workflows:
mkdir local-files
(Image credit: n8n)3. Launch n8nYou can launch all your Docker Compose containers simultaneously using a single one-line command:
docker compose up -d
After about a minute or so, run this command to see if the containers are up and running:
docker compose logs -f n8n
You can now open the n8n editor at https://localhost:5678 on your local device using any web browser.
4. Create a n8n accountWhen you launch the n8n editor in your browser for the first time, it will ask you to create a new account. Enter your email, name, and a password with at least one capital letter and a number. Once you complete the form, you’ll become the instance owner, which is similar to a super-admin in n8n.
This will give your account full access to every workflow and credential, but you should still set up member-level accounts if you intend to have other people use your instance and want to track changes.
5. Build your first AI workflowYou’ll now be able to access n8n’s workflow editor. This is a node-based visual interface that looks a bit like a flowchart with the option to add triggers and actions to create complex automations. If you’ve used a tool like Zapier or Make before, it shouldn’t take you long to figure out the basics.
n8n lets you use the Execute step button to trigger different parts of a workflow during editing, which is useful in testing and troubleshooting. Once you’re confident that everything works, you can save the workflow and toggle it on so that it stays active.
(Image credit: n8n)FAQsIs n8n open-source?n8n isn’t open-source but free-to-use with certain limitations. It’s distributed under a fair-code license that lets you use the platform for personal or internal business workflows free of cost. If you wish to commercialize it as a consumer-facing product, however, you’ll need to pay for a commercial license.
Does it cost anything to self-host n8n?There’s some cost involved in setting up a self-hosted n8n environment, but it’s much less compared to how much you’d pay with a cloud-based automation platform with a subscription. Your only expenses here are your hosting costs for the server you use, but even that can be removed if you have a powerful enough local rig that can run workflows on its own.
Does n8n come with its own database?n8n comes pre-loaded with SQLite on with every installation, which is fine for internal use. If you want to run production workflows, however, I’d recommend switching to PostgreSQL, which can better support complex multi-user workflows.
How do I keep my n8n instance secure?Make sure to run your n8n instance over an HTTPS connection instead of plain HTTP. If you’re using an external server or a local network that’s shared by other users, take extra care to keep your encryption keys secure and do not put them directly in your .env file. Depending on your server configuration, you can use a secret manager like Azure Key Vault or Google Cloud Secret Manager to avoid attackers from reading your API keys by scanning the source code in plain text.
For the last two years, many organizations have treated AI adoption as the goal. The more users, tools and experiments, the better. Today, leaders are no longer measuring success by adoption alone. They are asking what it costs, where it creates value and whether the business can afford to scale it responsibly.
That is the next chapter of AI and technology spend management. The companies that thrive in this environment won't necessarily be the ones consuming the most technology. They will be the ones that can connect technology consumption to measurable business value.
This shift from maximizing usage to maximizing value, what I call valuemaxxing, is becoming a defining challenge for technology leaders.
Executives who take these five steps now will be prepared for a future where technology consumption and business value must be measured together:
1. Gain real visibility across the full technology stackOrganizations cannot manage what they cannot see. This becomes far more urgent when costs are variable, distributed and constantly changing.
Today’s technology consumption does not sit neatly in one budget or one system. It spans SaaS applications, cloud infrastructure, data platforms, AI models, agents and infrastructure. AI adds another layer of complexity because spend can show up through tokens, credits, model usage, GPU consumption, data movement and AI-enabled applications.
With only 31% of organizations reporting visibility into AI software today and 59% reporting increased wasted AI spend year over year, gaining a single source of truth across the technology stack has never been more important.
Without a complete view of technology consumption, organizations are left making decisions with fragmented information. Visibility isn't simply about controlling costs; it's about understanding where investment is delivering value and where spend is wasted.
2. Build a governance model for consumptionMany organizations encouraged broad AI experimentation, only to later discover that usage had outpaced oversight. Having an internal governance framework in place is critical to any company’s success. Governance gives teams the guardrails they need to scale responsibly.
For AI in particular, leaders need to move from “use more” to “use better.” It’s figuring out whether AI is improving cycle time, customer experience, operational efficiency, revenue growth, or another important business metric.
To guide the process, increasingly large enterprises (85%) are appointing dedicated teams or senior leaders for AI and tech governance to enable visibility, control, and cross-team collaboration. It’s vital for companies to prevent AI from becoming an uncontrolled cost center.
3. Renegotiate contracts for flexibility and accountabilityTechnology pricing models are changing rapidly. Long-term fixed agreements may still have a place, but they are becoming harder to manage in environments where usage can shift quickly.
Today, leaders should regularly evaluate vendor agreements to ensure they reflect actual usage patterns and future business needs. This is particularly important as AI providers continue introducing new consumption models and monetization strategies.
Enterprises should expect more pricing complexity, not less. The goal is not simply to negotiate lower costs. It is to create agreements that give the business room to innovate while maintaining control over spend.
4. Align technology, finance and procurementUsage-based costs impact multiple teams. While technology teams drive how much is used, other departments manage the needed oversight, with finance owning the budget impact and procurement handling vendor contracts. Without alignment, organizations can easily lose control of spending.
The organizations that manage consumption well will build a shared view of usage, cost and value. They establish common metrics, clear accountability, and regular collaboration across departments.
When teams work from the same data and the same definition of value, those decisions become more intentional and avoid costly surprises.
5.Use AI to move optimization from reactive to continuousUse AI tools to help manage the growing complexity of technology consumption itself.
Optimization cannot remain a periodic budget exercise. By the time a cost issue appears in a report, usage may have already shifted again.
AI can help teams detect unusual usage patterns, surface waste, forecast demand, and support smarter planning across teams. But AI-driven optimization must be connected to human-defined goals. The objective is to help teams make better decisions faster, with clearer insight into what is being used, what it costs and where it creates value.
Turning tech consumption into valueThe next phase of enterprise AI will look very different from the first. For the last several years, the focus was on experimentation and adoption. The future belongs to organizations that can demonstrate accountability, governance, and value.
AI has accelerated the industry's shift toward consumption-based technology models, introducing new economic challenges alongside new opportunities. As organizations continue scaling AI, understanding the relationship between usage, cost, and business impact will become a critical competitive advantage.
The AI adoption spree is ending. What comes next is more disciplined visibility, governance, and financial accountability, defining who can successfully scale innovation and who gets overwhelmed by the bill.
We've featured the best IT automation software.
This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.
The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit
- Agentforce is now worth around $1.2 billion annually, and climbing
- Customers aren't so sure about their data readiness and agentic maturity
- Many AI projects could be cancelled as users experiment with use cases
Even though Salesforce says its Agentforce business has reached a staggering $1.2 billion in annual recurring revenue, a new report has revealed that partners aren't actually seeing that same surge in revenue.
While the company may be bringing in plenty of revenue from pilots and trials, it seems that customers are yet to see the meaningful results they were hoping for, holding them back from large-scale deployments.
A new TD Cowen report (via The Register) backs this up, uncovering customer dissatisfaction, particularly around data readiness and agent maturity.
Agentforce isn't delivering... yetAccording to the survey, 11% of partners hadn't see much immediate interest, with more than half (56%) anticipating upcoming interest but acknowledging that customers need time for initiatives to mature. Only one-third said there was strong interest in Agentforce at this moment in time.
The report also uncovered a 10pp drop in Salesforce partners meeting or beating commercial targets, at 33% this quarter compared with 43% last quarter, with TD Cowen describing adoption as "subdued."
This latest report reflects similar findings from an earlier KeyBanc Capital Markets study (via The Register), where analysts found that customer data still isn't good enough to fully benefit from agentic AI. Around two years after Agentforce was introduced, customers are also dissatisfied with the product's maturity itself.
More broadly, though, it could just be a sign of the broader landscape rather than an Agentforce problem. Last year, Gartner predicted that more than two in five AI projects would be cancelled by the end of 2027 due to factors like "unclear business value" – in other words, this expensive and senseless period of experimentation is just a natural part of the process as users find their feet and reveal the true use cases.
Salesforce is still filled with optimism after transitioning to become an AI-first company – after an "outstanding" quarter, CEO Marc Benioff described agentic AI as "the biggest growth opportunity for [the company's] customers."
Cyberattacks are increasing in speed and sophistication, ranking among the biggest threats to businesses of all sizes and industries.
Previously unprecedented costs have made headlines; in October, a report from the Cyber Monitoring Centre revealed that the cybersecurity incident which affected Jaguar Land Rover in August cost the UK economy an estimated sum of 1.9 billion pounds.
Meanwhile, in North America, the aerospace sector has seen a spate of attacks, with WestJet’s June cyberattack resulting in the theft of 1.2 million passengers’ data while the data sets of 1.5 million flyers are believed to be compromised following September’s attack on Collins Aerospace.
Research released earlier this year revealed a stark dip in public trust; when questioned on which industry consumers trusted with their data, no single sector saw an approval rate of above 50%.
Without a clear and modernized security strategy, businesses are leaving themselves vulnerable to the far-reaching consequences of a breach, including reputational damage, operational delays, and financial loss.
Why Zero Trust MattersAI has given everyone with a computer, tablet, or even smartphone easy access to automation, including those using it with malicious intent. In the cyber space, this allows criminals to continually change their approach, scaling their efforts and exploiting vulnerabilities in their target’s software. To keep up with evolving threats, Zero Trust is vital, prioritizing data over assumptions is not optional.
The contemporary approach to the principle of Zero Trust has been developed from the work of the Jericho Forum, made up of industry experts keen to establish a ‘de-parameterized’ model that enables a more granular and flexible approach to security.
The group, which later became part of The Open Group Security Forum, paved the way for John Kindervag’s popularization of the Zero Trust principle in 2009, emphasizing the importance of 'Never trust, always verify'. In a conversation with Gartner’s Neil MacDonald, he further explained that “Zero Trust is not a technology; it’s a security philosophy that rewires how we think about access”.
It's a smart idea; allowing security systems to keep up with industry change. In reality, however, despite the majority (96%) of companies incorporating, or planning to incorporate, a Zero Trust strategy, only 35% have made it to the implementation stage.
To decrease the frequency of corporate security breaches, this needs to change. The key to success? A mutually agreed understanding of what Zero Trust is and a cross-industry implementation drive.
Steps to a Modernized Security StrategyThe traditional business approach to cybersecurity, including an over-reliance on VPNs, led companies to draw a single ‘perimeter’ around their data. Thus, once breached, cybercriminals were able to steal and duplicate data from across the organization. In contrast, with a strategy led by strict adherence to the Zero Trust principle, access is confined to the singular section where the incident occurred.
The successful implementation of the Zero Trust principle requires a focus on data and information security across all networks and platforms. For example, the evaluation of risk should take place on a case-by-case basis, with deliberate decisions made to accept, mitigate, or transfer. With this approach, security teams have the flexibility needed to safeguard data and, when inevitable breaches do occur, ensure hackers can only access the top layer of information.
The use of Zero Trust as a basis for risk management necessitates a security infrastructure that does not become stagnant but is ever-changing to prevent cyberthreats from impacting the organization. At any point, a key tech stack component can become a target for criminals. In response, to drive resilience, security professionals should track any attempts, and techniques used, amending infrastructure in tandem.
Across sectors, cybersecurity budgets are growing. In March, the IDC's Worldwide Security Spending Guide predicted a spending growth of 12.2% in the year that followed, growing to $377 billion by 2028. Though this reflection of increased enthusiasm to strengthen security infrastructure is a step in the right direction, organizations need to ensure this investment isn’t just a one-off. Every element, and everyone’s access, must be continually questioned to protect from the escalating threat posed by a breach.
Designing a Forward-Looking Security StrategySolutions adopted with cybersecurity in mind may differ between organizations but, to drive resilience in the long-term and successfully embrace the principle of Zero Trust, vendor-neutral definitions of methodology and standards will be a necessity.
Once these are widely acknowledged, a commitment should be made to strengthening the underlying security infrastructure over the long-term, driven primarily by the principle of Zero Trust. In a landscape where security threats are ever-evolving, so too should each corporation’s ability to protect themselves from malicious actors. This includes blocking access to valuable data sets in the event of a breach and ensuring each person responsible for security is kept up to date with the latest insight on the nature of threats.
When applied in practice, though the exact methods and vision may differ, the guiding principles should remain consistent. To establish necessary considerations, organizations can start with the Zero Trust Commandments, which include the need for security to be integrated through culture and processes, the implementation of asset-centric controls, and the explicit validation of trust through using all relevant information available.
A news landscape dominated by security breaches and cyberattacks has created a generation of consumers that, more wary than before, are no longer shocked when the personal information they have willingly shared with corporations is taken with malicious intent. It should be expected that they will think twice before trusting a new organization with their information, placing an onus on businesses to prove that their infrastructure is robust.
As we look ahead to 2026, the companies that succeed will prioritize security, consider wider society expectations, and prove their commitment to Zero Trust in each decision they make.
We've rated the best firewall software.
This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.
The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit
Paying $20 every month for ChatGPT Plus has always been easy to justify professionally. I use it for research, document analysis, and more than a little organizational assistance around the house.
Still, it's another monthly subscription at a time when everyone is looking for ways to reduce the amount repeatedly drained from their bank accounts. That's why I've been pressing ChatGPT to justify its own cost using the finance feature it debuted a couple of months ago.
I didn't ask ChatGPT to defend its place on my credit card bill literally, though it probably could. Instead, I prompted it to use its analysis of some of my finances to identify places where my money might be evaporating without enough justification, or even awareness.
ChatGPT’s finances tool can review connected accounts, including spending. Although it can't make any changes to how the money moves around, it can point accusingly at a subscription, leaving me to cancel it myself.
If you haven't done so, the setup is straightforward enough. Using ChatGPT Work on the web, you add the Finances plugin and connect whatever accounts you wish.
You can analyze recent spending right away, but I've found the weekly update from ChatGPT and nearly real-time updates to be particularly useful in my quest to make ChatGPT Plus cover its own cost.
Subscription cutsOnly a couple of weeks after starting to use the feature, ChatGPT raised in its weekly report that one of my streaming services seemed abnormally expensive. It turned out to be due to an add-on costing $11.99 a month.
I had subscribed to watch one particular series, finished it, and then apparently just left the subscription in place. ChatGPT found the repeated charge and placed it beside my other entertainment subscriptions.
A second recurring payment belonged to a music app costing $9.99 a month. I remembered signing up for a trial, but I could not remember using it after the first week. The service had quietly collected nearly $60 since.
Canceling those two subscriptions saved $21.98 a month. ChatGPT Plus had technically paid for itself during the first review, with $1.98 left over. That is not enough to retire on, but it is enough to make my article headline legally defensible.
ChatGPT also spotted that my internet bill had increased by $10 from one month to the next. The promotional rate had expired, but ChatGPT suggested I could still get the savings with the right language. The AI wrote out a few talking points to get me any current discounts. After a surprisingly tolerable phone call, the company applied a new promotion and knocked the $10 back off my monthly bill.
Saving on foodThe subscription cuts were easy to measure — I only had to cancel them once and the savings appeared again the following month without any further actions necessary. Food spending was more complicated because there was no single charge I could remove and forget about, but ChatGPT helped me save money there too.
Ordinary takeout is more expensive than ever, but it's the delivery charges and service fees that really raise the final number. I'm not going to stop ordering takeout altogether and deprive myself of all the dishes I can't make myself. But switching to pickup as much as possible would make a big difference, according to ChatGPT. And it saved me about $35 over the next month.
ChatGPT also picked up several trips to convenience stores. Each transaction was small, usually a drink or some paper goods I'd forgotten to pick up at the grocery store. Nonetheless, convenience stores are more expensive than the grocery store, and the result added up quickly, as ChatGPT found in its analysis.
Just staying aware of that fact changed my habits and made me more likely to remember everything I needed to get at my regular shopping run and to bring my own drink when hitting the road.
After two months, the changes were saving me about $67 in a typical month. That figure included $21.98 from the two canceled subscriptions, $10 from the restored internet discount, and approximately $35 from spending less on delivery. Food costs will naturally move around, but the recurring savings alone were already covering the price of ChatGPT Plus.
I wouldn't blindly trust ChatGPT with finances or anything else. And I definitely wouldn't make it my first consultant for any big financial decisions. But these smaller changes are more important than you might think at first.
My Plus subscription still appears on the statement every month, but the reduced streaming and internet costs, not to mention fewer delivery fees, more than justify the $20 a month I'm paying for it.
Most organizations in UK and across Europe don’t struggle to recover from cyberattacks such as ransomware because they lack backups. They struggle because they try to restore everything at once.
In the aftermath of a major cyber incident, the instinct is to bring every system back online as quickly as possible. It feels like the fastest path back to normality. However, in reality, this approach often slows recovery down, reintroduces cyber risk and undermines trust just when the organization needs it most.
In fact, those that recover fastest start from a different premise. They assume large parts of their organization will be unavailable or untrusted, and they plan accordingly. This mindset leads to a much clearer goal - restore what matters most, quickly, and in a state you can trust.
What is critical to survival?Focusing on the critical areas of an organization is the idea behind the Minimum Viable Company (MVC) concept, sometimes referred to as the Minimum Viable Organization. It is a definition of what must exist for the organization to survive in challenging conditions such as a cyber incident.
It’s not just a technology concept, it’s a business definition of survival in terms of the minimum combination of people, processes, technology, documentation, facilities, and third-party dependencies required to keep a business functioning and creating value.
Where to start getting an MVC up and running?There are five key capabilities when it comes to operationalizing an MVC:
1. Clarity on critical services:A precise understanding of the systems and dependencies that directly support revenue and mission-critical operations is needed here. To understand the MVC, it is key to map systems to business value. Without this understanding, it’s impossible to accurately define the MVC.
The first steps focus on undertaking a structured assessment, aligning across business and technology stakeholders, and going through a realistic simulation of how recovery will unfold under pressure. This will uncover the key areas needed to provide just enough capability to keep the organization functioning safely during a crisis and guide recovery.
In practice, this means defining what must function in the first 24 hours, the first 72 hours, and the first week after a disruption.
2. A trusted foundation (Tier 0):In the event of a cyberattack, many organizations miss the critical foundational layer that allows them to establish identity and access control independently of compromised systems.
This foundational layer is what we call Tier 0 or the control plane for recovery. It includes identity and access management, networking and DNS, privileged access controls, core security tooling, physical access systems, and secure communication channels.
It also covers non-technical dependencies that are easy to overlook until they’re urgently needed such as incident response playbooks, contact lists and escalation paths, insurance policies, and contracts with external responders. These are the foundations underpinning the critical systems that need to be restored after a cyber incident. Without this layer, a trusted recovery is not possible.
3. Isolation of recovery assets:In the event of a cybersecurity breach, organizations must establish control of their most critical systems. This requires recovering data separately from clean snapshots and investigating in parallel, not sequentially, to ensure the recovered systems are not infected by malicious software.
As part of this process, backups, configurations, and recovery tooling must be protected from the same blast radius as production. If key recovery assets can’t be isolated, a rapid and trusted control of critical systems can’t be achieved.
4. Clean-room recovery capability:To set up an isolated environment to rebuild systems without reintroducing compromise, organizations need to set up what we call a ‘Digital Jump Bag’. This is a secure, isolated repository containing everything required to establish a trusted recovery starting point to rebuild systems without reintroducing compromise.
5. Validated ability to operateThe next step is to validate the ability of the MVC to operate through realistic crisis scenarios. Resilience must be proven under real-world conditions. Practice is important here because an untested plan remains theoretical. Rehearsals will also help to answer the Board’s most direct question in the event of a cyberattack - how long will it take to restore critical services to a trusted state?
Recovering faster by restoring what matters mostThe most common cyber resilience risks are failing to define what must come back first and how to bring it back in a state that can be trusted. That’s the difference between recovery as a process and recovery as a capability.
The MVC isn’t static. As an organization evolves, its definition must evolve too. But the principle stays the same: recovery improves when organizations stop trying to restore everything and start restoring what matters.
We've featured the best endpoint protection software.
This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.
The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit
- Microsoft used to tell you when a bot was in the lobby, now you can automatically block it
- Watch out, because legitimate add-ons like AI assistants could end up being blocked
- More protections are coming to Teams soon, too
Microsoft is rolling out an important new security policy for Teams, and admins can now finally block external meeting bots automatically.
Previously, the software would identify bots and label them accordingly within the lobby, but leave the final decision to meeting organizers – this new update prevents external bots from joining in the first place.
The company hopes the upgrade will give organizations more control over security to reduce the risks associated with unwanted participants.
Teams now automatically blocks external botsDespite the new change, the policy will be disabled by default, so Microsoft won't be banning third-party bots across the board. But company admins will be able to enable the policy for users or groups to reduce the burden and security risks accordingly, marking a major improvement over the earlier bot protections introduced just two months ago.
Importantly, any external bot detected in a meeting will be blocked from entering, thus legitimate tools could also be blocked, hence the decision to disable the tool by default. That includes legitimate tools like AI meeting assistants, transcription tools, recording add-ons and other similar tools.
"Bots have begun joining meetings that participants never intended them to attend," Meera Ajam explained in a June post, hinting at a shift to hybrid (human and machine) participants.
Nevertheless, it's an important change for the video conferencing platform, which has seen a rise in cybercriminal activity.
Further admin controls, like allow lists for approved bots and audit logs, are also set to come to the productivity suite. This latest update is starting to roll out now, with general availability expected by late September.
- Report points to AirPods 5 launching in September, in two models
- A cheaper version and a pricier option with noise cancellation
- We're expecting the big iPhone 18 Pro event to happen in early September
Despite all these news stories about AirPods with cameras, we've been hearing that 'normal' AirPods are set to release before the end of the year — and a brand-new report paints a much clearer picture of what we're about to see.
According to a report from Bloomberg's Mark Gurman, a prolific Apple tipster, the brand is teeing up to release AirPods 5, consisting of a standard pair of buds and an ANC-toting model.
It's suggested that these buds could come in early September — Apple's regular late-year launch is expected to bring iPhone 18 Pro models, Apple Watch 12 and a folding iPhone Ultra — but, by the sounds of it, there's wiggle room for them to release a little later. Still, it's often Apple's style to have one big event with lots of products.
Back in 2024, Apple expanded its non-Pro AirPods line two have two versions. We received the standard AirPods 4, and also the AirPods 4 with Active Noise Cancellation, the latter of which received a slightly more positive review from us. It was a similar model, but with a slightly higher price and ANC. It seems that Apple is continuing that trend.
AirPods that are really 'new'(Image credit: Future/Jacob Krol)Apple's standard AirPods see fewer leaks and rumors than the Pro model, and so there aren't any serious reports as to what we could expect. But we weren't glowing in our review, and there are a few tweaks Apple could make to improve them.
The main thing is simply the value. The AirPods 4 weren't expensive, but they just didn't offer as good value for money as the competition — the likes of the Nothing Ear (a) were cheaper, offered features such as ANC, and sounded better.
They stood in contrast to the AirPods Pro 2 (which were current when AirPods 4 launched) and later the AirPods Pro 3. The premium buds are excellent value compared to the competition, packing in more features, impressive sound, and a comfortable and light design.
Apple had the same problem I saw in Samsung's Galaxy Buds 4: a brand not making its cheaper options cheap enough. I'd like to see AirPods 5 either cost less (unlikely in today's tech world…) or have more features to give them a reason to cost more than the rest of the budget earbuds world.
I also think fit reliability is an area that needs to see changes too. It's a common problem in semi-open buds like the AirPods, that they don't grip in your ears as well as those with in-ear tips — I've lost count of how many AirPods runners I've seen lose their buds mid-jog. Apple's done good design work in this area, but I want to see improvements still.
Apple improved the battery life of its earbuds last time, and I hope it can do that again — they actually outperformed Apple's claimed figures, but it's normal to see earbuds hit close to 10 hours without ANC on, so it'd be great to see Apple get closer to that.
When it comes to audio, I hope they'll improve the way they handle detail. As we said in our AirPods 4 review, they lose fine resolution, which can affect the enjoyment of some tracks. Of all the upgrades I've listed, I'd imagine sonic tweaks are the ones most likely to come to fruition.
If Apple wanted to make some serious changes, it could make AirPods truly accessible to Android users (at the moment, most AirPods features require an iPhone, though they will function for basic audio with any Bluetooth device). I don't see the brand making this change, but it'd certainly shine a needed light on Apple's lesser-bought buds — however, Android support seems to be Beats' role in Apple's portfolio.
It's hard not to treat 2026 as a fallow year for AirPods. The fifth-generation models will likely be iterative updates, as the AirPods Max 2 were, and the camera-toting AirPods are expected to launch next year. But a few tweaks could help make the AirPods 5 feel like more than water-treading from Apple, even just two years after the previous models.
- The PocketBook Q is a new ereader with a 5.84-inch screen
- It's slimmer and lighter than most phone-sized rivals
- However, it doesn't run Android, limiting your access to apps
It seems like there’s a growing hunger for small ereaders, as following in the footsteps of the Boox Palma series, the Viwoods AiPaper Reader, and the even smaller Xteink devices, there’s now the phone-sized PocketBook Q.
This new ereader has a 5.84-inch E Ink Carta 1300 touchscreen with a 788 x 1576 resolution, a front light that lets you adjust both brightness and color temperature, 1GB of RAM, 32GB of storage, and a 1,550mAh battery which supposedly allows for more than a month of reading on a single charge.
It measures 154 x 75.8 x 6.5mm and 130g, making it even smaller and lighter than the Boox Palma 2 Pro and Viwoods AiPaper Reader, though its screen is smaller too, with both of those having 6.13-inch displays.
So this essentially sits somewhere between those devices and the likes of the Xteink X4 Pro with its 4.3-inch screen.
Apps included but this doesn't run Android(Image credit: PocketBook)In any case, the PocketBook Q also has physical side buttons that you can use to turn pages, and it works with Libby for borrowing digital library books. It also has broad format support for both ebook and audio files.
Plus, it comes with an IPX4 rating, for resistance to splashes and moisture, and there’s a text-to-speech tool.
There are a handful of pre-installed apps such as a book store, a browser, and a dictionary, among a few others, but this doesn’t run Android. Rather, it runs PocketBook OS — an operating system based on Linux, so you’re not getting access to the wealth of apps you’ll find on Android.
That helps keep the device focused on books so you avoid distractions, but also means you don’t have access to the likes of the Kindle or Kobo apps on there. That limitation is another way this differs from devices from Boox and Viwoods — though it’s in line with Xteink.
If the PocketBook Q sounds appealing, you’ll be able to grab one for $235 / £175 (around AU$330) when it launches in “late fall” — likely meaning sometime in November.
August's celestial wonders aren't done yet. Following the stunning total solar eclipse and the peak of the Perseid meteor shower a couple of weeks ago, we're set for another extraordinary show this week — a lunar eclipse.
On August 27-28, night sky observers in North America, South America, Europe, Africa and Western Asia are in for a treat, with a 96.2% lunar eclipse and 'blood moon' occurring.
It's not a total lunar eclipse — the next one of those takes place on December 31, 2028 (yes, new year's eve!) But for many, this week's eclipse will be the best until then, so it's well worth staying up late/getting up early for.
Here's exactly when and where the lunar eclipse can be seen — and my pro tips for capturing it with your camera of choice.
When and where to see the August lunar eclipseThe lunar eclipse can be seen on the night side of Earth, which on August 27-28 means that large portions of North America and South America, plus the western half of Europe and Africa, will enjoy the best of the eclipse — its maximum.
Further afield, viewers in eastern Europe and western parts of Asia will catch a glimpse of the eclipse — the penumbral and partial phase, but not the maximum 96.2% — while Australia won't see it at all. In total, 44.4% of the global population can catch a glimpse.
A large portion of the US is ideally placed to see the lunar eclipse, including Washington DC and New York, because it reaches its maximum at 12:12am ET time, and the moon will be relatively high in the night sky.
In Europe, the 'maximum' phase of the lunar eclipse occurs an hour before moonset/ sunrise Credit: ESO/F. Char (Image credit: ESO/F. Char)Across Europe, the maximum eclipse occurs at 6:12am (CEST), which is 5:12am BST. In cities including London, Paris and Madrid, the maximum eclipse is around one hour prior to sunrise and as the moon sets, meaning the moon will be very low in the sky — offering the prospect of superb photography opportunities.
Those timings are for the maximum eclipse, but the 'penumbral' eclipse begins almost three hours before, and ends almost three hours after. Even as much as 90 minutes before maximum, the moon will start turning red as it moves into a partial eclipse phase.
- The timeanddate.com website provides exact times, dates and places for every eclipse, including for August 27-28, wherever you are in the world. It's a comprehensive resource, also covering eclipse FAQs, such as what is a lunar eclipse is, why the color of the moon changes and more.
The full eclipse cycle will last for about five hours in total, but you don't need to be on the alert for all of it. Let's take New York city as an example.
There, the event kicks off with a penumbral eclipse at 21:23pm ET (August 27), but viewing starts to get interesting from 22:33pm when the partial eclipse begins. This is a good time to set up your camera gear, because the moon will begin to lose its brightness, and will start turning reddish at its edge.
You'll soon see the weird sight of a crescent moon with a blurry straight line between the bright and dark areas. That's the line of Earth's atmosphere being projected onto the lunar surface.
Expect to see the moon turn reddish in color during the partial and maximum phases of the eclipse. Credit: Gill Carter (Image credit: Gill Carter)At 00:12am ET (August 28), the eclipse reaches it maximum, and the moon will be at a viewing altitude of 38.3 degrees, which is relatively high in the sky. At 96.2%, a sliver of bright area of the moon surface remains, but the rest should be a reddish color to the naked eye. This is the maximum phase, when you should takes lots of photos.
From then on, the bright area of the moon increases once more during the partial eclipse phase, which finishes at 1:51am ET, and the eclipse is fully finished at 3:02am. You may wish to stay up for the entirety in order to capture key phases of the eclipse — great for a montage — but the main activity will be in the hour around its maximum.
Meanwhile, in London the timings are less favorable, but the components for photography could be ideal. The penumbral eclipse begins at 2:23am BST (August 28), the partial eclipse begins at 3:33am, while the maximum eclipse is 5:12am, at which point the moon is close to the horizon, and it's approximately an hour before moonset/sunrise.
In the UK, you'll need a clear vantage point looking west to southwest to see the moon (and a dose of luck, if the forecast for cloud is accurate), and if you can plan to include landmarks/points of interest in the frame, it should make for dramatic images of the eclipse's maximum phase. The moon will have set below the horizon before the partial eclipse (after maximum) ends.
During the partial eclipse, the moon will appear part-bright and part-dim Credit: Gill Carter (Image credit: Gill Carter)Camera gear for the lunar eclipseSo, how do you do photograph a lunar eclipse? The good news is that you don't need any filters, as you do with a total solar eclipse. The bad news is that since the moon is so small, you're going to need some magnification for the moon to fill most of the frame. That means either using a telephoto lens, whether that's on a DSLR or a mirrorless camera, or a superzoom compact/bridge camera. Taking decent photos of the moon with your phone is going to be a tougher challenge.
In terms of focal length, a 600mm-equivalent lens (25x zoom on a phone, approx) should fill most of the frame with the moon. You might want to use a slightly wider-angle lens to include landmarks in the frame.
On a smartphone, typically the best optical zoom reach you'll have is 5x. The quality of a digital zoom is poor, and only gets worse the more you zoom in. Some flagship devices such as the Oppo Find X9 Ultra have better telephoto reach — 10x in the case of that phone — and a teleconverter accessory to further extend the maximum reach. My advice for most people is to use a camera with a telephoto lens instead.
Whatever camera you opt for, I recommend attaching it to a sturdy tripod support — especially if you're capturing multiple phases of the eclipse with landmarks in the frame. A tripod minimizes camera shake for sharper shots, and delivers the continuity you need for capturing the phases. Alternatively, find a secure surface to rest your camera on. A self timer or a remote shutter further minimizes camera shake, while shooting in the RAW format rather than JPEG/HEIF gives you more flexibility for editing.
It’s easy to make a montage of your shots License: CC0 Creative Commons (Image credit: CC0 Creative Commons)A lunar eclipse isn't easy to capture, but you will have plenty of time to play with various settings of your DSLR/ mirrorless/ superzoom compact camera. As well as a wide range of colors, lunar eclipses bring a lot of changes in brightness. Also bear in mind that when zoomed-in, the moon is a very fast-moving target (blame our rotating planet).
Consequently, I recommend setting the white balance manually — the Tungsten setting will maintain the color accuracy of the bright moon and rich blue of the night sky.
You'll also need a high shutter speed. So, as the moon dims in brightness, increase the ISO (try ISO 200 during the partial phase, and ISO 1600 during the maximum phase) and open the aperture (start at about f/11 and experiment).
However, it's not just about getting a sharp image, because during the partial eclipse, the moon will be part-bright and part-dim, so you have to make a choice about which side of the moon to expose for. The answer, of course, is to try both, many times over.
Take a spare battery out with you, make sure your memory card has plenty of space on it, and prepare for a marathon post-processing session. Most of all, cross your fingers for clear visibility — cloud cover puts paid to the best-laid plans!
- HMD Global has unveiled the Nokia 300 Charge
- The feature phone can double up as a power bank
- There's also a microSD slot and headphone jack
The Nokia brand lives on, under the stewardship of HMD Global, and following on from four feature phones that debuted in July complete with AI buttons, we now have the Nokia 300 Charge — a handset that's a little different from the norm.
As you can see from the official site (via Notebookcheck), the phone comes with a power bank mode that lets you charge up other gadgets at 10W via the USB-C port on the side. Maybe you could use it to recharge your headphones, or a secondary phone.
While the 3,700 mAh battery in the Nokia 300 Charge isn't huge by power bank standards, it's almost enough to give an Apple iPhone 17 Pro a full charge. It's also a pretty massive capacity for a feature phone, and Nokia says you can get up to 37 hours of talk time and over 40 days of standby time on this device.
Also worth noting is the "high-power" LED flashlight that sits on the top of the device, which is apparently 4x brighter than the one on the Nokia 105. It could well prove handy for finding your way around after dark.
Dimensions, specs, and priceThe Nokia 300 Charge can double as a power bank (Image credit: Nokia)Nokia lists this as being available in green and sandstone, though there's also a black colorway visible on the website. Measuring 136.55 mm x 55 mm x 14.94 mm (5.4 inches x 2.2 inches x 0.59 inches), it tips the scales at 138 grams (0.3 pounds).
The Nokia 300 Charge comes running a 2.4-inch screen with a QVGA resolution and a QVGA camera on the back (though specific resolutions and megapixels aren't listed). A Unisoc SC6531E chipset is paired with 4MB of RAM, and there's 4MB of internal storage.
Retro phone fans will be pleased to know there's a microSD card slot, which lets you expand the storage up to 32GB. There's even a classic 3.5 mm headphone jack for listening to your tunes — though no support for Spotify, obviously. The standard Nokia S30+ software runs everything on board.
As yet, there's no international pricing for the phone, though it does appear on the global website for HMD. In the Philippines, the handset is available for 1,990 pesos (roughly $32 / £24 / AU$45 with a direct currency conversation).
- Crooks used Google Sites and stolen Google Ads accounts to push fake OpenAI Codex pages
- macOS users tricked into pasting Terminal commands, leading to AMOS infostealer infection
- Campaign abuses Google’s trust signals; Windows download button was a decoy, only Mac payload worked
Cybercriminals were seen abusing Google Sites, the Google ad network, and OpenAI’s good name, in a campaign that targets macOS users with infostealers.
According to security researchers CATO CTRL, the crooks used Google Sites to create a fake version of the OpenAI Codex download site. To avoid being flagged by Google’s security systems and ultimately removed, the site itself contains no malicious code or download links, whatsoever. Instead, it hosts an iFrame that displays content hosted elsewhere.
Then, they advertised that site on the Google Ads network. Google is usually good at spotting and preventing malicious ads from running on its network, but sometimes threat actors steal legitimate accounts with good standing and use them to bypass automated scans and get the ads listed, while also spending other people’s money on the ad campaign.
Not ClickFixThe ads were displayed to users searching for “codex macos download”, at the very top of the page. Using both Google Sites and Google Ads is a deliberate attempt to appear legitimate and trustworthy since after all, many people trust whatever Google displays as the top result without double-checking or scrutinizing the result.
Those that do click will see a website that, by all accounts, looks like OpenAI’s download site for Codex, the company’s AI coding agent. The site has download buttons for both Windows and Mac, but only the latter works. The download and installation process was designed to look “advanced” - instead of getting an executable, the victims are told to paste a command in Terminal.
Cato’s researchers call this a ClickFix attack, but ClickFix usually displays a fake problem, before offering an equally fake solution. This looks more like another way to appear legitimate because after all, several AI agents are specifically designed to be installed and run from the macOS Terminal, including OpenAI’s Codex CLI.
The end goal of the campaign is to deploy AMOS, a known macOS infostealer capable of grabbing browser data, login credentials, cryptocurrency wallet information, and more.
Via SiliconANGLE
- The Witcher 4 is officially targeting a 2028 release window
- CD Projekt Red joint-CEO Michal Nowakowski says the game won't be at Gamescom 2026
- He confirms that the game is the studio's "most ambitious game to date"
As CD Projekt Red prepares to showcase The Witcher 3: Wild Hunt's next major expansion, the studio has confirmed that The Witcher 4 is officially targeting a 2028 release window.
In a video posted to social media ahead of Gamescom Opening Night Live, CD Projekt Red joint-CEO Michal Nowakowski teased Songs of the Past, The Witcher 3's third expansion launching in 2027, saying, "We've got a lot of the expansion to show off, including a taste of its dark story, and the new continent it will bring."
Songs of the Past will get a full reveal at Gamescom and is rumored to be a prelude to The Witcher 4, which will star Ciri as the titular witcher. Fans have been waiting for another glimpse of the sequel since the technical demo was shared last year; however, Nowakowski has confirmed the studio won't be showcasing the game at Gamescom.
To our beloved fans, players, and community:As we near #gamescom in just a few days, CD PROJEKT RED Joint-CEO Michał Nowakowski would like to personally invite YOU to join us there, and hear about the future of The Witcher franchise! pic.twitter.com/Jyam30SrQHAugust 24, 2026
He revealed that more than 500 developers are currently working on The Witcher 4, and the game will feature "a huge and immersive open world, intense and action-packed gameplay, and a deep, impactful story that we hope will stay with you for a long time."
"Simply put, this is our biggest, boldest, and most ambitious game to date," Nowakowski said, before confirming that The Witcher 4 is "targeting" a 2028 launch window, which significantly narrows down its expected release date.
"I know it's a bit of a wait and you'd love to play it sooner," he said, "but let the team cook. It will be worth the wait."
The joint-CEO added that fans can expect Gamescom to be in CD Projekt Red's plans "for the coming years," suggesting The Witcher 4 could be featured at next year's or 2028's showcase.
While we finally have a launch window, this means the game could still slip to 2029 depending on its development status. It's also unclear if the sequel will get a PS5 physical edition, as Sony plans to end production of game discs from January 2028.


