Fri.Aug 09, 2024

article thumbnail

‘Sinkclose’ Flaw in Hundreds of Millions of AMD Chips Allows Deep, Virtually Unfixable Infections

WIRED Threat Level

Researchers warn that a bug in AMD’s chips would allow attackers to root into some of the most privileged portions of a computer—and that it has persisted in the company’s processors for decades.

IT 363
article thumbnail

Sonos smart speakers flaw allowed to eavesdrop on users

Security Affairs

NCC Group discovered vulnerabilities in Sonos smart speakers, including a flaw that could have allowed to eavesdrop on users. Researchers from NCC Group have discovered multiple vulnerabilities in Sonos smart speakers, including a flaw, tracked as CVE-2023-50809, that could have allowed eavesdropping on users. The researchers have disclosed the vulnerabilities during the BLACK HAT USA 2024 conference.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

How Hackers Extracted the ‘Keys to the Kingdom’ to Clone HID Keycards

WIRED Threat Level

A team of researchers have developed a method for extracting authentication keys out of HID encoders, which could allow hackers to clone the types of keycards used to secure offices and other areas worldwide.

article thumbnail

Five zero-days impacts EoL Cisco Small Business IP Phones. Replace them with newer models asap!

Security Affairs

Cisco warns of critical remote code execution zero-day vulnerabilities impacting end-of-life Small Business SPA 300 and SPA 500 series IP phones. Cisco warns of multiple critical remote code execution zero-day vulnerabilities in end-of-life Small Business SPA 300 and SPA 500 series IP phones. “Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series IP Phones could allow an attacker to execute arbi

IT 312
article thumbnail

From Curiosity to Competitive Edge: How Mid-Market CEOs Are Using AI to Scale Smarter

Speaker: Lee Andrews, Founder at LJA New Media & Tony Karrer, Founder and CTO at Aggregage

This session will walk you through how one CEO used generative AI, workflow automation, and sales personalization to transform an entire security company—then built the Zero to Strategy framework that other mid-market leaders are now using to unlock 3.5x ROI. As a business executive, you’ll learn how to assess AI opportunities in your business, drive adoption across teams, and overcome internal resource constraints—without hiring a single data scientist.

article thumbnail

ATM Software Flaws Left Piles of Cash for Anyone Who Knew to Look

WIRED Threat Level

Six vulnerabilities in ATM-maker Diebold Nixdorf’s popular Vynamic Security Suite could have been exploited to control ATMs using “relatively simplistic attacks.

Security 256

More Trending

article thumbnail

Google Researchers Found Nearly a Dozen Flaws in Popular Qualcomm Software for Mobile GPUs

WIRED Threat Level

The vulnerabilities, which have been patched, may have novel appeal to attackers as an avenue to compromising phones.

Security 214
article thumbnail

How to use Apple Pay in stores and online (and why you should)

Collaboration 2.0

It's super convenient, more secure than swiping a card, and so simple to set up. Enjoy fast, contactless checkout with your iPhone - or Apple Watch - most anywhere you shop.

Security 246
article thumbnail

UK proposes New Cyber Security and Resilience Bill to Boost the UK’s Cyber Defences

Data Matters

During the King’s Speech on 17 July 2024, the newly appointed UK Prime Minister announced the UK Government’s intention to introduce a new Cyber Security and Resilience Bill to strengthen the UK’s defences against the global rise in cyberattacks and to protect the UK’s critical infrastructure. In background briefing notes published together with the King’s Speech, the UK Government stated that the new Cyber Security and Resilience Bill will “strengthen our defences and ensure that more essential

Security 166
article thumbnail

This $400 Motorola phone comes with built-in stylus and a free pair of earbuds

Collaboration 2.0

If you enjoy using a stylus to capture quick notes, create GIFs, and even solve basic handwritten calculations, look to Motorola's latest Moto G Stylus 5G.

245
245
article thumbnail

Agent Tooling: Connecting AI to Your Tools, Systems & Data

Speaker: Alex Salazar, CEO & Co-Founder @ Arcade | Nate Barbettini, Founding Engineer @ Arcade | Tony Karrer, Founder & CTO @ Aggregage

There’s a lot of noise surrounding the ability of AI agents to connect to your tools, systems and data. But building an AI application into a reliable, secure workflow agent isn’t as simple as plugging in an API. As an engineering leader, it can be challenging to make sense of this evolving landscape, but agent tooling provides such high value that it’s critical we figure out how to move forward.

article thumbnail

ISMG Editors: Is Russia Waging War Through Ransomware?

Data Breach Today

Also: Lone-Wolf Operators, Attacks on Medical Supply Chains – What's Next? In the latest weekly update, ISMG editors explore evolving ransomware threats, including rising attacks in healthcare and other critical sectors, a shift from cybercrime groups such as LockBit to lone-wolf operators, and why Russian ransomware gangs are dominating the global stage.

article thumbnail

Bluetti slashes power station prices in big summer sale

Collaboration 2.0

Save hundreds of dollars on many of Bluetti's most popular power stations - and power station/solar panel bundles. We've got exclusive discount codes, too.

Sales 190
article thumbnail

How New Global AI Standards Can Shape Ethical AI Practices

Data Breach Today

Craig Civil of BSI on Implementing ISO/IEC 42001 Standard Within the Organization ISO/IEC 42001, launched in late 2023, is the world's first AI management system standard, offering a framework to ensure responsible AI practices. Craig Civil, director of data science and AI at BSI, discusses the importance of AI policies and BSI's plans to implement the standard.

article thumbnail

The best laptops of 2024: Expert tested and reviewed

Collaboration 2.0

We've gone hands-on with dozens of laptops this year from Apple, Dell, LG, and more so you can find the best fit.

190
190
article thumbnail

Automation, Evolved: Your New Playbook for Smarter Knowledge Work

Speaker: Frank Taliano

Documents are the backbone of enterprise operations, but they are also a common source of inefficiency. From buried insights to manual handoffs, document-based workflows can quietly stall decision-making and drain resources. For large, complex organizations, legacy systems and siloed processes create friction that AI is uniquely positioned to resolve.

article thumbnail

Iran Amplifies US Election Influence Campaign

Data Breach Today

Microsoft Says Tehran Has Stepped Up Activity As November Election Day Approaches Iranian operatives stepped up influence and hacking operations against U.S. targets as presidential election ramps up for its final months, warned Microsoft on Thursday. Iran is one of a handful of authoritarian countries that use hacking and disinformation to undermine American democracy.

IT 147
article thumbnail

The best iPhone models of 2024: Expert tested and reviewed

Collaboration 2.0

ZDNET has tested every iPhone model available on the market, including the Pro Max and Mini. Here are your best options.

Marketing 190
article thumbnail

Rhysida Claims Major Data Theft From 2 More Health Systems

Data Breach Today

Group Threatens to Sell Data From Bayhealth and Community Care Alliance on Dark Web Ransomware group Rhysida is shaking down at least two new victims in the healthcare sector - Bayhealth and Community Care Alliance - threatening to sell or dump patients' sensitive health and personal information on the dark web. Bayhealth confirmed that it is investigating a recent cyberattack.

article thumbnail

You can upgrade your old PC to Windows 11 - even if Microsoft says it's 'incompatible'. Here's how

Collaboration 2.0

You don't have to throw away a perfectly good PC just because it doesn't meet Microsoft's strict Windows 11 compatibility standards. Here's how you can work around the restrictions and safely upgrade a Windows 10 PC.

IT 190
article thumbnail

State of AI in Sales & Marketing 2025

AI adoption is reshaping sales and marketing. But is it delivering real results? We surveyed 1,000+ GTM professionals to find out. The data is clear: AI users report 47% higher productivity and an average of 12 hours saved per week. But leaders say mainstream AI tools still fall short on accuracy and business impact. Download the full report today to see how AI is being used — and where go-to-market professionals think there are gaps and opportunities.

article thumbnail

Delta Versus CrowdStrike and Microsoft: Accusations Fly

Data Breach Today

After IT Outage, Firms Question Why Delta's Competitors Recovered So Much Faster Delta Air Lines' war of words against CrowdStrike and Microsoft over its extended IT outage continue to escalate, with the airline threatening litigation to recover $500 million in lost revenue and expenses. CrowdStrike and Microsoft have pledged to vigorously fight any such litigation.

IT 147
article thumbnail

Free ChatGPT users can now create images with DALL-E 3, but there's a catch

Collaboration 2.0

Previously, image generation via DALL-E 3 was available only to paid ChatGPT Plus subscribers.

189
189
article thumbnail

People-Search Site Removal Services Largely Ineffective

Schneier on Security

Consumer Reports has a new study of people-search site removal services, concluding that they don’t really work: As a whole, people-search removal services are largely ineffective. Private information about each participant on the people-search sites decreased after using the people-search removal services. And, not surprisingly, the removal services did save time compared with manually opting out.

Privacy 127
article thumbnail

This stereo amp made me feel like I was listening to my favorite songs for the first time

Collaboration 2.0

As an audiophile, I appreciate high-quality products that don't break the bank, and Outlaw Audio's RR 2160 Mk II retro stereo receiver is exactly that.

189
189
article thumbnail

How to Achieve High-Accuracy Results When Using LLMs

Speaker: Ben Epstein, Stealth Founder & CTO | Tony Karrer, Founder & CTO, Aggregage

When tasked with building a fundamentally new product line with deeper insights than previously achievable for a high-value client, Ben Epstein and his team faced a significant challenge: how to harness LLMs to produce consistent, high-accuracy outputs at scale. In this new session, Ben will share how he and his team engineered a system (based on proven software engineering approaches) that employs reproducible test variations (via temperature 0 and fixed seeds), and enables non-LLM evaluation m

article thumbnail

Not Just Us: North Korean Remote IT Fraudster Arrested in Tennessee

KnowBe4

Just when we thought we had something special with our very own North Korean hacker , it turns out this type of fraud has made it to the Volunteer State.

IT 124
article thumbnail

Intel has news - good, bad and ugly - about Raptor Lake bug patch. Here's what to know

Collaboration 2.0

Users must download and install a BIOS update as the patch won't be made available via Windows Update.

189
189
article thumbnail

A Whopping 33% of Young American Are Exposed to Political Lies on TikTok

KnowBe4

Excellent reporting by the Wall Street Journal! They wrote about a disturbing trend. "Amid a deluge of election news and memes on TikTok, WSJ found thousands of videos with political lies and hyperbole.

119
119
article thumbnail

This rugged power bank is one of the fastest I've used - and it's so close to perfect

Collaboration 2.0

I completed a 850-mile road trip in 24 hours, and the BioLite Charge 100 Max kept my devices powered with no sweat.

IT 189
article thumbnail

The GTM Intelligence Era: ZoomInfo 2025 Customer Impact Report

ZoomInfo customers aren’t just selling — they’re winning. Revenue teams using our Go-To-Market Intelligence platform grew pipeline by 32%, increased deal sizes by 40%, and booked 55% more meetings. Download this report to see what 11,000+ customers say about our Go-To-Market Intelligence platform and how it impacts their bottom line. The data speaks for itself!

article thumbnail

OpenText Analytics Database: The ELT Advantage

OpenText Information Management

The choice between ETL (Extract, Transform, Load) and ELT (Extract, Load, Transform) is crucial in the modern data management landscape. OpenText Analytics Database (Vertica), with its advanced analytics database, emerges as a powerful ally for businesses leaning towards the ELT methodology. Here's why: Seamless Integration with ELT Processes The OpenText Analytics Database (Vertica) is designed to thrive in an ELT-centric environment.

Analytics 111
article thumbnail

Microsoft's Clipchamp video editor is getting free AI features - and they're very useful

Collaboration 2.0

Available to Microsoft 365 Insiders, noise suppression and image background removal will upgrade your video quality. Here's how to use both.

189
189
article thumbnail

[WHOA] - This 'Unpatch Attack' Is A New One To Me!

KnowBe4

In a startling revelation at Black Hat 2024, SafeBreach security researcher Alon Leviev demonstrated a critical vulnerability in Windows systems, dubbed the "Windows Downdate" attack.