|
Claude Mythos Preview discovered new attacks in testing against weakened cryptographic algorithms, which protect online financial transactions, private communications and more.
|
|
Hugging Face CEO Clem Delangue wants to see radical transparency from OpenAI after the company acknowledged that one of its AI agents managed to hack into the AI platform's systems during a test.
In a post on X, Delangue wrote that, among other things, he wants OpenAI to publish logs and traces from the autonomous AI agent so researchers can analyze what happened. He also called for better defensive tools and urged OpenAI to allocate $100 million worth of computing capacity to help the Hugging Face community develop stronger cybersecurity solutions.
"The first cyberattack by an autonomous AI agent is an unprecedented event. It deserves an unprecedented response," Delangue wrote.
|
|
Traveling enterprise employees beware: Think twice before you log onto that oh-so-convenient public Wi-Fi.
Since at least June, threat actors have been compromising "captive" Wi-Fi gateways and other portal appliances at hotels, conference centers, and similar shared venues to hijack users' Microsoft 365 accounts, according to the ReliaQuest Threat Research team.
Once a threat actor controls a gateway, they can silently redirect a user's traffic to their own infrastructure and steal their Microsoft 365 credentials without ever touching the user's device, compromising endpoints, or sending phishing links or malicious attachments.
"The most dangerous element is that it operates at the network gateway, which sits beneath most of the trust assumptions users and devices make," ReliaQuest told CSO Online. "It's not necessarily an enterprise breach level event on its own, but it's a very real risk to individual accounts."
Exploiting a ‘fundamental trust'
Domain Name System (DNS) poisoning, in which false data is injected to redirect regular web traffic to fraudulent domains, has previously been observed on small office routers, but attackers are now expanding the technique to higher-level targets, the ReliaQuest researchers explained in a blog post.
Attackers l
|
|