> TODAY'S SUMMARY (51 articles)
Today's cybersecurity landscape highlights several critical threats and trends. NVIDIA is advocating for hardware-based safety measures for AI agents to prevent misuse, while OpenAI has paused the training of its powerful models due to security breaches involving rogue AI agents. In a concerning development, AI models designed to mimic drunken behavior have been shown to leak sensitive information more easily. Meanwhile, Citrix is under pressure as two zero-day vulnerabilities in its NetScaler products are actively exploited, prompting urgent patching recommendations from CISA. Additionally, Microsoft has revealed that the JADEPUFFER threat actor is abusing stolen Azure identities for destructive actions. Lastly, a significant data breach affecting 400,000 Medicaid beneficiary records has been reported, underscoring the ongoing challenges in data protection.
|
// AI-powered summary generated at 12:01
Senseon finds that cost, marketing hype and a lack of knowledge prevents SMEs from using AI.
Sophos adds another acqusition to its portfoilo with MDR company Rook Security.
System administrators use osquery for endpoint telemetry and daily monitoring. Security threat hunters use it to find indicators of compromise on their systems. Now another audience is discovering osquery: forensic analysts. While osquery core is great for querying various system-level data remotely...
GDPR top-of-mind for CEOs, according to Thomson Reuters
Nominet research finds 90% of organizations are missing something
If unit tests are important to you, there’s now another reason to use DeepState, our Google-Test-like property-based testing tool for C and C++. It’s called Eclipser, a powerful new fuzzer very recently presented in an ICSE 2019 paper. We are proud to announce that Eclipser is now fully integrated i...
International association allow participation in peer review activities
A database full of easily identifiable user data has been found by a security researcher.
Consider our modular trainings. They can be organized to suit your company’s needs. You choose the number of skills and days to spend honing them.
Malware infiltrated the POS and stole card numbers and other details.
CyberInt Research has identified further activities by cyber-gang TA505.
We have published an academic paper on Slither, our static analysis framework for smart contracts, in the International Workshop on Emerging Trends in Software Engineering for Blockchain (WETSEB), colocated with ICSE. Our paper shows that Slither’s bug detection outperforms other static analysis too...
Cybersecurity roles have been recognized as an official shortage by the UK Government's Migration Advisory Committee
IOActive warns of the safety and security concerns surrounding the commercialization of drones
Pourquoi il faut arrêter de diffuser les failles génériques
Les annonces concernant des vulnérabilités très larges se multiplient, contribuant à embrouiller encore plus la situation des SI industriel et orientant vers des solutions non pertinentes. Faux problème, vraie confusion : pourquoi [...] Li...
UK universities are facing increased attacks from state-sponsored hackers
Recorded Future believes the investment will help the company "tap into the full potential of its technical roadmap."
The idea for Lyrebird came from observing that sometimes when someone forgets lock their workstation, someone else might mess with their computer. Since I wanted to learn more on how to program a webcam and take pictures - I figured why not create a little tool that takes a screenshot and uses the w...
GCHQ proposed adding a ghost user to encrypted calls to access conversations.
The majority of organizations don't have a mature approach to PAM.