2024

Nutanix starts thinking outside the VM – with extra help from Dell

Nutanix starts thinking outside the VM – with extra help from Dell 2024-05-21 at 15:01 By Simon Sharwood Brings its storage stack to AWS’s EKS but still has time to improve its hypervisor NEXT  Nutanix used its annual NEXT conference to reveal it has started thinking outside the VM by making its storage stack available […]

Nutanix starts thinking outside the VM – with extra help from Dell Read More »

Critical Fluent Bit flaw affects major cloud platforms, tech companies’ offerings (CVE-2024-4323)

Critical Fluent Bit flaw affects major cloud platforms, tech companies’ offerings (CVE-2024-4323) 2024-05-21 at 14:31 By Zeljka Zorz Tenable researchers have discovered a critical vulnerability (CVE-2024-4323) in Fluent Bit, a logging utility used by major cloud providers and tech companies, which may be leveraged for denial of service, information disclosure, or remote code execution. About

Critical Fluent Bit flaw affects major cloud platforms, tech companies’ offerings (CVE-2024-4323) Read More »

Insider Q&A: CIA’s Chief Technologist’s Cautious Embrace of Generative AI

Insider Q&A: CIA’s Chief Technologist’s Cautious Embrace of Generative AI 2024-05-21 at 14:31 By Associated Press CIA Director William Burns says AI tech will augment humans, not replace them. The agency’s first chief technology officer, Nand Mulchandani, is marshaling the tools. The post Insider Q&A: CIA’s Chief Technologist’s Cautious Embrace of Generative AI appeared first

Insider Q&A: CIA’s Chief Technologist’s Cautious Embrace of Generative AI Read More »

CISA Warns of Attacks Exploiting NextGen Healthcare Mirth Connect Flaw

CISA Warns of Attacks Exploiting NextGen Healthcare Mirth Connect Flaw 2024-05-21 at 14:31 By Eduard Kovacs CISA has added CVE-2023-43208, an unauthenticated remote code execution vulnerability, to its KEV catalog.  The post CISA Warns of Attacks Exploiting NextGen Healthcare Mirth Connect Flaw appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

CISA Warns of Attacks Exploiting NextGen Healthcare Mirth Connect Flaw Read More »

EPA Issues Alert After Finding Critical Vulnerabilities in Drinking Water Systems

EPA Issues Alert After Finding Critical Vulnerabilities in Drinking Water Systems 2024-05-21 at 14:31 By Eduard Kovacs The EPA has issued an enforcement alert, outlining the steps needed to comply with the Safe Drinking Water Act. The post EPA Issues Alert After Finding Critical Vulnerabilities in Drinking Water Systems appeared first on SecurityWeek. This article

EPA Issues Alert After Finding Critical Vulnerabilities in Drinking Water Systems Read More »

With ransomware whales becoming so dominant, would-be challengers ask ‘what’s the point?’

With ransomware whales becoming so dominant, would-be challengers ask ‘what’s the point?’ 2024-05-21 at 14:16 By Connor Jones Fewer rivals on the scene as big-gang success soars The number of new ransomware strains in circulation has more than halved over the past 12 months, suggesting there is little need for innovation given the success of

With ransomware whales becoming so dominant, would-be challengers ask ‘what’s the point?’ Read More »

Researchers Uncover Flaws in Python Package for AI Models and PDF.js Used by Firefox

Researchers Uncover Flaws in Python Package for AI Models and PDF.js Used by Firefox 2024-05-21 at 14:16 By A critical security flaw has been disclosed in the llama_cpp_python Python package that could be exploited by threat actors to achieve arbitrary code execution. Tracked as CVE-2024-34359 (CVSS score: 9.7), the flaw has been codenamed Llama Drama by software supply chain

Researchers Uncover Flaws in Python Package for AI Models and PDF.js Used by Firefox Read More »

OmniVision Says Personal Information Stolen in Ransomware Attack

OmniVision Says Personal Information Stolen in Ransomware Attack 2024-05-21 at 13:16 By Ionut Arghire Semiconductor giant OmniVision Technologies says personal information was stolen in a September 2023 ransomware attack. The post OmniVision Says Personal Information Stolen in Ransomware Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

OmniVision Says Personal Information Stolen in Ransomware Attack Read More »

Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security Defenses

Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security Defenses 2024-05-21 at 13:16 By  Microsoft on Monday confirmed its plans to deprecate NT LAN Manager (NTLM) in Windows 11 in the second half of the year, as it announced a slew of new security measures to harden the widely-used desktop operating system. “Deprecating

Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security Defenses Read More »

BT delays deadline for digital landline switch off date

BT delays deadline for digital landline switch off date 2024-05-21 at 12:46 By Paul Kunert Telco told they must protect vulnerable in race to turn off Public Switched Telephone Network BT has extended the deadline for migrating customers off the copper-based Public Switched Telephone Network (PSTN) to digital landlines to give more time to vulnerable

BT delays deadline for digital landline switch off date Read More »

NextGen Healthcare Mirth Connect Under Attack – CISA Issues Urgent Warning

NextGen Healthcare Mirth Connect Under Attack – CISA Issues Urgent Warning 2024-05-21 at 11:01 By The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a security flaw impacting NextGen Healthcare Mirth Connect to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The flaw, tracked as CVE-2023-43208 (CVSS score: N/A), concerns a case of unauthenticated remote

NextGen Healthcare Mirth Connect Under Attack – CISA Issues Urgent Warning Read More »

Google’s €1B Finnish datacenter expansion to heat the local community

Google’s €1B Finnish datacenter expansion to heat the local community 2024-05-21 at 10:31 By Tobias Mann AI might take your job, but you’ll be toasty warm while you starve Google plans to invest €1 billion to expand its datacenter campus in Finland – a move that will both bolster its AI compute capacity and reclaim

Google’s €1B Finnish datacenter expansion to heat the local community Read More »

“Linguistic Lumberjack” Vulnerability Discovered in Popular Logging Utility Fluent Bit

“Linguistic Lumberjack” Vulnerability Discovered in Popular Logging Utility Fluent Bit 2024-05-21 at 10:01 By Cybersecurity researchers have discovered a critical security flaw in a popular logging and metrics utility called Fluent Bit that could be exploited to achieve denial-of-service (DoS), information disclosure, or remote code execution. The vulnerability, tracked as CVE-2024-4323, has been codenamed Linguistic Lumberjack by Tenable

“Linguistic Lumberjack” Vulnerability Discovered in Popular Logging Utility Fluent Bit Read More »

ScarJo voices anger at OpenAI’s unauthorized sound-alike

ScarJo voices anger at OpenAI’s unauthorized sound-alike 2024-05-21 at 09:31 By Simon Sharwood Sam Altman liked the sound of a fictional ScarBot, which makes this all a bit creepy Audio  Movie megastar Scarlett Johansson has complained that one of the voices OpenAI’s ChatGPT uses in voice interactions sounds eerily like her own – despite having

ScarJo voices anger at OpenAI’s unauthorized sound-alike Read More »

Twenty-three year old alleged dark net drug kingpin arrested

Twenty-three year old alleged dark net drug kingpin arrested 2024-05-21 at 09:16 By Laura Dobberstein DoJ claims he used platform’s last days to extort its users A 23-year old Taiwanese man was arrested in New York for allegedly running the $100 million global dark web narcotics e-commerce operation known as Incognito Market, according to a

Twenty-three year old alleged dark net drug kingpin arrested Read More »

Strategies for combating AI-enhanced BEC attacks

Strategies for combating AI-enhanced BEC attacks 2024-05-21 at 07:31 By Mirko Zorz In this Help Net Security interview, Robert Haist, CISO at TeamViewer, discusses how AI is being leveraged by cybercriminals to enhance the effectiveness of BEC scams. How is AI being leveraged by cybercriminals to enhance the effectiveness of BEC scams? BEC attacks are

Strategies for combating AI-enhanced BEC attacks Read More »

Scroll to Top