Menu

Blog

Archive for the ‘cybercrime/malcode’ category: Page 30

May 4, 2023

CISA Issues Advisory on Critical RCE Affecting ME RTU Remote Terminal Units

Posted by in category: cybercrime/malcode

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday released an Industrial Control Systems (ICS) advisory about a critical flaw affecting ME RTU remote terminal units.

The security vulnerability, tracked as CVE-2023–2131, has received the highest severity rating of 10.0 on the CVSS scoring system for its low attack complexity.

“Successful exploitation of this vulnerability could allow remote code execution,” CISA said, describing it as a case of command injection affecting versions of INEA ME RTU firmware prior to version 3.36.

May 4, 2023

Researchers Uncover New BGP Flaws in Popular Internet Routing Protocol Software

Posted by in categories: cybercrime/malcode, internet

Cybersecurity researchers have uncovered weaknesses in a software implementation of the Border Gateway Protocol (BGP) that could be weaponized to achieve a denial-of-service (DoS) condition on vulnerable BGP peers.

The three vulnerabilities reside in version 8.4 of FRRouting, a popular open source internet routing protocol suite for Linux and Unix platforms. It’s currently used by several vendors like NVIDIA Cumulus, DENT, and SONiC, posing supply chain risks.

The discovery is the result of an analysis of seven different implementations of BGP carried out by Forescout Vedere Labs: FRRouting, BIRD, OpenBGPd, Mikrotik RouterOS, Juniper JunOS, Cisco IOS, and Arista EOS.

May 3, 2023

“As an AI language model”: the phrase that reveals how AI is polluting the web

Posted by in categories: cybercrime/malcode, internet, robotics/AI

A shibboleth for machine learning spam.

May 2, 2023

5G Is A Network Security Threat Wake-Up Call For Operators And Regulators

Posted by in categories: cybercrime/malcode, internet

Jan Häglund is the President and CEO of Enea, a specialist in software for telecommunications and cybersecurity.

As mobile networks are increasingly embedded in daily life, they have become a more attractive target for criminals and malicious state actors alike. A new spate of regulations globally suggests a unified response is required.

To consumers, 5G means ultra-fast connectivity and a smoother, better user experience. Few would be aware of how the interconnection and interworking between networks that enables this user experience is itself vulnerable to attack, with more devastating consequences than in the past, as we all increase our reliance on mobile communications.

May 2, 2023

Hacking with ChatGPT: Five A.I. Based Attacks for Offensive Security

Posted by in categories: cybercrime/malcode, robotics/AI

ChatGPT may represent one of the biggest disruptions in modern history with it’s powerful A.I based chatbot. But within weeks of ChatGPT’s release, security researchers discovered several cases of people using ChatGPT for everything from malware development to exploit coding. In this video, take a look at the five ways attackers are utilizing ChatGPT for wrong doing.

0:14 Intro to ChatGPT / Natural Language Processing (NLP) & GPT
1:28 Using ChatGPT for Vulnerability Discovery.
1:56 Vulnerability Prompts to Utilize.
3:10 Writing Exploits.
3:35 Exploit Prompts to Utilize.
4:33 Malware Development.
5:00 Malware Examples (Stealers, Command & Control)
5:42 Polymorphic Malware Development Using ChatGPT
6:21 A.I. Based Phishing using NLP (Natural Language Processing)
7:20 ChatGPT Advantages over Traditional Phishing Messages.
7:41 Custom Messages Using GPT-3
8:04 Using Macros and LOLBINs.
9:33 GPT-3 vs GPT-4 (Coming Soon)
9:56 Cybersecurity Considerations and Predictions.

May 1, 2023

What is the true potential impact of artificial intelligence on cybersecurity?

Posted by in categories: cybercrime/malcode, encryption, information science, robotics/AI

Greater scale and symbolic models are necessary before AI and machine learning can meet big challenges like breaking the best encryption algorithms.

Apr 30, 2023

Chinese hackers outnumber FBI cyber staff 50 to 1, bureau director says

Posted by in categories: cybercrime/malcode, government

U.S. cyber intelligence staff is vastly outnumbered by Chinese hackers, Federal Bureau of Investigation Director Christopher Wray told Congress as he pleaded for more money for the agency.

“To give you a sense of what we’re up against, if each one of the FBI’s cyber agents and intel analysts focused exclusively on the China threat, Chinese hackers would still outnumber FBI Cyber personnel by at least 50 to 1,” Wray said in prepared remarks for a budget hearing before a House Appropriations subcommittee on Thursday.

The disclosure highlights the massive scale of cyber threats the U.S. is facing, particularly from China. Wray said the country has “a bigger hacking program than every other major nation combined and have stolen more of our personal and corporate data than all other nations—big or small—combined.”

Apr 29, 2023

Augmenting and accelerating humans

Posted by in categories: cybercrime/malcode, robotics/AI

Join top executives in San Francisco on July 11–12, to hear how leaders are integrating and optimizing AI investments for success. Learn More

~“May you live in interesting times”~

Having the blessing and the curse of working in the field of cybersecurity, I often get asked about my thoughts on how that intersects with another popular topic — artificial intelligence (AI). Given the latest headline-grabbing developments in generative AI tools, such as OpenAI’s ChatGPT, Microsoft’s Sydney, and image generation tools like Dall-E and Midjourney, it is no surprise that AI has catapulted into the public’s awareness.

Apr 27, 2023

What AI Technology Is Doing for Longevity Now

Posted by in categories: biotech/medical, business, cybercrime/malcode, life extension, robotics/AI

In March 2023, MIT Technology Review revealed that Sam Altman, the CEO of OpenAI (ChatGPT), was the mystery investor behind the $180 million investment into stealth startup Retro Biosciences, a biotech company with the ambition of “adding 10 years to the human lifespan.” This investment marks the latest tech entrepreneur expressing their interest in longevity science and a new connection with innovative AI technology.

According to February 2023 reports, AI is continuing to gain traction in healthcare applications. Currently, the market is estimated at $14.6 billion (USD) with a compound annual growth rate (CAGR) of 47.6%, with solutions spread across various healthcare fields, such as patient data and risk analysis, precision medicine, cybersecurity, lifestyle management, and drug discovery.

The increasing convergence of AI technology and longevity science is sparking advancements in the sector, with established businesses, start-ups, and researchers utilizing the technology. Most recently, scientists explored how ChatGPT, an AI-based language model, was able to predict Alzheimer’s in 80% of cases when analyzing speech. However, it is not the only implementation.

Apr 26, 2023

Google releases security LLM at RSAC to rival Microsoft’s GPT-4-based copilot

Posted by in categories: cybercrime/malcode, robotics/AI

Join top executives in San Francisco on July 11–12, to hear how leaders are integrating and optimizing AI investments for success. Learn More

Today in the Moscone Center, San Francisco, at RSA Conference 2023 (RSAC), Google Cloud announced Google Cloud Security AI Workbench, a security platform powered by Sec-PaLM, a large language model (LLM) designed specifically for cybersecurity use cases.

Sec-PaLM modifies the organization’s existing PaLM model and processes Google’s proprietary threat intelligence data alongside Mandiant’s frontline intelligence to help identify and contain malicious activity, and coordinate response actions.

Page 30 of 199First2728293031323334Last