Thu.Jul 18, 2024

article thumbnail

Cyber Fail: Attack of the Zombie APIs!

Data Breach Today

Also: Election Security Dysfunction; the Legacy of Government-Backed Spyware Welcome to "Cyber Fail," where our experts uncover fails so we can all strengthen our defenses. Today, we take on the looming menace of zombie APIs, the terrors of election dysfunction and the scary legacy of government-backed spyware and its impact on privacy rights.

article thumbnail

SAPwned flaws in SAP AI core could expose customers’ data

Security Affairs

Researchers discovered security flaws in SAP AI Core cloud-based platform that could expose customers’ data. Cybersecurity researchers at Wiz uncovered five security flaws, collectively tracked as SAPwned, in the SAP AI Core cloud-based platform. An attacker can exploit the flaws to obtain access tokens and customer data. SAP AI Core, developed by SAP, is a cloud-based platform providing the essential infrastructure and tools for constructing, managing, and deploying predictive AI workfl

Cloud 122
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Operation Spincaster Targets Crypto Pig-Butchering Scams

Data Breach Today

Public-Private Effort Based on Intelligence Tied to $162 Million in Crypto Losses A public-private effort with the codename Operation Spincaster is using intelligence related to 7,000 compromised cryptocurrency wallets and $162 million in losses to warn victims, recover funds and disrupt groups involved in crypto-powered approval phishing or pig-butchering scams.

Phishing 271
article thumbnail

How to Protect Privacy and Build Secure AI Products

Security Affairs

AI systems are transforming technology and driving innovation across industries. How to protect privacy and build secure AI products? How to Protect Privacy and Build Secure AI Products AI systems are transforming technology and driving innovation across industries. However, their unpredictability raises significant concerns about data security and privacy.

Privacy 110
article thumbnail

Driving Responsible Innovation: How to Navigate AI Governance & Data Privacy

Speaker: Aindra Misra, Senior Manager, Product Management (Data, ML, and Cloud Infrastructure) at BILL

Join us for an insightful webinar that explores the critical intersection of data privacy and AI governance. In today’s rapidly evolving tech landscape, building robust governance frameworks is essential to fostering innovation while staying compliant with regulations. Our expert speaker, Aindra Misra, will guide you through best practices for ensuring data protection while leveraging AI capabilities.

article thumbnail

From Email to Human Behavior: Abnormal Security's Evolution

Data Breach Today

Co-Founder, CEO Evan Reiser Discusses New SaaS and Account Takeover Protections Abnormal Security co-founder and CEO Evan Reiser explains the company's evolution from email security to comprehensive human behavior security. He highlights new capabilities to protect against account takeovers and the use of AI to monitor SaaS applications such as Salesforce and Slack.

Security 260

More Trending

article thumbnail

Why AI and Human Behavior Drive New Urgency for Zero Trust

Data Breach Today

How CISOs Can Leverage Zero Trust and AI to Protect Against the Human Element We can't overlook the human factor. The adoption of Zero Trust is a response to the vulnerabilities that human actions can introduce, and AI is expected to bring greater automation to help organizations achieve their cybersecurity objectives faster.

article thumbnail

The Ninja Creami Ice Cream Maker is still $30 off after Prime Day

Collaboration 2.0

Craving a summer treat? The Ninja Creami can make all your frozen desserts and smoothies, comes with two pint-sized containers, and is still $30 off even though Prime Day is over.

97
article thumbnail

Top 'Privacy by Design' Considerations for Medical Devices

Data Breach Today

The interconnectedness of medical devices, which generate data that can be distributed to multiple systems that are often managed by different policies, presents privacy concerns that device manufacturers must address, said Adam Hesse, CEO of Full Spectrum.

Privacy 167
article thumbnail

Chile Leads Latin America With New Cybersecurity Governance

KnowBe4

Chile took a major step toward a more resilient cyber landscape for its citizens and the Latin American region on Tuesday, March 26, 2024, when Chile’s president of the Republic, Gabriel Boric, signed and enacted the new Cybersecurity and Critical Information Infrastructure Framework Law. The new framework and regulations it creates allow Chile to strengthen its digital security.

article thumbnail

Launching LLM-Based Products: From Concept to Cash in 90 Days

Speaker: Christophe Louvion, Chief Product & Technology Officer of NRC Health and Tony Karrer, CTO at Aggregage

Christophe Louvion, Chief Product & Technology Officer of NRC Health, is here to take us through how he guided his company's recent experience of getting from concept to launch and sales of products within 90 days. In this exclusive webinar, Christophe will cover key aspects of his journey, including: LLM Development & Quick Wins 🤖 Understand how LLMs differ from traditional software, identifying opportunities for rapid development and deployment.

article thumbnail

DOD Testing Generative AI Tools to Enhance Contracting

Data Breach Today

Pentagon Testing Generative AI to Streamline, Enhance Contracting Operations An official from the U.S. Department of Defense Chief Digital and Artificial Intelligence Office said Thursday the department is testing generative AI tools to help streamline its contracting and management operations and free up time for federal employees.

article thumbnail

Cyber Threats Targeting the 2024 Paris Olympics

KnowBe4

Our friends at the CyberWire reported: "ZeroFox and Fortinet have both published reports on threats facing the 2024 Olympics in Paris. ZeroFox says the primary cybersecurity threat will be cyberattacks from Russia, which are "likely to take the form of DDoS attacks, data compromises, and scams carried out by Russian threat actor groups.

article thumbnail

Breach Roundup: North Korean Hackers Target macOS Users

Data Breach Today

Interpol Arrests 300, Seizes $3 Million From West African Financial Crime Gang This week, North Korean hackers targeted macOS users, Bassett Furniture suffered a ransomware attack, Interpol arrested 300 and seized $3 million, new details emerged about Designed Receivable Solutions, Repligen reported a cyber incident, and MarineMax reported a data breach.

article thumbnail

The Jackery Explorer 1000 is one of the best portable power stations, and now get a whopping 52% off!

Collaboration 2.0

This Jackery portable power station is a fantastic model for camping and RV trips, or for emergencies and power outages -- and it's now got 52% off for in this Amazon Prime Day deal that's still live.

IT 93
article thumbnail

An Architect’s Guide for Selecting Scalable, Data-Layer Technologies

There’s no getting around it: selecting the right foundational data-layer components is crucial for long-term application success. That’s why we developed this white paper to give you insights into four key open-source technologies – Apache Cassandra®, Apache Kafka®, Apache Spark™, and OpenSearch® – and how to leverage them for lasting success. Discover everything you’ll want to know about scalable, data-layer technologies: Learn when to choose these technologies and when to avoid them Explore h

article thumbnail

Judge Dismisses Most SEC Fraud Claims Against SolarWinds

Data Breach Today

Feds Can Proceed With Claims About Falsehoods in SolarWinds Security Statement A judge Thursday dismissed most of the claims federal regulators made against SolarWinds related to allegedly misleading investors about the company's cybersecurity practices and risks. The SEC can proceed only with claims related to the security statement issued by SolarWinds before the 2020 hack.

article thumbnail

Meta pulls plug on release of advanced AI model in EU

The Guardian Data Protection

‘Unpredictable’ privacy regulations prompt Facebook owner to scrap regional plans for multimodal Llama Business live – latest updates Mark Zuckerberg’s Meta will not release an advanced version of its artificial intelligence model in the EU, blaming the decision on the “unpredictable” behaviour of regulators. The owner of Facebook, Instagram and WhatsApp is preparing to issue its Llama model in multimodal form, meaning it is able to work across text, video, images and audio instead of just one f

article thumbnail

Cryptohack Roundup: $230M WazirX Exploit in India

Data Breach Today

Also: Craig Wright, Be Seated. Will the Real Satoshi Nakamoto Please Stand Up? This week, WazirX, LI.FI, Dough Finance and CoinStats were breached; Satoshi Nakamoto impersonator's was charged; FTX and CFTC reached a settlement; a man was convicted of fraud; new details emerged in the Tornado Cash and SEC cases; and Taiwan set new AML rules.

157
157
article thumbnail

7 in 10 Organizations Experienced a Business Email Compromise Attack in the Last 12 Months

KnowBe4

Despite ransomware getting the lion’s share of the tech pub headlines, business email compromise (BEC) attacks are alive and well… and having a material impact.

article thumbnail

IT Leadership Agrees AI is Here, but Now What?

IT leaders are experiencing rapid evolution in AI amid sustained investment uncertainty. As AI evolves, enhanced cybersecurity and hiring challenges grow. This whitepaper offers real strategies to manage risks and position your organization for success.

article thumbnail

Gen AI Spending Slows as Businesses Exercise Caution

Data Breach Today

High Implementation Costs and Hallucination Risks Curb AI Investments in 2024 Generative AI has advanced rapidly over the past year, and organizations are recognizing its potential across business functions. But businesses have now taken a cautious stance regarding gen AI adoption due to steep implementation costs and concerns regarding hallucinations.

Risk 157
article thumbnail

Better than Ring? This video doorbell has no subscription fees and is $130 after Prime Day

Collaboration 2.0

The Lorex 2K video doorbell is the company's flagship front-door security system, and it's 28% off with an Amazon Prime Day deal that is still available.

article thumbnail

SAPwned flaws in SAP AI core could expose customers’ data

Security Affairs

Researchers discovered security flaws in SAP AI Core cloud-based platform that could expose customers’ data. Cybersecurity researchers at Wiz uncovered five security flaws, collectively tracked as SAPwned, in the SAP AI Core cloud-based platform. An attacker can exploit the flaws to obtain access tokens and customer data. SAP AI Core, developed by SAP, is a cloud-based platform providing the essential infrastructure and tools for constructing, managing, and deploying predictive AI workfl

Cloud 81
article thumbnail

Will the Galaxy S25 get satellite texting? Samsung is working on the feature again

Collaboration 2.0

Samsung has been working on satellite connectivity for at least a year. Will it finally catch up to Apple in the space race?

IT 95
article thumbnail

What Is Entity Resolution? How It Works & Why It Matters

Entity Resolution Sometimes referred to as data matching or fuzzy matching, entity resolution, is critical for data quality, analytics, graph visualization and AI. Learn what entity resolution is, why it matters, how it works and its benefits. Advanced entity resolution using AI is crucial because it efficiently and easily solves many of today’s data quality and analytics problems.

article thumbnail

Navigating retail Apple deployments with Mobile Device Management

Jamf

How to effectively deploy and integrate Apple retail solutions using Mobile Device Management and Apple Business Manager for a seamless retail technology experience

Retail 80
article thumbnail

Amazon Fire TV Omni Series QLED is worth it for Alexa fans

Collaboration 2.0

The Amazon Fire TV Omni QLED offers excellent picture and audio quality for both streaming and console gaming.

IT 97
article thumbnail

ISO 27001:2022 Transition Challenges and How to Use ISO 27002

IT Governance

Practical insight from an ISO 27001 consultant With ISO 27001:2013 certification now unavailable, organisations must transition to the 2022 standard for their ISO 27001 certification to remain valid. What are some of the challenges organisations face? And how can they overcome them? We put these questions to Matthew Peers, who helps our clients implement and prepare for ISO 27001 certification.

article thumbnail

Nvidia finally open sources some of its GPU drivers. How to tell what's under your hood

Collaboration 2.0

A welcome step toward a more open ecosystem for Linux users and developers, the upcoming R560 driver release also puts Nvidia in a better position to compete with AMD. It's about time.

IT 75
article thumbnail

Thinking About Investing in an XDR? Learn How to Cut Through the Hype

Cybersecurity Detection and Response tools are showing promise in helping reduce an attacker’s dwell time in your network. With reduced dwell time before detection, defenders have time to respond in containing the threat before significant damage can be done to your systems and confidential data. But cutting through the acronym soup and marketing hype can be a daunting task.

article thumbnail

Community of Leadership at CILIP Conference 2024

CILIP

Community of Leadership at CILIP Conference 2024 Photo of Debbie Hicks, Creative Director, The Reading Agency CILIP Conference 2024’s headline theme of intellectual freedom sparked thought and conservation from the opening address by PEN’s Daniel Gorman, who spoke how libraries, with their principles of open access, are a centrepiece of society and culture.

article thumbnail

This 3-in-1 MagSafe charger is my new favorite travel accessory, it supports Qi2, and it's still discounted!

Collaboration 2.0

The new ESR 3-in-1 wireless travel charger can simultaneously power your iPhone, AirPods, and Apple Watch. And it's still discounted in this post-Amazon Prime Day deal.

IT 75
article thumbnail

Celebrating HR success and shaping the future

OpenText Information Management

One of the most rewarding aspects of my work is engaging directly with customers to hear their HR digital transformation stories. It’s inspiring to learn about their unique configurations, the challenges overcome, and the benefits realized. Our recent 3rd customer roundtable event was a testament to the value of these interactions. The 90-minute session was filled with rich HR insights into best practices and innovative solutions.