Attackers could have exploited a now-mitigated critical vulnerability in the Replicate artificial intelligence platform to access private AI models and sensitive data, including proprietary knowledge and personally identifiable information.
Cisco states that there are no workarounds that address this vulnerability. The IT giant has confirmed that this vulnerability does not affect Adaptive Security Appliance (ASA) Software or Firepower Threat Defense (FTD) Software.
The Pakistan-nexus Transparent Tribe actor has been linked to a new set of attacks targeting Indian government, defense, and aerospace sectors using cross-platform malware written in Python, Golang, and Rust.
“This cluster of activity spanned from late 2023 to April 2024 and is anticipated to persist,” the BlackBerry Research and Intelligence Team said in a technical report
https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png00https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png2024-05-27 08:07:302024-05-27 08:07:30Pakistan-linked Hackers Deploy Python, Golang, and Rust Malware on Indian Targets
https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png00https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png2024-05-27 06:06:392024-05-27 06:06:396 Facts About How Interpol Fights Cybercrime
https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png00https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png2024-05-26 19:08:452024-05-26 19:08:45Shut the back door: Understanding prompt injection and minimizing risk
https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png00https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png2024-05-25 19:07:582024-05-25 19:07:58The modern CISO: Scapegoat or value creator?
The records belonged to two separate India-based firms, ThoughtGreen Technologies and Timing Technologies. Both provide application development, RFID technology, and biometric verification services.
https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png00https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png2024-05-25 14:06:452024-05-25 14:06:45Data Leak Exposes 500GB of Indian Police, Military Biometric Data
Cybersecurity researchers have discovered a critical security flaw in an artificial intelligence (AI)-as-a-service provider Replicate that could have allowed threat actors to gain access to proprietary AI models and sensitive information.
“Exploitation of this vulnerability would have allowed unauthorized access to the AI prompts and results of all Replicate’s platform customers,”
https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png00https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png2024-05-25 11:06:532024-05-25 11:06:53Experts Find Flaw in Replicate AI Service Exposing Customers’ Models and Data
Plus: US surveillance reportedly targets pro-Palestinian protesters, the FBI arrests a man for AI-generated CSAM, and stalkerware targets hotel computers.
https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png00https://www.backbox.org/wp-content/uploads/2018/09/website_backbox_text_black.png2024-05-25 11:06:522024-05-25 11:06:52Microsoft’s New Recall AI Tool May Be a ‘Privacy Nightmare’
Security researchers have revealed a series of criminal campaigns that exploit cloud storage services such as Amazon S3, Google Cloud Storage, Backblaze B2 and IBM Cloud Object Storage.
BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
AI-as-a-Service Platform Patches Critical RCE Vulnerability
/in General NewsAttackers could have exploited a now-mitigated critical vulnerability in the Replicate artificial intelligence platform to access private AI models and sensitive data, including proprietary knowledge and personally identifiable information.
Cyware News – Latest Cyber News – Read More
High-Severity Flaw Affects Cisco Firepower Management Center
/in General NewsCisco states that there are no workarounds that address this vulnerability. The IT giant has confirmed that this vulnerability does not affect Adaptive Security Appliance (ASA) Software or Firepower Threat Defense (FTD) Software.
Cyware News – Latest Cyber News – Read More
Pakistan-linked Hackers Deploy Python, Golang, and Rust Malware on Indian Targets
/in General NewsThe Pakistan-nexus Transparent Tribe actor has been linked to a new set of attacks targeting Indian government, defense, and aerospace sectors using cross-platform malware written in Python, Golang, and Rust.
“This cluster of activity spanned from late 2023 to April 2024 and is anticipated to persist,” the BlackBerry Research and Intelligence Team said in a technical report
The Hacker News – Read More
6 Facts About How Interpol Fights Cybercrime
/in General NewsSo you think you know Interpol? Here are some key details of how this international law enforcement entity disrupts cybercrime worldwide.
darkreading – Read More
Shut the back door: Understanding prompt injection and minimizing risk
/in General NewsThe bottom line on prompt injection: Take it seriously and minimize the risk, but don’t let it hold you back. Read More
Security News | VentureBeat – Read More
The modern CISO: Scapegoat or value creator?
/in General NewsWhy keeping pace with the latest technology and ensuring open and honest communications with non-cybersecurity stakeholders is imperative.Read More
Security News | VentureBeat – Read More
Data Leak Exposes 500GB of Indian Police, Military Biometric Data
/in General NewsBy Waqas
The records belonged to two separate India-based firms, ThoughtGreen Technologies and Timing Technologies. Both provide application development, RFID technology, and biometric verification services.
This is a post from HackRead.com Read the original post: Data Leak Exposes 500GB of Indian Police, Military Biometric Data
Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – Read More
Experts Find Flaw in Replicate AI Service Exposing Customers’ Models and Data
/in General NewsCybersecurity researchers have discovered a critical security flaw in an artificial intelligence (AI)-as-a-service provider Replicate that could have allowed threat actors to gain access to proprietary AI models and sensitive information.
“Exploitation of this vulnerability would have allowed unauthorized access to the AI prompts and results of all Replicate’s platform customers,”
The Hacker News – Read More
Microsoft’s New Recall AI Tool May Be a ‘Privacy Nightmare’
/in General NewsPlus: US surveillance reportedly targets pro-Palestinian protesters, the FBI arrests a man for AI-generated CSAM, and stalkerware targets hotel computers.
Security Latest – Read More
Cybercriminals Exploit Cloud Storage for SMS Phishing Scams
/in General NewsSecurity researchers have revealed a series of criminal campaigns that exploit cloud storage services such as Amazon S3, Google Cloud Storage, Backblaze B2 and IBM Cloud Object Storage.
Cyware News – Latest Cyber News – Read More