Tag: open-source
-
Open Source: Worldcoin legt seinen Orb-Code offen
Tags: open-sourceFirst seen on golem.de Jump to article: www.golem.de/news/open-source-worldcoin-legt-seinen-orb-code-offen-2403-183466.html
-
Trusted Contributor Plants Sophisticated Backdoor in Critical Open-Source Library
A backdoor in XZ Utils, a widely used file-compressing software in Linux systems, could have led to a critical supply chain attack had a Microsoft res… First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/backdoor-xz-utils-linux-open-source/
-
What You Need to Know About Hugging Face
For most companies, the foundations of AI problems are the same as open source problems. From there it gets a little weird. The post companies, the f… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/what-you-need-to-know-about-hugging-face/
-
Cloud Active Defense: Open-source cloud protection
Cloud Active Defense is an open-source solution that integrates decoys into cloud infrastructure. It creates a dilemma for attackers: risk attacking a… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/04/02/cloud-active-defense-open-source-cloud-protection/
-
xz Utils Backdoor
The cybersecurity world got really lucky last week. An intentionally placed backdoor in xz Utils, an open-source compression utility, was pretty much … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/xz-utils-backdoor/
-
The Open-Source Backdoor That Almost Compromised SSH
The open-source world narrowly escaped a sophisticated supply-chain attack that could have compromised countless systems. A stark reminder of the nece… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/the-open-source-backdoor-that-almost-compromised-ssh/
-
Hackers exploit Ray framework flaw to breach servers, hijack resources
A new hacking campaign dubbed ShadowRay targets an unpatched vulnerability in Ray, a popular open-source AI framework, to hijack computing power and l… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-exploit-ray-framework-flaw-to-breach-servers-hijack-resources/
-
20 essential open-source cybersecurity tools that save you time
Open-source software’s adaptive nature ensures its durability, relevance, and compatibility with new technologies. When I started digging deeper into … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/25/essential-open-source-cybersecurity-tools/
-
Securing open source software: Whose job is it, anyway?
First seen on theregister.com Jump to article: www.theregister.com/2024/03/08/securing_opensource_software_whose_job/
-
Microsoft allies with OpenAI rival Mistral AI
The tech giant is investing big money in the open source startup. The partnership means Mistral’s premium models, including its new model Mistral Larg… First seen on techtarget.com Jump to article: www.techtarget.com/searchenterpriseai/news/366571433/Microsoft-allies-with-OpenAI-rival-Mistral-AI
-
Constella and Social Links Join Forces to Deliver Transformative OSINT Solutions
March 25, 2024[1] ” Social Links, a leading developer of open-source intelligence (OSINT) software, has announced a strategic partnership with Conste… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/03/constella-and-social-links-join-forces-to-deliver-transformative-osint-solutions/
-
CVE-2023-52160: Wi-Fi Flaws Expose Android and Linux Devices
Two authentication bypass vulnerabilities were uncovered in open-source Wi-Fi software utilized across Android, Linux, and ChromeOS devices. These vul… First seen on sensorstechforum.com Jump to article: sensorstechforum.com/cve-2023-52160-wi-fi-flaws/
-
WebCopilot: Open-source automation tool enumerates subdomains, detects bugs
WebCopilot is an open-source automation tool that enumerates a target’s subdomains and discovers bugs using various free tools. It simplifies the appl… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/21/webcopilot-open-source-automation-tool/
-
Open-source ransomware, RATs deployed on compromised TeamCity servers
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/open-source-ransomware-rats-deployed-on-compromised-teamcity-servers
-
Lynis: Open-source security auditing tool
Lynis is a comprehensive open-source security auditing tool for UNIX-based systems, including Linux, macOS, and BSD. Hardening with Lynis Lynis conduc… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/19/lynis-open-source-security-auditing-tool/
-
Quicmap: Fast, open-source QUIC protocol scanner
Quicmap is a fast, open-source QUIC service scanner that streamlines the process by eliminating multiple tool requirements. It effectively identifies … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/18/quicmap-open-source-quic-protocol-scanner/
-
How to Think Like a Hacker ” and Defend Your Data
In this interview with white hat hacker Mishaal Khan, we learn about open source intelligence gathering and how to hack humans ” or not. The post i… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/03/how-to-think-like-a-hacker-and-defend-your-data/
-
MobSF: Open-source security research platform for mobile apps
The Mobile Security Framework (MobSF) is an open-source research platform for mobile application security, encompassing Android, iOS, and Windows Mobi… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/14/mobsf-open-source-mobile-security-framework/
-
Patch Now: Kubernetes RCE Flaw Allows Full Takeover of Windows Nodes
Tags: container, exploit, flaw, kubernetes, open-source, rce, remote-code-execution, update, vulnerability, windowsAttackers can remotely execute code with system privileges by exploiting a vulnerability in the source code of the open source container management sy… First seen on darkreading.com Jump to article: www.darkreading.com/cloud-security/patch-now-kubernetes-flaw-allows-for-full-takeover-of-windows-nodes
-
BSAM: Open-source methodology for Bluetooth security assessment
Many wireless headsets using Bluetooth technology have vulnerabilities that may allow malicious individuals to covertly listen in on private conversat… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/13/bluetooth-security-assessment-methodology/
-
CloudGrappler: Open Source Tool that Detects Hacking Activity
CloudGrappler is an innovative open-source tool designed to detect the presence of notorious threat actors in cloud environments. This tool is a beaco… First seen on gbhackers.com Jump to article: gbhackers.com/cloudgrappler/
-
Transitioning to memory-safe languages: Challenges and considerations
Tags: open-sourceIn this Help Net Security interview, Omkhar Arasaratnam, General Manager at the Open Source Security Foundation (OpenSSF), discusses the evolution of … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/11/omkhar-arasaratnam-openssf-memory-safe-programming-languages/
-
CloudGrappler: Open-source tool detects activity in cloud environments
CloudGrappler is an open-source tool designed to assist security teams in identifying threat actors within their AWS and Azure environments. The tool,… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/11/cloudgrappler-free-open-source-cloud-security-tool/
-
How to Ensure Open Source Packages Are Not Landmines
CISA and OpenSSF jointly published new guidance recommending technical controls to make it harder for developers to bring malicious software component… First seen on darkreading.com Jump to article: www.darkreading.com/application-security/how-to-ensure-open-source-pckages-are-not-landmines
-
How to Ensure Open-Source Packages Are Not Landmines
CISA and OpenSSF jointly published new guidance recommending technical controls to make it harder for developers to bring in malicious software compon… First seen on darkreading.com Jump to article: www.darkreading.com/application-security/how-to-ensure-open-source-pckages-are-not-landmines
-
How to Ensure Open-Source Packages Are Not Mines
CISA and OpenSSF jointly published new guidance recommending technical controls to make it harder for developers to bring in malicious software compon… First seen on darkreading.com Jump to article: www.darkreading.com/application-security/untitled
-
OpenARIA: Open-source edition of the Aviation Risk Identification and Assessment (ARIA)
MITRE now offers an open-source version of its Aviation Risk Identification and Assessment (ARIA) software suite, OpenARIA. This initiative is dedicat… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/08/mitre-openaria-open-source/
-
Zama Raises $73M in Series A Led by Multicoin Capital Protocol Labs for Fully Homomorphic Encryption
Company Open Sources FHE Libraries to Build Privacy-Preserving Blockchain and AI Applications for the First Time. An investment has been secured to br… First seen on gbhackers.com Jump to article: gbhackers.com/zama-raises-73m-in-series/
-
New SSH-Snake Worm-Like Tool Threatens Network Security
The Sysdig Threat Research Team (TRT) discovered that a threat actor is leveraging an open-source network mapping tool called SSH-Snake for malicious … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/03/new-ssh-snake-worm-like-tool-threatens-network-security/
-
Tazama: Open-source real-time fraud management
Tazama is an open-source platform focused on improving fraud management within digital payment systems. Tazama marks a substantial transformation in t… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/07/tazama-open-source-real-time-fraud-management/

