ポッドキャスト

#9 - The collapse of LAPSUS$ and the risks of AI data poisoning

👀 Here's a sneak peek at today’s episode:

🔒 Stay ahead of the game! LAPSUS$ Hackers may be making waves. Two members of this notorious group faced consequences in the UK, but shockingly, they continued their hacking activities even while under house arrest.

🀖 Data Poisoning in AI Training is a growing concern. Hackers can manipulate the data used to train AI models, introducing risks and vulnerabilities. Validating data integrity and randomizing data ingestion times are useful mitigations against this threat.

💻 The WinRAR Vulnerability (CVE-2023-38831)! This flaw was exploited against crypto-traders to infect their devices with malware, but should be considered a low concern for cloud customers unless using virtual desktops.

リ゜ヌス

https://gizmodo.com/hackers-lapsus-uber-nvidia-rockstar-games-microsoft-1850766324 https://www.bbc.com/news/technology-66549159 https://www.cisa.gov/resources-tools/resources/review-attacks-associated-lapsus-and-related-threat-groups-executive-summary https://www.cisa.gov/sites/default/files/2023-08/CSRBLapsus%24508c.pdf https://duo.com/decipher/lapsususd-analysis-finds-need-for-better-iam-mfa-deployments https://www.youtube.com/watch?v=h9jf1ikcGyk https://arxiv.org/pdf/2302.10149.pdf https://www.blackhat.com/us-23/briefings/schedule/#poisoning-web-scale-training-datasets-is-practical-32112 https://arstechnica.com/security/2023/08/winrar-0-day-that-uses-poisoned-jpg-and-txt-files-under-exploit-since-april/

"Crying Out Cloud" はニュヌスレタヌでもありたす

安党ず情報収集 最新のクラりドセキュリティ ニュヌス、実際の攻撃のむンサむト、環境を保護するための専門家のガむダンスをお届けしたす。

  • ゲヌムチェンゞのニュヌス

    業界を揺るがし泚意を必芁ずする最新のクラりドセキュリティの脆匱性ずむノベヌションをたずめたした。

  • ナニヌクな Wiz むンサむト

    実際のクラりド環境で怜出された実際の攻撃経路からの統蚈に基づいお、調査デヌタの内郚の様子です。

  • 戊闘テストのアドバむス

    匊瀟の脅嚁調査チヌムからのヒントは、埡瀟のデヌタ挏掩を防ぐ方法ず、クラりドセキュリティ戊略党䜓を改善する方法です。

クラりドセキュリティの最新情報を受信トレむに盎接受信するには、サむンアップしおください

Wizがお客様の個人デヌタをどのように取り扱うかに぀いおは、圓瀟の プラむバシヌポリシヌ.