Skip to main content

XMT

短闻

信流 · 上滑连读 · 来源可核

搜索 稍后
1 / 24
Aggregate CSO Online 网络安全 OpenAI 45″

Sam Altman calls GPT-6 Astra rollout ‘messy’ as enterprise users wait for access

OpenAI’s rollout of its GPT-6 Astra model ran into early access issues after paying ChatGPT users were unable to use the system shortly after launch, prompting CEO Sam Altman to apologize and say the release had been “messy.…

  • ” “First, sorry for the messy rollout,” OpenAI CEO Sam Altman acknowle…
  • “Second, when we screw up, we try to make it right.
  • ” OpenAI had said GPT-6 Astra would be rolled out across ChatGPT tiers…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

Back-to-back N-able bugs send admins on a patching spree

A max-severity zero-day bug could be affecting cybersecurity firm N-able’s N-central remote monitoring and management platform, the company said, even as administrators were applying a hotfix for two vulnerabilities disclosed just a day earlier.…

  • The latest flaw, tracked as CVE-2026-86218, is a remote code execution…
  • Through its incident page, the company said the new vulnerability is u…
  • “Unlike the earlier vulnerabilities, this newly identified vulnerabili…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Schneier on Security 网络安全 6″

Automobile Camouflage to Hide from Flock Cameras

Not sure it’s practical, but it’s certainly striking.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

What do CISOs need to rest easy about future AI risks?

Security leaders’ confidence in their ability to navigate the security risks AI will pose over the next two years rests on several clear factors, according to IANS analysis of its AI Security Survey, fielded earlier this year.…

  • Of the 113 CISOs IANS surveyed in April and May, 41% expressed optimis…
  • Delving deeper, IANS identified six strong organizational signals that…
  • And they have less to do with current controls and capacities and more…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

Insurers Search for Answers to Rein in Rogue AI

As incidents of unintended harm caused by rogue AI agents mount, CISOs and insurance firms are figuring out how to handle the fallout.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Schneier on Security 网络安全 13″

Friday Squid Blogging: Squid on a Stick at the New York State Fair

Looks tasty. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered. Blog moderation policy.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

What the AI Warning Letter Completely Missed

The recent AI warning letter is right about the "window," but it omits naming who is coming through it or, critically, who will close it.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?

A tidal wave of bug reports is overwhelming software vendors, exposing secure-by-design failures and creating disclosure bottlenecks.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 16″

Companies Have 6 Months to Prepare for Automated Attacks

Frontier AI models have already demonstrated they can autonomously — and in some cases, inadvertently — conduct end-to-end compromises, but the situation will become more urgent very soon.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Schneier on Security 网络安全 39″

Using a VM to Contain an AI Agent

It won’t work: My suspicion was that GPT 5.6-Cyber would succeed, but the frequency and manner of its success removed all doubt.…

  • We have to reassess sandboxing quality for capable AI agents, and in g…
  • An off-the-shelf VM is not enough to contain a modern, cyber-capable A…
  • There is simply too much attack surface.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

FBI investigates breach of 153 million driving license records at IDscan.net

Drivers in North America received a nasty shock this week when it was revealed that digital scans of 153 million drivers’ licenses were for sale on the dark web.…

  • Among the victims were US Defense Secretary Pete Hegseth – and investi…
  • The driving license details were offered for sale by a user of the Rus…
  • In addition to the 153 million driving licenses, the user also offered…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

Bidding war for defunct Spirit Airlines’ employee data will not die

The destiny of Spirit Airline’s data is still undecided, months after the company sought bankruptcy protection.…

  • AI data company Micro1 has now offered $12.
  • 5 million to acquire a trove of the company’s emails, Teams chats, ope…
  • 5 million SharePoint items, and more than 30 million recorded customer…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Schneier on Security 网络安全 45″

Security Vulnerability in a Voting System

It’s a vulnerability that allows someone to recover the order of ballots cast, newly exploited with AI tools.…

  • Nearly four years since the original vulnerability was disclosed, I wa…
  • Notably, I never touched a voting machine, exploited a network, examin…
  • After pointing a coding agent to the original vulnerability paper, I s…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Schneier on Security 网络安全 45″

AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks

We cannot forget that AI coding agents are not yet trustworthy: Researchers at a stealth startup in Israel scanned 6,214 live domains belonging to defense contractors, Fortune 500, and Big Tech companies.…

  • Of the 8,265 llms.
  • txt and llms-full.
  • txt files they found (many sites hosted both an llms.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

OpenAI launches GPT-6 Astra, its first model to cross a critical cybersecurity threshold

OpenAI launched GPT-6 Astra on Thursday, disclosing that the new flagship model has crossed the “Critical” threshold for cybersecurity risk under its Preparedness Framework, a classification the company said triggers additional deployment restrictions.…

  • “GPT‑6 Astra is rolling out today to a limited set of organizations an…
  • Enterprise administrators must manually enable Astra for their workspa…
  • Developers can access Astra in the API as gpt-6-astra or through Amazo…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

The democratization of cyber warfare — and what it means for CISOs

For most of modern history, sophisticated and costly warfare had a high barrier to entry.…

  • In order to maintain a significant tactical advantage, you needed mone…
  • In the physical realm, you needed trained and capable warfighters alon…
  • In cyber, you needed operators who understood networks, vulnerabilitie…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

OpenAI targets small utilities with $1 billion cyber defense initiative

In a keynote speech during a summit at OpenAI’s headquarters attended by 300 enterprise security leaders and CISOs from Fortune 1000 companies, OpenAI President Greg Brockman announced Daybreak for Frontline Defenders, a new global initiative to help frontline defenders use frontier cyber AI to protect essential services in the United States and around the world.…

  • The initiative entails a $1 billion global commitment to expand subsid…
  • Daybreak is a defensive model that involves frontier models; the Codex…
  • In announcing the initiative, Brockman said he asked an off-the-shelf …

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 14″

Large Enterprises Targeted in Fake Merger & Acquisition Scams

Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 19″

What We Missed: Did ShinyHunters 'Breach' ReliaQuest?

In this video conversation, Dark Reading editors discuss some of the news they didn't get a chance to cover, from the latest antics of ShinyHunters to new research about the prevalence (or lack thereof) of AI-generated malware.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

'Breeze Comet' Tears Into Brazilian & Global Financial Systems

Brazil's most sophisticated threat group is making light work of the country's financial systems, putting money directly into its own pocket.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 13″

AI 'Machine Speed' Cuts 2-Week Attack Down to 10 Hours

The incident demonstrates how frontier AI agents can dramatically compress an attack timeline and coordinate a large-scale breach, according to researchers.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

Decade-old PostgreSQL flaw turns backup account into a backdoor

A critical vulnerability in PostgreSQL had remained hidden for more than a decade, potentially turning a routine backup account into a path to full database and server compromise.…

  • The issue, dubbed PostGREShell by Cyera Research, exists in the databa…
  • “The flaw lets a low-privilege “backup” account load and execute arbit…
  • “That foothold escalates to full PostgreSQL superuser with persistent …

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate CSO Online 网络安全 45″

Counterfeit installers turn routine software downloads into enterprise breaches

Microsoft has warned that attackers are breaching enterprise systems via counterfeit download sites impersonating software including Microsoft Edge, Kaspersky and Razer, delivering trojanized installers for persistent access.…

  • “Once executed, the malicious installers deploy malware that establish…
  • The campaign, tracked by Microsoft Defender Experts, has impacted orga…
  • The attackers are using a network of spoofed websites mimicking legiti…

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Schneier on Security 网络安全 6″

Researching Employment Scams

Researchers built a fake company to study fake employee scams.

RSS 官方收录 · 可信分层展示

详情 原文 分享图