Security News > 2023 > October

GitHub's Secret Scanning Feature Now Covers AWS, Microsoft, Google, and Slack
2023-10-06 08:53

GitHub has announced an improvement to its secret scanning feature that extends validity checks to popular services such as Amazon Web Services (AWS), Microsoft, Google, and Slack. Validity...

Deepfake Election Interference in Slovakia
2023-10-06 07:04

Šimečka and Denník N immediately denounced the audio as fake. The fact-checking department of news agency AFP said the audio showed signs of being manipulated using AI. But the recording was posted during a 48-hour moratorium ahead of the polls opening, during which media outlets and politicians are supposed to stay silent.

Deepfake Election Interference in Slovokia
2023-10-06 07:04

Šimečka and Denník N immediately denounced the audio as fake. The fact-checking department of news agency AFP said the audio showed signs of being manipulated using AI. But the recording was posted during a 48-hour moratorium ahead of the polls opening, during which media outlets and politicians are supposed to stay silent.

Supermicro's BMC Firmware Found Vulnerable to Multiple Critical Vulnerabilities
2023-10-06 06:02

Multiple security vulnerabilities have been disclosed in the Intelligent Platform Management Interface (IPMI) firmware for Supermicro baseboard management controllers (BMCs) that could result in...

October 2023 Patch Tuesday forecast: Operating system updates and zero-days aplenty
2023-10-06 04:42

The November Patch Tuesday cumulative update will include the Moment 4 features and updates. This patch Tuesday will include the last updates for Windows 11 21H2 and Microsoft Server 2012/2012 R2. The later go into Extended Security Support starting with a November release, and Microsoft also announced the keys used to enable these updates will be managed as part of Azure Arc.

Are executives adequately guarding their gadgets?
2023-10-06 04:00

Today, individual citizens, rather than businesses or governmental bodies, are the main entry points for cyberattacks. Security solutions haven't evolved sufficiently to guard public figures and leaders as they do for large corporate entities.

Poor cybersecurity habits are common among younger employees
2023-10-06 03:30

The research also shows that Millennial and Gen Z office workers are more likely to have unsafe cybersecurity habits when compared to Gen X and older. 38% of office workers under 40 use the same passwords on multiple devices, compared to 28% of office workers older than 40.

Enterprises see AI as a worthwhile investment
2023-10-06 03:00

92% of AI team leaders at leading-edge organizations felt that their AI initiatives are generating value, according to Wallaroo. "Leading edge ML enterprises have a number of lessons to teach other organizations embarking on their own ML production journeys," said Vid Jain, CEO of Wallaroo.

#AI
GoldDigger Android trojan targets Vietnamese banking apps, code contains hints of wider targets
2023-10-06 01:06

Singapore-based infosec outfit Group-IB on Thursday released details of a new Android trojan that exploits the operating system's accessibility features to steal info that enables theft of personal information. The security research outfit wrote that the trojan, named GoldDigger, currently targets Vietnamese banking apps - but includes code suggesting its developers plan wider attacks.

Microsoft officially removes Cortana for Windows 11 Insiders
2023-10-05 20:29

Microsoft finally removed the Cortana standalone app from Windows 11 in the latest preview build for Insiders in the Canary Channel. "Support for Cortana in Teams mobile, Microsoft Teams display, and Microsoft Teams Rooms will end in the fall of 2023. Voice assistance in Outlook mobile and Microsoft 365 mobile will also end in the fall of 2023," Microsoft said at the time.