AI Arms Race Fuels Surge in Cybercrime and Data Leaks

Check Point’s mid-year security report highlights soaring cybercrime driven by AI-powered attacks, especially phishing, deepfakes, and malware. Hacktivist activity and ransomware were on the rise, with misused generative AI leading to data breaches. The report urges organizations to prioritize real-time threat prevention and adapt security strategies to AI-fueled th

WebProNews

#AI in #LifeSciences is confronted with challenges such as #DataLeakage, where training data unintentionally influences test results. Researchers stress that understanding data complexity and fostering interdisciplinary work are essential for reliable applications: https://go.tum.de/787419

#DataScience

📷A.Eckert

Why AI models often fail in practice

Artificial intelligence offers opportunities, but data leakage can become a problem. Researchers advocate for more interdisciplinarity in the life sciences.

Kedze rad pouzivam wget, upozornujem na poslednu aktualizaciu 1.25.0, ktora je patch na CVE-2024-10524

#phishing #maninthemiddle #dataleakage

Why, #Signal? Why must you undermine my trust in you by repeatedly insisting on asking for access to my contacts? Why is it not sufficient for me to say no and MEAN no? Take a hint! NO CONTACTS. EVAR!!

#privacy #DataProtection #DataLeakage

Video - Hacking Azure: From OSINT to Full Compromise!

Scenario:
A seemingly innocuous post by a new manager at Mega Big Tech, showcasing their new workstation, inadvertently leaked sensitive Azure credentials. This oversight allowed attackers to gain unauthorized access, escalating privileges through a compromised Azure Logic App Automation, leading to potential data breaches.

Learning points:

  • Oversharing can lead to security breaches: Even a photo of your workstation can reveal critical information like VM names, subscription IDs, and public IP addresses.
  • Validate and secure internal automation: Ensure that systems like password reset bots are restricted to only necessary permissions, preventing unauthorized access or privilege escalation.
  • Implement conditional access: Use conditional access policies to safeguard access, ensuring only managed devices can interact with sensitive systems.

https://www.youtube.com/watch?v=FCTRNAT4kZ0

#Cybersecurity #dataleakage

Hacking Azure: From OSINT to Full Compromise! - [Educational Purposes Only]

YouTube

Don’t Push the Button! Exploring Data Leakage Risks in Machine Learning and Transfer Learning.

📎 https://arxiv.org/pdf/2401.13796

#dataleakage #machineLearning #datasplit #deeplearning #transferlearning

#USA #Cybersecurity #ATT #DataLeakage: "Phone giant AT&T has reset millions of customer account passcodes after a huge cache of data containing AT&T customer records was dumped online earlier this month, TechCrunch has exclusively learned.

The U.S. telco giant initiated the passcode mass-reset after TechCrunch informed AT&T on Monday that the leaked data contained encrypted passcodes that could be used to access AT&T customer accounts.

A security researcher who analyzed the leaked data told TechCrunch that the encrypted account passcodes are easy to decipher. TechCrunch alerted AT&T to the security researcher’s findings.

In a statement provided Saturday, AT&T said: “AT&T has launched a robust investigation supported by internal and external cybersecurity experts. Based on our preliminary analysis, the data set appears to be from 2019 or earlier, impacting approximately 7.6 million current AT&T account holders and approximately 65.4 million former account holders.”

“AT&T does not have evidence of unauthorized access to its systems resulting in exfiltration of the data set,” the statement said." https://techcrunch.com/2024/03/30/att-reset-account-passcodes-customer-data/

AT&T resets account passcodes after millions of customer records leak online | TechCrunch

Security researcher told TechCrunch that leaked AT&T customer data contained encrypted account passcodes that can be easily unscrambled.

TechCrunch
One of the biggest challenges in #IRL #datascience and #machinelearning versus what you learn in school is labeling errors: When you create your own dataset from sources you may not be measuring the outcomes and connecting them to prediction data correctly! If you have labeling errors you are either unable to predict anything or worse - good model performance metrics, but terrible real world performance. Possibly #dataleakage, but possibly other forms of incoherence. 🤯
“Snakes in airplane mode” – what if your phone says it’s offline but isn’t? - WYSIWYG is short for "what you see is what you get". Except when it isn't... https://nakedsecurity.sophos.com/2023/08/21/snakes-in-airplane-mode-what-if-your-phone-says-its-offline-but-isnt/ #airplanemode #dataleakage #dataloss #malware #wysiwyg #iphone
“Snakes in airplane mode” – what if your phone says it’s offline but isn’t?

WYSIWYG is short for “what you see is what you get”. Except when it isn’t…

Naked Security

#ML #Science #Reproducibility #DataLeakage: "To minimize errors in ML-based science, and to make it more apparent when errors do creep in, we propose REFORMS (Reporting standards for Machine Learning Based Science) in a preprint released today. It is a checklist of 32 items that can be helpful for researchers conducting ML-based science, referees reviewing it, and journals where it is submitted and published.

The checklist was developed by a consensus of 19 researchers across computer science, data science, social sciences, mathematics, and biomedical research. The disciplinary diversity of the authors was essential to ensure that the standards are useful across many fields. A majority of the authors were speakers or organizers at a workshop we organized last year titled "The Reproducibility Crisis in ML-Based Science." (Videos of the talks and discussions are available on the workshop page.)

The checklist and the paper introducing it are available on our project website. The paper also provides a review of past failures, as well as best practices for avoiding such failures."

https://www.aisnakeoil.com/p/introducing-the-reforms-checklist

Introducing the REFORMS checklist for ML-based science

ML-based science is in trouble. Clear reporting standards for researchers could help.

AI Snake Oil