2024 Call for Code aims to harness gen AI to improve equality


This week IBM, along with charitable partner United Nations Human Rights, and program affiliate the Linux Foundation, launches its 2024 Call for Code Global Challenge with the aim of encouraging developers to use generative AI technology to create solutions that improve equitable access to resources and opportunities for historically underserved and vulnerable people.
Participants will have access to a trial version of watsonx, IBM's AI and data platform with AI Assistants, as well as IBM Cloud technology and developer-friendly training and resources to help teams develop their solutions.
OpenTelemetry -- what is it and why does it matter? [Q&A]


When OpenTelemetry was first released in 2019, there was a good deal of excitement about the prospect of a single standard set of telemetry data for the entire modern software stack.
OpenTelemetry set out to make robust, portable telemetry a built-in feature of cloud-native software, and give developers and platform engineers a common mental model for all the telemetry types.
Cybersecurity staff perform multiple different roles


Staff at various levels work in multiple cybersecurity functions according to the latest report from IANS research and recruitment specialist Artico Search.
It finds 42 percent have responsibilities that span multiple cybersecurity domains. Of the AppSec staff, 74 percent also contribute to product security and 67 percent are involved in identity and access management (IAM).
New platform improves visibility across attack surfaces


There is an increasing level of crossover and connectivity between IT, operational technology (OT) and IoT assets, which raises the risk of cyberattacks originating in IT systems and then spreading into OT environments.
To help businesses address this risk Tenable is launching a new exposure management platform that provides holistic visibility into assets across IT and OT environments.
In-house apps cause breaches at 92 percent of companies


A new study reveals that 92 percent of companies surveyed had experienced a breach in the past year due to vulnerabilities of applications developed in-house.
The report from Checkmarx shows that in recent years the responsibility for application security has shifted away from dedicated security teams and is now shared between AppSec managers and developers.
DDoS attacks against web apps and APIs surge


Globally, the average number of DDoS attacks per customer grew by 94 percent in 2023, according to a new report from Radware.
"The technological race between good and bad actors has never been more intense," says Pascal Geenens, Radware's director of threat intelligence. "With advancements like Generative AI, inexperienced threat actors are becoming more proficient and skilled attackers more emboldened. In 2024, look for attack numbers to climb and attack patterns, like the shift in Web DDoS attacks, to continue to evolve."
Cohesity launches gen AI search solution for business data


Businesses are dependent on data but extracting useful information in order to aid decision making, while ensuring it stays secure, can prove surprisingly difficult.
Cohesity Gaia, is the industry's first generative AI-powered conversational search assistant. Designed to help access organizations’ most important data to make smarter decisions faster, all while keeping data secure and compliant.
Companies overspend on Kubernetes thanks to underutilization of resources


Kubernetes is one of the most widely used container tools, but failure to accurately forecast resources leads to overprovision, waste and overspending.
A new report from Kubernetes automation platform CAST AI reveals high levels of underutilization are costing businesses more than necessary.
Cloud-focused malware campaigns on the increase


As commercial adoption of cloud technologies continues, cloud-focused malware campaigns have increased in both sophistication and number.
A new report from Cado Security is based on analysis of real-world techniques employed by attackers using honeypot infrastructure. Last year Cado introduced 'Cloudypots', a new, more sophisticated, high-interaction honeypot system.
New gen AI tool helps ease IT workloads


We've known for a long time that working in IT can be stressful and that stressed staff can put the organization at risk.
IT ops management platform InvGate is launching a new set of AI tools that aim to help IT teams do their jobs faster and more effectively.
Enterprise workers want more transparency around cybersecurity


The nature of cybersecurity is such that much of the work goes on in the background. People notice when there's a problem but not when there isn't.
A new report from CybSafe shows that 31 percent of enterprise workers in the US and UK would like to see more transparency around what the cybersecurity team does.
How IBM is supporting developers with AI education [Q&A]


In May of last year, IBM launched watsonx, its enterprise-ready AI and data platform, and made it generally available in July.
Alongside this it has launched some new free generative AI educational courses and content to help developers and IT practitioners build their AI and open source skills. We spoke with Savio Rodrigues, vice president, ecosystem engineering and developer advocacy at IBM to learn more.
Over 80 percent of organizations have open ports on public-facing cloud assets


A new report reveals that 81 percent of organizations have public-facing neglected cloud assets with open ports, making them prime targets for attackers who routinely perform reconnaissance to detect exposed ports and known vulnerabilities.
The report from Orca Security is based on analysis of data from billions of cloud assets on AWS, Azure, Google Cloud, Oracle Cloud, and Alibaba Cloud scanned by the Orca Cloud Security Platform in 2023.
74 percent of codebases have high-risk open source vulnerabilities


The percentage of codebases with high-risk open source vulnerabilities -- those that have been actively exploited, have documented proof-of-concept exploits or are classified as remote code execution vulnerabilities -- increased from 48 percent in 2022 to 74 percent in 2023, according to new research.
The Open Source Security and Risk Analysis (OSSRA) report from Synopsys is based on findings from more than 1,000 commercial codebase audits across 17 industries. While codebases containing at least one open source vulnerability remain consistent year-on-year at 84 percent, significantly more codebases contained high-risk vulnerabilities in 2023.
Fewer than half of IT leaders confident in their IoT security


A new survey from Viakoo shows that only 50 percent of IT leaders are confident in their Internet of Things security and that 55 percent of IoT cyber incidents could have been prevented with better security measures.
In addition 71 percent say they wish they had started their IoT security efforts differently in order to remediate issues faster.
Ian's Bio
Ian spent almost 20 years working with computers before he discovered that writing about them was easier than fixing them. Since then he's written for a number of computer magazines and is a former editor of PC Utilities. Follow him on Mastodon
© 1998-2025 BetaNews, Inc. All Rights Reserved. About Us - Privacy Policy - Cookie Policy - Sitemap.