 Your new post is loading...
 Your new post is loading...
|
Scooped by
Gust MEES
October 15, 2024 2:39 PM
|
|
Scooped by
Gust MEES
October 15, 2024 2:25 PM
|
|
Scooped by
Gust MEES
October 9, 2024 7:01 PM
|
|
Scooped by
Gust MEES
October 9, 2024 5:55 PM
|
|
Scooped by
Gust MEES
October 8, 2024 2:25 PM
|
Linux-Malware "Perfctl" befällt offenbar schon seit Jahren Linux-Server. Eine ausgeklügelte Malware befällt massenweise Linux-Server mit falschen Konfigurationen. Das blieb lange unentdeckt, auch wegen der guten Tarnung. Eine jetzt entdeckte Malware hat es auf Linux-Server abgesehen: Wie die Experten der Cybersecurity-Beratung Aqua Security berichten, ist das Programm namens "Perfctl" vermutlich schon seit 2021 im Umlauf und befällt Linux-Systeme, um diese heimlich als Proxyserver und für Cryptomining zu nutzen. Das Schadprogramm kann auch als Loader für weitere unerwünschte Programme fungieren. Learn more / En savoir plus / Mehr erfahren: https://www.scoop.it/t/securite-pc-et-internet/?&tag=Linux
|
Scooped by
Gust MEES
September 26, 2024 3:42 PM
|
No fix yet plus criticalness plus uncertainty plus talk of example exploit equals nightmare Jessica Lyons Details about an as-yet-non-public critical 9.9-out-of-10-severity unauthenticated remote-code execution vulnerability affecting all GNU/Linux systems could be revealed today.
That's according to software developer Simone Margaritelli, who says there's still no fix for the decade-old flaw he disclosed to developers three weeks ago. If it is as described, the bug could be used to hijack Linux-based systems from across the internet or network. Learn more / En savoir plus / Mehr erfahren: https://www.scoop.it/t/securite-pc-et-internet/?&tag=Linux
|
Scooped by
Gust MEES
September 25, 2024 10:31 AM
|
Software developers have embraced “artificial intelligence” language models for code generation in a big way, with huge gains in productivity but also some predictably dubious developments. It’s no surprise that hackers and malware writers are doing the same.
According to recent reports, there have been several active malware attacks spotted with code that’s at least partially generated by AI.
|
Scooped by
Gust MEES
July 26, 2024 1:48 PM
|
X uses your data to train its Grok AI assistant, but if you’d like to opt out of that, you can do that right from your settings menu. It is accessible on the web right here, or you can find it yourself if you click the three dots menu, then “Settings and privacy,” then “Privacy and safety,” and then “Grok.
|
Scooped by
Gust MEES
July 3, 2024 5:01 PM
|
|
Scooped by
Gust MEES
January 24, 2024 1:23 PM
|
Over 5,300 internet-exposed GitLab instances are vulnerable to CVE-2023-7028, a zero-click account takeover flaw GitLab warned about earlier this month.
The critical (CVSS score: 10.0) flaw allows attackers to send password reset emails for a targeted account to an attacker-controlled email address, allowing the threat actor to change the password and take over the account.
Although the flaw does not bypass two-factor authentication (2FA), it is a significant risk for any accounts not protected by this extra security mechanism. Learn more / En savoir plus / Mehr erfahren: https://www.scoop.it/topic/securite-pc-et-internet/?&tag=GitHub
|
Scooped by
Gust MEES
January 12, 2024 4:26 PM
|
An AI threat guide, outlining cyberattacks that target or leverage machine learning models, was published by the National Institute of Standards and Technology (NIST) on Jan. 4.
The nearly 100-page paper, titled “Adversarial Machine Learning: A Taxonomy and Terminology of Attacks and Mitigations,” provides a comprehensive overview of the cybersecurity and privacy risks that come with the rapid development of both predictive and generative AI tools over the last few years.
|
Scooped by
Gust MEES
January 3, 2024 11:55 AM
|
Exploit erlaubt böswilligen Zugriff trotz Passwort-Reset Durch eine Schwachstelle in einem OAuth-Endpunkt können sich Cyberkriminelle dauerhaft Zugriff auf das Google-Konto einer Zielperson verschaffen. Learn more / En savoir plus / Mehr erfahren: https://www.scoop.it/topic/securite-pc-et-internet
|
Scooped by
Gust MEES
December 20, 2023 12:02 PM
|
|
|
Scooped by
Gust MEES
October 15, 2024 2:31 PM
|
A new ‘super-realistic’ AI scam could get your Gmail account hacked A Microsoft security expert warns Gmail users of a new convincing social engineering attack.
Warning signs of a scam attempt The advent of generative AI has opened up all kinds of opportunities, but it has also ramped up various risks and dangers.
We’ve previously seen hackers who can use AI-generated codes, phishing emails, or even deepfakes to make even more realistic fraud attempts — ones that even security experts can easily fall for.
|
Scooped by
Gust MEES
October 10, 2024 8:23 AM
|
|
Scooped by
Gust MEES
October 9, 2024 6:57 PM
|
Internet Archive's "The Wayback Machine" has suffered a data breach after a threat actor compromised the website and stole a user authentication database containing 31 million unique records. Learn more / En savoir plus / Mehr erfahren: https://www.scoop.it/topic/securite-pc-et-internet
|
Scooped by
Gust MEES
October 9, 2024 5:49 PM
|
|
Scooped by
Gust MEES
September 30, 2024 11:27 AM
|
A recent cyber vulnerability in ChatGPT’s long-term memory feature was exposed, showing how hackers could use this AI tool to steal user data. Security researcher Johann Rehberger demonstrated this issue through a concept he named “SpAIware,” which exploited a weakness in ChatGPT’s macOS app, allowing it to act as spyware.
|
Scooped by
Gust MEES
September 26, 2024 1:22 PM
|
Cybersecurity researchers have disclosed a set of now patched vulnerabilities in Kia vehicles that, if successfully exploited, could have allowed remote control over key functions simply by using only a license plate.
"These attacks could be executed remotely on any hardware-equipped vehicle in about 30 seconds, regardless of whether it had an active Kia Connect subscription," security researchers Neiko Rivera, Sam Curry, Justin Rhinehart, and Ian Carroll said.
The issues impact almost all vehicles made after 2013, even letting attackers covertly gain access to sensitive information including the victim's name, phone number, email address, and physical address. Learn more / En savoir plus / Mehr erfahren: https://globaleducationandsocialmedia.wordpress.com/2014/01/21/why-is-it-a-must-to-have-basics-knowledge-of-cyber-security-in-a-connected-technology-world/ http://www.scoop.it/t/securite-pc-et-internet/?tag=SHODAN+Search+Engine http://www.scoop.it/t/21st-century-learning-and-teaching/?tag=Internet+of+Things http://www.scoop.it/t/securite-pc-et-internet/?tag=smart-TV http://www.scoop.it/t/securite-pc-et-internet/?tag=Internet+of+things http://www.scoop.it/t/securite-pc-et-internet/?tag=Cars
|
Scooped by
Gust MEES
August 22, 2024 6:02 PM
|
|
Scooped by
Gust MEES
July 5, 2024 1:00 PM
|
The New York Times reported on July 4, 2024, that OpenAI suffered an undisclosed breach in early 2023.
The NYT notes that the attacker did not access the systems housing and building the AI, but did steal discussions from an employee forum. OpenAI did not publicly disclose the incident nor inform the FBI because, it claims, no information about customers nor partners was stolen, and the breach was not considered a threat to national security. The firm decided that the attack was down to a single person with no known association to any foreign government.
Nevertheless, the incident led to internal staff discussions over how seriously OpenAI was addressing security concerns.
|
Scooped by
Gust MEES
February 9, 2024 9:54 AM
|
|
Scooped by
Gust MEES
January 12, 2024 4:30 PM
|
|
Scooped by
Gust MEES
January 3, 2024 12:05 PM
|
Google-Nutzer aufgepasst: Trojaner nutzt Cookies, um Konten zu übernehmen Ein relativ neuer Typ von Schadsoftware nutzt Cookies, um Zugang zu Google-Konten zu erlangen. Da er diese auch selbst generieren und entschlüsseln kann, behalten Hacker auch dann Kontrolle über das Konto, wenn das Passwort geändert wird. Learn more / En savoir plus / Mehr erfahren: https://www.scoop.it/topic/securite-pc-et-internet
|
Scooped by
Gust MEES
December 26, 2023 11:54 AM
|
ChatGPT est victime d’une nouvelle faille de sécurité. En exploitant cette brèche, il est possible d’extraire des données sensibles concernant des individus en s’adressant au chatbot d’OpenAI.
|
The UK’s cyber watchdog says that companies need to be more mindful with how they handle their multi-factor authentication.
The National Cyber Security Centre (NCSC) said companies can no longer rely on MFA as a blanket solution to their network security woes. The problem, say experts, is that in many cases attackers are now able to intercept MFA keys much in the same way they did passwords.
“Attackers have realized that many of the same social engineering techniques that tricked us into handing over passwords can also be updated to overcome some methods of MFA,” the NCSC said.
Learn more / En savoir plus / Mehr erfahren:
https://www.scoop.it/t/securite-pc-et-internet/?&tag=Two-factor+authentication
https://www.scoop.it/topic/securite-pc-et-internet/?&tag=2FA
https://www.scoop.it/t/securite-pc-et-internet/?&tag=DATA-BREACHES
https://www.scoop.it/topic/securite-pc-et-internet/?&tag=MFA