Russian Ransomware Gangs on the Hunt for Pen Testers

November 19, 2024 at 01:57PM Ransomware gangs like Apos, Lynx, and Rabbit Hole are recruiting pen testers to enhance their operations, reflecting the professionalization of Russian cybercrime. A Cato Networks report highlights the growing threat of ransomware, unauthorized AI, and underutilization of Transport Layer Security (TLS) in cybersecurity practices. ### Meeting Takeaways 1. **Ransomware Gangs … Read more

IBM Boosts Guardium Platform to Address Shadow AI, Quantum Cryptography

October 23, 2024 at 07:42AM IBM is enhancing its Guardium platform to address security challenges related to AI models and quantum safety. This upgrade aims to tackle issues associated with Shadow AI and improve quantum cryptography measures. **Meeting Takeaways:** 1. **Platform Update**: IBM is enhancing its Guardium platform. 2. **Focus Areas**: The upgrade aims to … Read more

Rogue AI: What the Security Community is Missing

October 3, 2024 at 04:39AM In this series, we’ve explored Rogue AI and its mitigations, aiming to shape the debate around cybersecurity threats. The piece delves into community efforts to assess AI risk and highlights different perspectives on Rogue AI within the security community, particularly focusing on the related risks highlighted by OWASP and the … Read more

Shadow AI, Sensitive Data Exposure & More Plague Workplace Chatbot Use

September 30, 2024 at 08:09AM AI chatbots are becoming prevalent in various work tools, yet employees often overlook data security. A survey by the US National Cybersecurity Alliance revealed that a significant portion of workers share sensitive information with AI tools without permission. This lack of awareness and training leads to potential data breaches, highlighting … Read more

Acuvity Raises $9 Million Seed Funding for Gen-AI Governance and In-house Development

September 5, 2024 at 10:24AM Sunnyvale, CA-based startup Activity has secured $9 million in seed funding led by Foundation Capital. Co-founded by Satyam Sinha, the startup addresses the lack of visibility and security issues posed by the rapid adoption of generation artificial intelligence (gen-AI) systems. Acuvity aims to provide governance of gen-AI platforms and assist … Read more

When Vendors Overstep – Identifying the AI You Don’t Need

June 12, 2024 at 08:06AM Microsoft introduced the AI-powered ‘Windows Recall’ to capture user activities on PCs, raising concerns about privacy and security. Other companies like DocuSign and Slack also faced backlash over their use of data for AI training. As businesses navigate the AI landscape, understanding and monitoring vendors’ data policies and fostering transparent … Read more

Unpacking 2024’s SaaS Threat Predictions

June 5, 2024 at 07:54AM Wing Security’s 2024 SaaS Security Report identified emergent threats and best practices for SaaS security. The report’s predictions have already manifested halfway through the year. Breach frequency is rising, demanding timelier threat alerts. Notably, Shadow AI, Supply Chain, Credential Access, and MFA Bypassing threats were outlined, all combatable with Automated … Read more

Aim Security Raises $10M to Tackle Shadow AI

January 31, 2024 at 07:42AM Israeli startup Aim Security raised $10 million for AI technology that secures the deployment of generative-AI utilities. Backed by YL Ventures and Cyber Club London, the company aims to provide oversight and control over AI-powered enterprise apps. It addresses the rise of ungoverned “Shadow AI tools” and the challenges they … Read more

First Step in AI/ML Security is Finding Them

January 19, 2024 at 08:31AM The growing use of AI in organizations poses new security risks. The adoption of AI tools without informing security teams leads to “shadow ML” and “shadow AI.” Legit Security’s platform provides visibility into all software components and developer tools. Securing machine learning involves finding its usage, threat modeling, and implementing … Read more

What Lurks in the Dark: Taking Aim at Shadow AI

October 27, 2023 at 10:13AM Generative AI tools are becoming a nightmare for security teams as they are used to create deepfakes and sophisticated phishing emails. A survey shows that 56% of employees use generative AI at work, but only 26% of organizations have policies in place. Shadow AI, unauthorized AI tool usage, poses a … Read more