A blog post by Nvidia’s Chief Security Officer David Reber refutes accusations made by the Chinese government of a backdoor in the company's AI chips that can be used as a remote kill switch.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
What OpenAI described as a "short-lived experiment" is now over, as the company will no longer allow Google and other search engines to index certain types of ChatGPT conversations.
In today’s threat landscape, security professionals aren’t short on signals. Rather, they’re drowning in them. From endpoint telemetry to user activity to cloud platform events, we’re collecting more indicators than ever before. Despite the volume of alerts, or perhaps because of them, organizations still struggle to detect threats early and accurately.
St. Paul, Minnesota, Hit by Major Cyber Attack, State of Emergency Declared, National Guard Deployed
St. Paul, Minnesota’s state capital, was hit by a major cyber attack, prompting the declaration of a state of emergency, the deployment of the National Guard, and an FBI response.
As government agencies and critical infrastructure sectors increasingly adopt Internet of Things (IoT) devices to enhance operational efficiency, they inadvertently expand their attack surfaces. Proliferation of wireless technologies introduces significant new vulnerabilities.
Tea Dating Advice, an app that allows women to perform background checks on men they are dating or interested in, faces a potential lawsuit after experiencing a data breach that leaked sensitive data, including private messages.
Google Threat Intelligence Group has warned about sophisticated cyber attacks on critical infrastructure by the Scattered Spider ransomware gang via VMware.
The Scattered Spider ransomware gang has been grabbing headlines with a string of bold and high-profile cyber attacks. But researchers with Google's Threat Intelligence Group (GTIG) now believe that some of these attacks may have been misattributed, and that the similarly long-tenured ShinyHunters group may have instead been the culprits.
A new theoretical attack described by researchers with LayerX lays out how frighteningly simple it would be for a malicious or compromised browser extension to intercept user chats with LLMs and insert prompt injection attacks designed to exfiltrate data without the target being aware.
Aeroflot canceled 54 of its 260 scheduled flights for the day due to the cyber attack, and an undetermined number of others experienced some amount of delay. 22 outbound flights from Moscow were subsequently canceled the following day, along with 31 incoming flights operated by subsidiary Rossiya Airlines.










