Security News > 2021 > May

How do we decide whether or not to trust AI systems?
2021-05-26 03:00

These are two very different scenarios, but the same issue permeates both: How do we humans decide whether or not to trust a machine's recommendations? This is the question that a new draft publication from the National Institute of Standards and Technology poses, with the goal of stimulating a discussion about how humans trust AI systems.

#AI
Imperva introduces Serverless Protection to secure serverless computing functions
2021-05-26 02:30

Imperva launches Imperva Serverless Protection, a new product built to secure organizations from vulnerabilities created by misconfigured apps and code-level security risks in serverless computing environments. Imperva Serverless Protection offers market-differentiated capabilities to help organizations manage the complex security risks that emerge in serverless functions.

VMware reveals critical vCenter hole it says ‘needs to be considered at once’
2021-05-26 02:04

VMware has revealed a critical bug that can be exploited to achieve unauthenticated remote code execution in the very core of a virtualised system - vCenter Server. The culprit is the vSphere HTML5 client, which by default includes the Virtual SAN Health plugin - even if you don't run a VMware VSAN. That plugin lacks input validation and the result, as explained by VMware's advisory this week, is: "A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underlying operating system that hosts vCenter Server."

Onfido Face Authenticate enables businesses to authenticate customers’ real identities
2021-05-26 02:00

Onfido announced Onfido Face Authenticate, which adds a fast and seamless biometric face authenticator as well as new security tools, including Onfido Private Key Encryption, to its Real Identity Platform. With Onfido's Real Identity Platform, comprising of Onfido Verify and Onfido Face Authenticate, companies can now go beyond safely onboarding new users for Know Your Customer or compliance purposes by providing a safe and frictionless way for trusted users to re-access existing accounts within seconds and unlock new revenue opportunities for digital products and services.

Juniper Networks Apstra 4.0 enhances the experience of users and operators in the data center
2021-05-26 01:30

Juniper Apstra helps organizations to minimize the time and costs associated with deploying and managing traditionally complex data center networks. The new software version builds on the unique multivendor capabilities of the Apstra solution to support VMware NSX-T 3.0 and Enterprise SONiC, in addition to previously supported data center switching from Juniper, Nvidia, Arista Networks and Cisco Systems.

Datadog’s AWS Lambda extension allows customers to collect telemetry from serverless applications
2021-05-26 01:00

Datadog announced the general availability of Datadog's AWS Lambda extension. "We are delighted to see Datadog's monitoring platform extend to support AWS Lambda extensions," said David Richardson, Vice President, Serverless, AWS. "AWS Lambda extensions make it even easier for developers to adopt their preferred monitoring and security tools, and we're excited to work with Datadog on the general availability launch of AWS Lambda extensions and of their monitoring extension."

Belgium Interior Ministry Targeted in Cyber Attack
2021-05-26 00:49

The Belgian interior ministry has found itself the target of "Sophisticated" cyber espionage, a spokesman told RTBF public television on Tuesday. According to Belgian experts, the attack, which was uncovered in March, had been launched in 2019.

Aruba’s Wi-Fi 6E solution set supports high-bandwidth applications and use cases
2021-05-26 00:45

Aruba announced the Wi-Fi 6E solution set - the 630 Series of campus access points, starting with the AP-635. "With connectivity demands growing exponentially, Wi-Fi 6E can take advantage of up to seven, superwide 160 MHz channels and uncongested bandwidth in the 6 GHz band to deliver unprecedented multi-gigabit and low latency connectivity," said Kevin Robinson, SVP of Marketing at Wi-Fi Alliance.

PLDA launches XpressRICH PCI Express 6.0 Controller IP for SoC designers and system architects
2021-05-26 00:30

PLDA announced the launch of their XpressRICH PCI Express Controller IP for the PCIe 6.0 specification. To compensate for the higher BER, XpressRICH for PCIe 6.0 architecture implements FEC combined with CRC. XpressRICH for PCIe 6.0 architecture also supports the new L0p low power mode, enabling traffic to be transmitted on a reduced set of lanes, reducing power consumption without impacting traffic flow.

(ISC)² announces registration opening for its 11th annual Security Congress
2021-05-26 00:00

announced that registration is now open for its 11th annual² Security Congress taking place online and at the Hyatt Regency Orlando in Orlando, FL from October 18-20. Focused on continuing education for security professionals, the three-day Security Congress will be held as a hybrid event, with online sessions accessible around the world as well as an engaging, in-person workshops, discussions, networking events and more.