How AI can help secure the software supply chain [Q&A]
Securing the software supply chain presents many challenges. To make the process easier OX Security recently launched OX-GPT, a ChatGPT integration aimed specifically at improving software supply chain security.
We spoke to Neatsun Ziv, co-founder and CEO of OX Security, to discuss how AI can present developers with customized fix recommendations and cut and paste code fixes, allowing for quick remediation of critical security issues across the software supply chain.
Qualcomm Snapdragon X Elite will make Windows 11 laptops exciting again
Qualcomm has brought excitement to the stagnant Windows 11 notebook market with today’s announcement of the new ARM-based Snapdragon X Elite platform at the Snapdragon Summit. This new platform, equipped with the custom-designed Qualcomm Oryon CPU, is poised to set a new benchmark in mobile computing by offering up to double the CPU performance of its competitors at a fraction of the power.
At the heart of Snapdragon X Elite is its custom integrated Qualcomm Oryon CPU. The platform not only matches the peak performance of competitors but achieves this feat with just one-third of the power.
Here's what's new and changed in the big new Kodi 21 'Omega' release
Kodi 21 -- codenamed 'Omega' -- is the next version of the hugely popular home theater software.
The Kodi Foundation rolled out a major update last week, but didn’t officially announce it until today, along with the long list of changes to be found in this first beta release.
Flaw in social login could expose billions to account takeover
New research from Salt Labs highlights API security vulnerabilities uncovered in the social sign-in and Open Authentication (OAuth) implementations of multiple online companies.
Sites affected include Grammarly, Vidio, and Bukalapak. The flaw has now been fixed but could have allowed for credential leakage and enabled full account takeover. Salt Labs also reports that 1,000s of other websites using social sign-in mechanisms are likely to be vulnerable to the same type of attack, putting billions of individuals around the globe at risk.
Cloud management skills gap holds back growth
A new study of over 800 IT professionals across the US, UK and Germany finds that 72 percent of mid-size companies report a lack of cloud management skills as being a barrier to their growth.
The study from Parallels finds 64 percent of respondents have already implemented a hybrid approach, and 38 percent of all respondents plan to further embrace a hybrid cloud approach in the next year.
Security leaders worry about generative AI risks
A new survey of 300 senior cybersecurity stakeholders finds that 98 percent are concerned about the cybersecurity risks posed by ChatGPT, Google Bard, WormGPT, and similar tools.
The report from Abnormal Security shows the main worry is the increased sophistication of email attacks that generative AI will make possible -- particularly, the fact that generative AI will help attackers craft highly specific and personalized email attacks based on publicly available information.
Can AI be sneakier than humans?
We've all heard about how AI is being used to improve cyberattacks, by creating better phishing emails for example, but does AI really have the same potential for being sneaky as humans?
New research from IBM X-Force has set out to answer the question, ‘Do the current Generative AI models have the same deceptive abilities as the human mind?’
Windows 11 23H2 ISO spotted online as Microsoft prepares to launch major Windows 11 update
Microsoft is preparing to launch the final significant update to Windows 11 before the release of Windows 12. We already know a fair amount about the upcoming Windows 11 23H2, but the release date has not really pinned down to anything more specific than Q4 of 2023.
But ISO images for Windows 11 23H2 have now been spotted online, strongly suggesting that testing is now over and Microsoft is ready to unleash this hugely important update to Windows 11 users.
Google Chrome will soon offer to hide your IP address for added privacy and security
Google is preparing to launch a new Chrome feature which will give users the ability to hide their IP address. Previously known as Gnatcatcher, the feature is now called IP Protection and makes use of proxies to help prevent online tracking.
IP Protection is described as "a privacy proxy that anonymizes IP addresses for qualifying traffic". One of its primary aims is to limit the possibility for fingerprinting as a means of tracking users online, which is something that has become increasingly common as steps are taken to block, and even kill off, third-party cookies.
1Password thwarts hacking attempt linked to Okta security breach
Today, 1Password shared some news about a hacking attempt that happened in late September 2023. The company saw some suspicious activity on a software tool they use called Okta, which helps manage apps for their employees. This strange activity was later found to be connected to a known security issue with Okta’s support system.
On September 29, someone from 1Password’s tech team got a surprising email that helped them find this weird activity in their Okta software. They traced this activity back to a suspicious computer address. Someone unauthorized had got into the Okta software with high-level access. This situation looked a lot like known hacking attempts where bad actors get into high-level accounts to mess with security settings and pretend to be users within the company being targeted.
QNAP unveils TVS-hx74T Thunderbolt 4 NAS devices
QNAP has unveiled the TVS-h674T and TVS-h874T Thunderbolt 4 NAS devices, focusing on digital content creation and video production. These Network Attached Storage (NAS) devices are tailored to meet the needs of creators, to enhance productivity and provide a secure space for valuable creative projects.
The series includes three models. The TVS-h674T-i5-32G model is a 6-bay 3.5-inch SATA HDD Thunderbolt NAS, powered by a 12th Gen Intel Core i5 6-core/12-thread Processor, paired with Intel UHD Graphics 730 and 32GB DDR4 RAM. The TVS-h874T-i7-32G, an 8-bay 3.5-inch SATA HDD Thunderbolt NAS, houses a 12th Gen Intel Core i7 12-core (8P+4E) /20-thread Processor, Intel UHD Graphics 770, and 32GB DDR4 RAM. Lastly, the TVS-h874T-i9-64G, another 8-bay model, comes with a 12th Gen Intel Core i9 16-core (8P+8E) /24-thread Processor, Intel UHD Graphics 770, and 64GB DDR4 RAM.
Predictive analytics and AI drive new anti-fraud technology
A new anti-fraud tool from Jumio uses predictive analytics and AI to look at billions of data points across the company's cross-industry network to identify patterns based on behavioral similarities and other indicators.
Jumio's analysis shows that 25 percent of fraud is interconnected, either being perpetrated by fraud rings or by individuals using the same information or credentials to open new accounts on banking sites, eCommerce platforms, sharing economy sites, etc.
Why a new architecture is needed for open banking API platforms [Q&A]
While much literature has been written on best practices for systems architecture, the desired outcomes have been as elusive as they have been sought after. The de-facto standard for enterprise systems that exists in reality is often closer to A Big Ball of Mud.
Very rarely is an organization’s technology (the infrastructure, the software or the set of systems powering the organization) planned as the state in which we see it today. All early systems need to scale, and most companies in the growth phase don't have the bandwidth to deal with this graciously.
Proactively preventing your company from becoming the next cyberattack headline
The news last month of yet another cyberattack on MGM Resorts, initiating a system shutdown and disrupting its operations, is yet another in a very long list of attacks that we have witnessed in the past couple of years. Having the right preventive and defensive cybersecurity measures in place for such attacks is a given, and it is what most organizations focus on. But it is also about understanding how the organization will recover from an incident and how they can limit the extent of an attack.
Today, being impacted by a cyberattack is almost inevitable. The global average cost of a data breach in 2023 was $4.45 million, a 15 percent increase over 3 years, according to IBM. Therefore, companies also need to think about how they can proactively recover, how quickly they can recover, and the cost of recovery to the business.
Microsoft Edge may be using your browsing history to inform Bing Chat AI -- here's how to stop it
AI is just about everywhere now. Its ubiquity makes it nearly impossible to avoid, and Microsoft is just one of the big tech firms to have thrown everything at artificial intelligence.
As well as adding AI to Windows 11 with Copilot, Microsoft has also brought a generous dose of it to its Edge browser courtesy of Bing Chat. What users of this feature may not be aware of is that their browsing data is being used to personalize Copilot, meaning that a huge amount of potentially revealing information is being shared with the artificial intelligence tool.
Most Commented Stories
© 1998-2024 BetaNews, Inc. All Rights Reserved. Privacy Policy - Cookie Policy.