Artificial Intelligence (AI)
Hacker Uses Claude, ChatGPT AI Chatbots to Breach Mexican Government Systems
Jeffrey Burt | | AI data exfiltration, AI hackers, Anthropic Claude, Artificial Intelligence (AI), Data breach, Gambit Security, generative AI threats, Mexico, OpenAI ChatGPT
An unknown hacker used jailbreaking tactics against Anthropic's Claude and OpenAI's ChatGPT AI chatbots to exploit multiple weaknesses in Mexico's government networks and steal as much as 150GB of sensitive data, from ...
Security Boulevard
AI is Supercharging Romance Scams with Deepfakes and Bots
Jeffrey Burt | | Artificial Intelligence (AI), automated bots, Blackbird.AI, cyberscam compounds, deepfakes, KnowBe4, McAfee report, norton, online romance scam, Valentines scams, YouMail
AI is giving online romance scammers even more ways to hide and accelerate their schemes while making it more difficult for people to detect fraud operations that are resulting in billions of ...
Security Boulevard
Attackers Probing Popular LLMs Looking for Access to APIs: Report
Jeffrey Burt | | AI Infrastructure Security, Anthropic AI, api leak, Artificial Intelligence (AI), Google Gemini, grey hat hackers, GreyNoise Intelligence, LLM attacks, Meta, OpenAI, React2Shell, SSRF
Security researchers with GreyNoise say they've detected a campaign in which the threat actors are targeting more than 70 popular AI LLM models in a likely reconnaissance mission that will feed into ...
Security Boulevard
Extracting the How: Scaling Adversary Procedures Intelligence with AI
Tidal Cyber | | Artificial Intelligence (AI), Enterprise Edition, NARC, Threat Defense, Threat-Led Defense
Labeling adversary activity with ATT&CK techniques is a tried-and-true method for classifying behavior. But it rarely tells defenders how those behaviors are executed in real environments ...
Microsoft Expands its Bug Bounty Program to Include Third-Party Code
Jeffrey Burt | | Artificial Intelligence (AI), Cloud computing security, log4jShell, Microsoft, microsoft bug bounty, open source software supply chain, React2Shell Attack, software supply chain attacks, SolarWinds Attacks, Third Party Risk
In a nod to the evolving threat landscape that comes with cloud computing and AI and the growing supply chain threats, Microsoft is broadening its bug bounty program to reward researchers who ...
Security Boulevard
Why LLMs Alone Can’t Do Threat Comprehension: What Specialized Models Like NARC Add
Tidal Cyber | | Artificial Intelligence (AI), Enterprise Edition, NARC, Threat Defense, Threat-Led Defense
Security leaders want machines that can read adversaries the way analysts do. There is clear business value in AI-powered automation engines that can parse threat reports, extract the behaviors that matter, and ...
Natural Attack Reading and Comprehension (NARC): A Pillar for Threat-Led Defense
Tidal Cyber | | Artificial Intelligence (AI), Enterprise Edition, NARC, procedures, Threat Defense, Threat-Led Defense
Machines can now read what analysts once had to interpret by hand. Every threat report, DFIR writeup, and red-team finding hides the procedural “how” behind an attack, but extracting that insight at ...
ICE’s Shiny New ‘AI’ Facial Recognition App: False Positives Ahoy!
Richi Jennings | | AI, AI (Artificial Intelligence), Artificial Intelligence, Artificial Intelligence (AI), Artificial Intelligence (AI)/Machine Learning (ML), artificial intelligentce, artificial intellignece, biometric, biometric data, Biometric Data Abuse, biometric identification, biometric identity, biometric technology, CBP, Data & Artificial Intelligence (AI), Department of Customs and Border Protection, Department of Homeland Security, DHS, digital biometrics, Digital Surveillance, facial recognition, facial recognition technology, false positive, false positives, generative artificial intelligence, government surveillance, homeland security, ICE, IDENT, Identity Surveillance, immigration, Immigration and Customs Enforcement, lawful surveillance, Mobile Fortify, Mobile Surveillance, Passive biometrics, police surveillance, SB Blogwatch, U.S. Department of Homeland Security, United States Department of Homeland Security, US Customs and Border Protection, US Homeland Security, USDHS
Mobile Fortify: Liberty’s existential threat, or sensible way to ID illegal immigrants? ...
Security Boulevard
Signal Gives Microsoft a Clear Signal: Do NOT Recall This
Richi Jennings | | AI, AI (Artificial Intelligence), AI training, Artificial Intelligence, Artificial Intelligence (AI), Artificial Intelligence (AI)/Machine Learning (ML), artificial intellignece, artificialintelligence, breach of privacy, Copilot, cybersecurity risks of generative ai, Data Privacy, Digital Privacy, generative AI, Generative AI risks, Health Insurance Portability and Accountability Act (HIPAA), HIPAA, HIPAA and IT Security, HIPAA Compliance, hipaa laws, HIPPA, Large Language Model, large language models, Large Language Models (LLM), Large language models (LLMs), LLM, LLMs, machine learning, Microsoft, ML, Privacy, Recall, SB Blogwatch, signal, Signal app, Windows
Black screen of DRM: Privacy-first messenger blocks Microsoft Recall ...
Security Boulevard
Taming the Machine: Putting Security at the Core of Generative AI
Harrison Van Riper | | Artificial Intelligence (AI), Enterprise Edition, Threat Defense, threat-informed-defense
AI advancements, particularly Large Language Models (LLMs) and other generative model types, unlock opportunities to develop applications faster through task automation and information processing. Speed to innovation is so prized that the ...

