Even if the Fed hikes rates, markets will immediate price in the next one. Since rate hikes will be big enough to weaken the economy, raise unemployment, and grow federal deficits, but too small to stop inflation from rising, the Fed may conclude rate hikes aren't worth the risk.
Shares of Broadcom (AVGO) fell about 5% on Friday after being in the red for three out of four trading days this week, amid reports that a vulnerability in VMware vCenter was being exploited.
周五,Broadcom 公司的股价下跌了约 5%。本周有四天时间该公司股价持续下跌,而这一情况发生在有报道称 VMware vCenter 中存在漏洞被利用的情况下。
On Thursday, BleepingComputer reported that a recently patched critical vulnerability (CVE-2026-59310) in VMware vCenter Syslog Server is being exploited in an active campaign to deploy a reverse SSH tool for persistence and remote access. Compromises have been seen at 361 IP addresses in 47 countries. Over half of them are located in Germany, the U.S., Turkey, Iran, and France.
周四,BleepingComputer 报道称,VMware vCenter Syslog 服务器中存在一个最近被修复的严重漏洞(CVE-2026-59310)。该漏洞正被利用来部署一种反向 SSH 工具,用于持久化访问和远程控制。目前,该漏洞已在 47 个国家的 361 个 IP 地址上被利用。其中,超过一半的攻击发生在德国、美国、土耳其、伊朗和法国。
VMware vCenter is a centralized management software platform to control, monitor, and configure an organization’s VMware virtual infrastructure, including virtual machines, ESXi servers, configurations, and access permissions.
VMware vCenter 是一种集中式管理软件平台,用于控制、监控和配置组织的 VMware 虚拟基础设施,包括虚拟机器、ESXi 服务器、配置信息以及访问权限等。
Broadcom had disclosed the vulnerability called CVE-2026-59310 on July 29 and described it as a critical directory traversal vulnerability in the vCenter Syslog server which could be exploited by an unauthenticated attacker with network access to execute arbitrary code.
Broadcom 在 7 月 29 日公开了名为 CVE-2026-59310 的漏洞,该漏洞属于目录遍历类漏洞。据该公司介绍,这种漏洞存在于 vCenter Syslog 服务器中,未经认证的攻击者可以通过获取网络访问权限来利用该漏洞执行任意代码。
Earlier this week, digital forensics and incident response, or DFIR, company Quirso noted that compromised systems started to connect to attacker-controlled infrastructure on Aug. 3, five days after Broadcom disclosed the flaw and released the emergency patch. Quirso added that it identified a total of 361 victim IPs by Aug. 7.
本周早些时候,专注于数字取证和事件响应领域的公司 Quirso 指出,那些受到攻击的系统在 8 月 3 日开始连接到攻击者控制的基础设施上。这一情况发生在 Broadcom 公布该漏洞并发布紧急补丁后的五天之后。Quirso 还表示,到 8 月 7 日时,他们已经发现了总共 361 个受害者的 IP 地址。
Broadcom did not immediately respond to Seeking Alpha's request regarding the exploitation of the vulnerability and the compromises observed at the IP addresses.
博通并未立即回应 Seeking Alpha 关于该漏洞被利用以及在这些 IP 地址上发生的问题的询问。
转:Cloudflare CEO Matthew Prince 于2026年6月3日在X上发帖,称:今年6月初, Agent/机器人在网络上的 HTTP 请求流量、尤其是网页/HTML 流量,已超过人类流量(并非整个互联网所有流量,不含视频流、邮件、游戏等)
……
groks核实:正确。
agentic(智能体)流量增长极快,bots 首次超过人类流量。此前Cloudflare CEO Matthew Prince在2026年3月SXSW预测要到2027年底或2027年初才会发生,结果提前约18个月。
Cloudflare Radar(覆盖约1/5网站)数据显示,当时 bots(含传统爬虫+AI agents)约占 HTML 网页请求的 57.5%,人类约 42.5%。交叉点大致在2026年5月前后出现,6月初公开宣布。后续Q2财报也确认,非人类流量首次超过50%。
注意:这主要指 Cloudflare 网络上的 HTTP 请求(尤其是网页/HTML 流量),并非整个互联网所有流量(不含视频流、邮件、游戏等)。传统 bots 与真正的 AI agents(代表用户浏览、填表、比价、下单等)被区分开,增长主要由后者驱动。HUMAN Security 报告显示 agentic AI 流量同比暴增约7851%。
2. Cloudflare 说五年后非人类流量将是人类流量的1000倍
正确,来自近期财报表述。 在2026年8月(Q2财报电话会议)中,Cloudflare CFO Thomas Seifert(多处报道也引用 CEO Matthew Prince 的类似说法)表示:如果当前趋势持续,五年后非人类流量可能达到人类流量的1000倍。人类流量本身不会下降,只是机器流量增长太快,人类将变成“舍入误差”(rounding error)。他们同时强调过去预测一直偏保守(之前低估了交叉时间)。
这是基于当前高速增长的外推,带有“如果趋势持续”的前提,并非确定性预测。
用一个例子就能很好的解释Agent和人类行为的差异:
一个人要买数码相机,可能看 5 个网站;一个 Agent 为了帮你找到最佳相机,可能访问5000个网站。