5 Critical Steps to Prepare for AI-Powered Malware in Your Connected Asset Ecosystem

December 6, 2023 at 06:18AM AI-powered attacks are on the rise, necessitating a comprehensive security strategy beyond mere incident management, as discussed in SecurityWeek’s article “5 Critical Steps to Prepare for AI-Powered Malware in Your Connected Asset Ecosystem.” Meeting Takeaways: 1. It is anticipated that AI-powered attacks will become increasingly prevalent. 2. Adopting a comprehensive … Read more

Shielding the data that drives AI

December 6, 2023 at 05:27AM Organizations must prioritize securing critical data and IT infrastructure against a growing threat landscape and stringent regulations. Intel’s confidential computing, featuring in their 4th Generation Xeon processors, offers encryption-based protection for AI-powered applications, ensuring data security in storage, transit, and processing, while enabling regulatory compliance. Meeting Takeaways: 1. Prioritization: Organizations … Read more

Keeper Security Survey Finds 82% of IT Leaders Want to Move Their On-Premises Privileged Access Management (PAM) Solution to the Cloud

December 5, 2023 at 06:55PM Keeper Security’s report highlights IT leaders’ preference for cloud-based over on-premises Privileged Access Management (PAM) solutions due to cost and complexity concerns. 82% favor moving PAM to the cloud for better security and efficiency. The report also emphasizes the need for zero-trust and zero-knowledge cybersecurity in the current economic climate. … Read more

LLMs Open to Manipulation Using Doctored Images, Audio

December 5, 2023 at 05:51PM Cornell researchers will demonstrate at Black Hat Europe 2023 that malicious instructions hidden within images and audio clips can be used to manipulate AI chatbot responses, leading to indirect prompt injection attacks. This can result in harmful actions like redirecting to malicious URLs or extracting personal information without users realizing, … Read more

DSPM deep dive: debunking data security myths

December 5, 2023 at 11:26AM DSPM (Data Security Posture Management) has gained attention for providing visibility into data’s location, access, usage, and security. It’s not solely about cloud infrastructure but encompasses all data, including on-premises and SaaS. Discovery is just the start; reducing real risks requires deep insight and actionable security measures. Varonis emphasizes the … Read more

Embrace Generative AI for Security, but Heed Caution

December 5, 2023 at 10:09AM Advocates see generative AI as a tool for cybersecurity, aiding in automation and strategic tasks, while skeptics fear it may increase complacency and security incidents. AI can help detect vulnerabilities but lacks context, potentially leading to false recommendations. Human oversight remains crucial, as AI-generated code can hide vulnerabilities and humans … Read more

It’s ba-ack… UK watchdog publishes age verification proposals

December 5, 2023 at 05:27AM Ofcom proposes age verification methods like credit card checks and facial recognition to protect children online under the UK’s Online Safety Act. Privacy activists are concerned, while service providers face challenges balancing these checks with privacy laws. Final guidance is expected by early 2025. Key Takeaways from Meeting Notes on … Read more

Hershey phishes! – Crooks snarf chocolate lovers’ creds

December 4, 2023 at 02:24PM Hershey disclosed a phishing attack that compromised the personal and financial information of 2,214 people. The breach occurred in September, allowing unauthorized access to varied sensitive data. Hershey has since increased security measures and is offering two years of free credit monitoring to those affected, without additional compensation. High-profile cyberattacks … Read more

French government recommends against using foreign chat apps

December 1, 2023 at 01:18PM French PM Élisabeth Borne recommended government employees switch to the French app Olvid from foreign messaging apps like Signal and WhatsApp. Olvid offers end-to-end encryption without personal data and has ANSII security certification. The move isn’t a ban but aims to enhance data security within the government. Takeaways from the … Read more

WhatsApp’s New Secret Code Feature Lets Users Protect Private Chats with Password

December 1, 2023 at 05:48AM WhatsApp introduced a new Secret Code feature enhancing privacy by allowing custom passwords for sensitive chats. The feature complements the existing Chat Lock tool and adds a layer of security, especially for shared devices. This follows other privacy upgrades and debates over governmental use of secure messaging platforms. Takeaways from … Read more