Category: Security

Google fixes GCP flaw that could expose sensitive container images

The flaw could allow attackers to access restricted container images, potentially leading to privilege escalation,…

Thousands of open source projects at risk from hack of GitHub Actions tool

Researchers say compromised tool in the GitHub CI/CD environment stole credentials; infosec leaders need to…

Google acquires Wiz: A win for multicloud security

With a holistic view geared toward preventing security breaches and integration with all major cloud…

Palo Alto Networks releases QRNG API framework

Quantum Random Number Generator Open API framework enables companies to begin preparing for a future…

Java proposals would boost resistance to quantum computing attacks

OpenJDK proposals would provide Java implementations of a quantum-resistant module-latticed-based digital signature algorithm and key…

A GRC framework for securing generative AI

How can enterprises secure and manage the expanding ecosystem of AI applications that touch sensitive…

Supply chain compromise of Ultralytics AI library results in trojanized versions

Attackers exploited a script injection vulnerability via GitHub Actions to inject malicious code during the…

Weaponizing generative AI

The security of genAI models is iffy and takes a back seat to other issues,…

The vital role of red teaming in safeguarding AI systems and data

AI red teaming offers an innovative, proactive method for strengthening AI while mitigating potential risks,…

Secure AI? Dream on, says AI red team

Microsoft’s ethical AI hackers provide some answers — as well as more questions. Credit: Who…