circuit_cat

4 Followers
31 Following
157 Posts

What's this button do?

Security+ ...and that's it, thus far.

Aspiring GRC

#NoAI #StoptheHoard #infosec

The first challenge at #bsidesnyc ?

How to get out of the lobby. 

Ah, THAT'S why the #NYMTA hosted a cybersecurity conference 

https://therecord.media/railroad-cyberthreats-tsa-regulations

Cyberthreats to railroads loom as industry and TSA grow an uneasy partnership

U.S. railroad companies and the federal government are working to build trust after a rollout of cybersecurity regulations in 2022 rankled the industry. Experts say the stakes are high.

A few days early maybe but it's time for the October Surprise! No it's not a candidate's secret love child or yet another attempt at subverting democracy, IT'S:

Print Spoolers committing RCEs

https://securityintelligence.com/news/fysa-critical-rce-flaw-in-gnu-linux-systems/

#cups #CupsBleed #cve_2024_47076 #cve_2024_47175 #cve_2024_47176 #cve_2024_47177

FYSA - Critical RCE Flaw in GNU-Linux Systems - Security Intelligence

A severe, unauthenticated remote code execution (RCE) flaw has been discovered in GNU Linux systems. The vulnerability, rated CVSS 9.9, affects multiple Linux distributions and has the potential to be exploited by threat actors to gain unauthorized access to sensitive systems.

Security Intelligence

Also, while I was unfortunately unable to attend, I'm very disappointed #PennState has chosen "AI for Good" (and reportedly throwing it's weight behind 'creative' #AI alongside more acceptable analytical AI) as the inaugural subject of its first Global Impact Forum (#TGIF) Seems to be a bit contemptuous of the work the students in PS Law and the Stuckeman School are achieving.

https://www.psu.edu/news/outreach/story/inaugural-gsv-x-penn-state-ai-conference-be-held-sept-22-25-philadelphia

#aithreat

Inaugural GSV x Penn State AI conference to be held Sept. 22-25 in Philadelphia | Penn State University

Education professionals, entrepreneurs and AI-industry experts are invited to attend the inaugural East Coast Global Silicon Valley (GSV) x Penn State event. The Global Impact Forum will be held Sept. 22-25 at the Pennsylvania Convention Center in Philadelphia.

I had an opportunity to chat with #AI proponents recently. The recurring theme from them every time it was brought up how generative AI is in flagrant violation of #copyright laws, is that technology has advanced beyond law, and 'that horse has left the barn'. That particular phrase was oft repeated, which, pardon my curtness, is abject bull.

OpenAI ADMITTED it must use copyrighted work to function, and does not obtain proper permission. Therefore, it confessed to being violation of copyright law.

A court order directing them to purge their improperly obtained items would be a VERY FAST way to put that horse 'back in the barn', so to speak...or more appropriately, the glue factory.

#StopTheHoard

Edit: source on the admission - https://www.engadget.com/openai-admits-its-impossible-to-train-generative-ai-without-copyrighted-materials-103311496.html

OpenAI admits it's impossible to train generative AI without copyrighted materials

OpenAI said it's "impossible to train today's leading AI models without using copyrighted materials."

Engadget
StarDict - Wikipedia

The Button Problem of AI

What’s the real reason AI hasn’t yet delivered on its hype?

Ah yes, so the UAE, Saudi Arabia, and Qatar are going to lead the charge in regulating #AI. I'm certain they'll look to ensure the right of #artists and creators, particularly those who may run afoul of the Riyadh Charter for AI in the Islamic World, right? Not to mention quickly incorporating it into their cyber warfare platforms (but not for anyone else)*, and burning through mountains of fossil fuels in the process.

Brilliant.

*(By the way, I'm fully aware every other nation on the planet would do this in the same manner. This particular point of criticism applies to all of them; I'm just focusing on the current subjects of the article - also, all three would likely be more aggressive in offensive utilization than, say, France.)
https://www.cnn.com/2024/09/16/middleeast/middle-east-artificial-intelligence-spc/index.html

Why these Gulf states want to be AI superpowers

In recent years, the United Arab Emirates has been signalling its intent to become a major player in artificial intelligence, but now other Gulf countries are also getting serious about the technology.

CNN

You've no doubt read about fair use in the conversations around the publishers' lawsuit against our library.

But what is fair use, and why does it matter in today's media landscape? Join us, along with Authors Alliance, for a book talk on RECLAIMING FAIR USE with authors and scholars Patricia Aufderheide & Peter Jaszi:
📅 Tues, Sep 24 @ 10am PT / 1pm ET
📍 Online
🎟️ https://www.eventbrite.com/e/book-talk-reclaiming-fair-use-tickets-1011370455257

Book Talk: Reclaiming Fair Use

Join us for a book talk with copyright scholars PATRICIA AUFDERHEIDE & PETER JASZI, discussing their groundbreaking book RECLAIMING FAIR USE

Eventbrite

New, by me:

The Dark Nexus Between Harm Groups and 'The Com'

A cyberattack that shut down two of the top casinos in Las Vegas last year quickly became one of the most riveting security stories of 2023: It was the first known case of native English-speaking hackers in the United States and Britain teaming up with ransomware gangs based in Russia. But that made-for-Hollywood narrative has eclipsed a far more hideous trend: Many of these young, Western cybercriminals are also members of fast-growing online groups that exist solely to bully, stalk, harass and extort vulnerable teens into physically harming themselves and others.

https://krebsonsecurity.com/2024/09/the-dark-nexus-between-harm-groups-and-the-com/

The Dark Nexus Between Harm Groups and ‘The Com’ – Krebs on Security