Patch now: Critical Nvidia bug allows container escape, complete host takeover

September 26, 2024 at 05:52PM Nvidia’s Container Toolkit has a critical bug, CVE-2024-0132, rated 9.0/10 in severity, allowing an attacker to escape containers and take over the host. Nvidia issued a fix with versions v1.16.2 and v24.6.2. The vulnerability affects cloud and AI workloads, impacting 33% of cloud environments. Wiz’s security researchers found and disclosed … Read more

Critical Nvidia Container Flaw Exposes Cloud AI Systems to Host Takeover

September 26, 2024 at 01:12PM Nvidia’s Container Toolkit is vulnerable to a TOCTOU flaw (CVE-2024-0132) that could allow attackers to escape containers and take control of the host system, exposing cloud environments to code execution and data tampering. The flaw affects over 35% of cloud environments using Nvidia GPUs, posing a significant threat to AI … Read more

Chainguard Raises $140 Million, Expands Tech to Secure AI Workloads

July 25, 2024 at 12:45PM Chainguard, a software supply chain security startup, raised $140 million in a new financing round, reaching a valuation in excess of $1 billion. The company, founded by ex-Google engineers, has raised a total of $256 million since its launch in late 2021. The funding will be used to expand into … Read more

Alkira Raises $100 Million for Secure Network Infrastructure Platform

May 16, 2024 at 11:01AM Alkira, a San Jose-based network infrastructure as-a-service provider, raised $100 million in Series C funding, led by Tiger Global Management, with participation from other investors. The company, founded in 2018, offers end-to-end secure cloud-based network infrastructure, supporting hybrid environments and providing visibility across the entire cloud network. The new funding … Read more