Prompts gone rogue. [Research Saturday]
CyberWire Daily10 Aug 2024

Prompts gone rogue. [Research Saturday]

Shachar Menashe, Senior Director of Security Research at JFrog, is talking about "When Prompts Go Rogue: Analyzing a Prompt Injection Code Execution in Vanna.AI." A security vulnerability in the Vanna.AI tool, called CVE-2024-5565, allows hackers to exploit large language models (LLMs) by manipulating user input to execute malicious code, a method known as prompt injection. This poses a significant risk when LLMs are connected to critical functions, highlighting the need for stronger security measures. The research can be found here: When Prompts Go Rogue: Analyzing a Prompt Injection Code Execution in Vanna.AI Learn more about your ad choices. Visit megaphone.fm/adchoices

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(3765)

Storm clouds over the waterworks.

Storm clouds over the waterworks.

CISA rides out a Cyber Storm. The EU struggles to share cyber threat information. Nightmare Eclipse drops another Defender zero-day. TASK#STOMP steals business documents. North Korean operatives fake ...

22 Sep 27min

A very real-world AI test.

A very real-world AI test.

Google confirms unauthorized access by Gemini. AI’s growing power outpaces its defenses. Hackers target Colorado water utilities. Georgia weighs voting-system security. ShinyHunters hijacks Clop’s lea...

21 Sep 29min

CyberWire Daily at 10: Critical infrastructure attacks over the last 10 years. [Special Edition]

CyberWire Daily at 10: Critical infrastructure attacks over the last 10 years. [Special Edition]

In this Special Edition episode, Maria Varmazis⁠ and ⁠Dave Bittner⁠ from N2K Cyberwire get back together to reflect on the past decade of critical infrastructure attacks, evolving threats, and lessons...

20 Sep 43min

Defending Space as Critical Infrastructure. [T-Minus: Space-Cyber Briefing]

Defending Space as Critical Infrastructure. [T-Minus: Space-Cyber Briefing]

Space infrastructure has become an increasingly important part of everyday life, which has also made it an increasingly attractive target for exploitation. Host Maria Varmazis and Sean MacKirdy, Are...

20 Sep 26min

All about that proxy. [Research Saturday]

All about that proxy. [Research Saturday]

Today we are joined by Dr. Renée Burton, VP of Threat Intelligence at Infoblox, discussing their work on Lurking Lizard, "Fake Installers, Fake Reviews, Fake Services – Real Proxies, Real." The resear...

19 Sep 25min

The Cisco root route.

The Cisco root route.

Cisco patches a maximum-severity vulnerability in its Identity Services Engine. Court documents describe AI as “an astonishing theft of unprecedented proportions.” Researchers chain vulnerabilities to...

18 Sep 28min

AI is calling the shots.

AI is calling the shots.

AI goes to war. Iranian strikes leave AWS data unrecoverable. OpenAI discloses more model misbehavior. Researchers uncover 16 Wireshark vulnerabilities. TrustSink turns Entra authentication into a pas...

17 Sep 29min

Cybercrime finds its sea legs.

Cybercrime finds its sea legs.

Officials investigate suspected cyberattacks on U.S.-bound oil tankers. Iranian operators deploy Chosen Brick surveillance malware. Ukraine cracks down on scam call centers. Researchers uncover two TP...

16 Sep 29min

Populärt inom Politik & nyheter

aftonbladet-krim
svenska-fall
p3-krim
fordomspodden
rss-krimstad
flashback-forever
aftonbladet-daily
rss-vad-fan-hande
rss-sanning-konsekvens
politiken
svd-ledarredaktionen
rss-krimreportrarna
rss-flodet
en-runda-till
motiv
rss-frandfors-horna
kungligt
omni-podd
rss-klubbland-en-podd-mest-om-frolunda
spar