Skip to main content

Posts

Showing posts from September, 2023

Critical vulnerabilities in Exim threaten over 250k email servers worldwide

Remote code execution requiring no authentication fixed. 2 other RCEs remain unpatched. https://bit.ly/3RBnKMr

Meta launches consumer AI chatbots with celebrity avatars in its social apps

WhatsApp, Instagram add animated AI chat avatars, including Snoop Dogg as dungeon master. https://bit.ly/3PzA654

AI language models can exceed PNG and FLAC in lossless compression, says study

Is compression equivalent to general intelligence? DeepMind digs up more potential clues. https://bit.ly/466fUin

Backdoored firmware lets China state hackers control routers with “magic packets”

The modified firmware used by BlackTech is hard to detect. https://bit.ly/3rtkzeY

Spotify uses AI to clone and translate podcaster voices in new pilot program

Feature hopes to remove language barriers, but will speakers know if translations are faulty? https://bit.ly/467GSWK

Google quietly corrects previously submitted disclosure for critical webp 0-day

Previous CVE submission failed to mention that thousands of apps were affected. https://bit.ly/464rtGH

GPUs from all major suppliers are vulnerable to new pixel-stealing attack

A previously unknown compression side channel in GPUs can expose images thought to be private. https://bit.ly/3ZERvhh

Can you melt eggs? Quora’s AI says “yes,” and Google is sharing the result

Incorrect AI-generated answers are forming a feedback loop of misinformation online. https://bit.ly/458F7r4

ChatGPT update enables its AI to “see, hear, and speak,“ according to OpenAI

Image recognition and voice features aim to make the AI bot's interface more intuitive. https://bit.ly/46oxj5l

Getty Images subscribers to get access to AI image generator

Getty will indemnify customers against lawsuits and pay artists on "recurring basis." https://bit.ly/3ZtzdPQ

3 iOS 0-days, a cellular network compromise, and HTTP used to infect an iPhone

Apple patches 3 zero-days after they were used in a sophisticated attack. https://bit.ly/48EgUMn

Incomplete disclosures by Apple and Google create “huge blindspot” for 0-day hunters

No one mentioned that libwebp, a library found in millions of apps, was a 0-day origin. https://bit.ly/3Pr0o9u

AI-generated books force Amazon to cap e-book publications to 3 per day

"In order to help protect against abuse, we are lowering the volume limits we have in place." https://bit.ly/3t9uCWV

OpenAI’s new AI image generator pushes the limits in detail and prompt fidelity

With better response to details and text, DALL-E 3 hopes to make prompt engineering obsolete. https://bit.ly/3ELQL09

The Signal Protocol used by 1+ billion people is getting a post-quantum makeover

Update prepares for the inevitable fall of today's cryptographic protocols. https://bit.ly/3rurmVH

Telling AI model to “take a deep breath” causes math scores to soar in study

DeepMind used AI models to optimize their own prompts, with surprising results. https://bit.ly/3t3fElt

Google’s AI assistant can now read your emails, plan trips, “double-check” answers

Google admits that Bard isn't always accurate; ropes in Gmail through new Extensions. https://bit.ly/3Zm0B2r

Chinese hackers have unleashed a never-before-seen Linux backdoor

SprySOCKS borrows from open source Windows malware and adds new tricks. https://bit.ly/3rs0t4J

Panos Panay, leader of the Surface and Windows teams, is leaving Microsoft

Will be replaced by Yusuf Mehdi, who has been leading the way on AI efforts. https://bit.ly/3sYcEH3

Dreamy AI-generated geometric scenes mesmerize social media users

"This was the point where AI-generated art passed the Turing Test for me." https://bit.ly/48bOAkd

How Google Authenticator made one company’s network breach much, much worse

Google's app for generating MFA codes syncs to user accounts by default. Who knew? https://bit.ly/48kyHIi

Private AI summit with senators, titans of tech garners controversy

With 14 of 22 attendees being CEOs, some experts say key voices were missing. https://bit.ly/3ZhL9UQ

A phone call to helpdesk was likely all it took to hack MGM

Slot machines and hotel room key cards stopped working at MGM casinos on the Strip. https://bit.ly/45R5uTy

AI can now generate CD-quality music from text, and it’s only getting better

Musicians: Speak now or forever hold your beats. https://bit.ly/45VorEz

SpaceX projected 20 million Starlink users by 2022—it ended up with 1 million

Starlink has a fraction of the projected $12B revenue and 20M users, WSJ says. https://bit.ly/4881tvz

Coca-Cola embraces controversial AI image generator with new “Y3000” flavor

Tie-in Coca-Cola mobile app uses Stable Diffusion to modify your photos. https://bit.ly/3P8QrgQ

Password-stealing Linux malware served for 3 years and no one noticed

It's not too late to check if a Linux device you use was targeted. https://bit.ly/3r8D8oJ

US rejects AI copyright for famous state fair-winning Midjourney art

Controversial AI art piece from 2022 lacks human authorship required for registration. https://bit.ly/3EyOuoZ

OpenAI confirms that AI writing detectors don’t work

No detectors "reliably distinguish between AI-generated and human-generated content." https://bit.ly/45JrVtQ

OpenAI’s first-ever dev conference hopes to draw “hundreds of developers” in November

In-person event will have livestreamed keynote, show company's "latest work." https://bit.ly/3EtZAvl

How China gets free intel on tech companies’ vulnerabilities

If your company operates in China, it must reveal all hackable bugs to government. https://bit.ly/3sHYDgp

AI-generated child sex imagery has every US attorney general calling for action

"A race against time to protect the children of our country from the dangers of AI." https://bit.ly/3RcwkB0

Toyota’s Japanese production was halted due to insufficient disk space

"Not caused by a cyberattack." https://bit.ly/3PsFUhR

“AI took my job, literally”—Gizmodo fires Spanish staff amid switch to AI translator

Meanwhile, readers say that some AI-penned articles switch languages halfway through. https://bit.ly/3sB6In0

PII leaked after Sourcegraph, an AI-driven service for code development, is hacked

We've said it before; we'll say it again: don't put credentials in publicly available code. https://bit.ly/44usGp6

AI fever turns Anguilla’s “.ai” domain into a digital gold mine

Tiny island country could rake in 10% of its GDP in domain sales this year. https://bit.ly/3YXAdvm