Why the Demand for Cybersecurity Innovation Is Surging

November 18, 2024 at 10:05AM The cybersecurity landscape is evolving rapidly, driven by increasing threats and the exploitation of AI by cybercriminals. Companies are significantly raising cybersecurity budgets, yet attacks continue to escalate. As specialized solutions are in demand, companies that harness emerging technologies to enhance security will likely experience substantial growth in the sector. … Read more

OWASP Beefs Up GenAI Security Guidance Amid Growing Deepfakes

November 4, 2024 at 02:40PM Generative AI attacks, including deepfakes, are increasing, with AI-generated text in emails growing to 12%. OWASP published guidance for organizations to strengthen defenses. A deepfake incident during a job interview at Exabeam highlighted vulnerabilities. Experts suggest focusing on tech solutions and robust processes rather than solely training individuals to detect … Read more

OWASP Releases AI Security Guidance

November 4, 2024 at 08:22AM OWASP launched new security guidance for managing risks related to large language models and generative AI applications, part of the Top 10 for LLM Application Security Project. Resources include strategies for deepfake defense, AI security best practices, and a landscape guide for security solutions, aimed at enhancing organizational readiness against … Read more

Cyber Threats That Could Impact the Retail Industry This Holiday Season (and What to Do About It)

November 4, 2024 at 06:21AM As the holiday season approaches, retailers face increased cyber threats, especially AI-driven attacks. Imperva’s cybersecurity guide highlights issues like business logic abuse, DDoS attacks, bad bots, and API violations. To protect themselves, retailers should enhance their defenses with robust strategies for bot management, DDoS solutions, and API security measures. ### … Read more

THN Cybersecurity Recap: Top Threats, Tools and News (Oct 21 – Oct 27)

October 28, 2024 at 08:33AM Cybersecurity news reveals new threats including a critical Fortinet flaw under exploitation, severe cryptographic issues in cloud services, and North Korean Lazarus Group exploiting a Chrome vulnerability. Notably, Delta Air Lines sued CrowdStrike for a major outage, while CISA investigates unauthorized telecom access by Chinese threat actors. Stay informed and … Read more

Intel robustly refutes China’s accusations it bakes in NSA backdoors

October 18, 2024 at 01:40AM Intel has dismissed Chinese claims from the Cybersecurity Association of China that its chips contain NSA-directed security backdoors and have vulnerabilities. The allegations triggered calls for a cybersecurity review in China. The tensions between the US and China over cybersecurity are rising, with accusations from both sides intensifying. ### Meeting … Read more

4 Ways to Address Zero-Days in AI/ML Security

October 17, 2024 at 01:03PM The rapid adoption of AI and machine learning raises concerns about zero-day vulnerabilities, unique to these technologies. Traditional security practices must adapt to address AI-specific threats, such as prompt injection and data leakage. Security teams are urged to integrate security throughout the AI lifecycle and conduct proactive audits to mitigate … Read more

71% of Hackers Believe AI Technologies Increase the Value of Hacking

October 16, 2024 at 05:23PM Bugcrowd’s 2024 report reveals significant insights from 1,300 ethical hackers on the rising influence of AI in cybersecurity. Key findings highlight that 82% view the AI threat landscape as rapidly evolving, while 93% believe AI tools create new attack vectors. The report also notes a growing interest in hardware hacking … Read more

From Misuse to Abuse: AI Risks and Attacks

October 16, 2024 at 07:45AM Cybercriminals are increasingly using AI to enhance their capabilities, although much of the hype surrounding AI in cybercrime lacks substance. Currently, AI is mainly applied to simple tasks like phishing and code generation. However, security risks exist, particularly with custom AI tools, raising concerns over sensitive data exposure. ### Meeting … Read more

90% of Successful Attacks Seen in the Wild Resulted in Leaked Sensitive Data

October 9, 2024 at 05:14PM Pillar Security released groundbreaking research detailing real-world attacks on GenAI, revealing a 90% data theft success rate and a 20% bypass rate of security measures. The report emphasizes increasing attack frequency and complexity, urging organizations to adopt dynamic security solutions and tailored strategies to combat emerging threats in the evolving … Read more