Mania Africa 💎🌍

Geekline Feed Archive

143 posts
New HIGH CVE for OpenSBI: CVE-2025-63913

An issue was discovered in OpenSBI 1.3 allowing attackers to cause a denial of service via crafted request to the SBI function #2 or the 'Find and configure a matching counter' function of SBI PMU ext…

More: nvd.nist.gov/vuln/detail/CVE-2025-63913
View Original BlueSky
The latest update for #Indusface includes "CVE-2026-56164: Unauthenticated SharePoint Zero-Day Grants Farm Administrator Access" and "CVE-2026-6875: ServiceNow Sandbox Escape Leads to Pre-Auth RCE in #AI Platform".

#cybersecurity #infosec
Media from OpsMatters
View Original BlueSky
‘Integrated’ cyber and physical attacks concerned FIFA planners
Media from Patrick C Miller
View Original BlueSky
It’s a science fiction nightmare: What happens if the machines take over?The world got a potential taste of that last week, when OpenAI, the maker of ChatGPT, said two of its models had autonomously hacked into another AI company.OpenAI says its technology carried out the attack during a c..
Media from News 📰
View Original BlueSky
Nearly half of people encounter a scam on their phone every single day. Malwarebytes is doing something about it.

Here’s how Malwarebytes Mobile Security helps keep scams away from you and your data.
Media from Malwarebytes
View Original BlueSky
A Structuration Approach to Theorizing Cybersecurity Practice: The STARC Model

Md Aktaruzzaman, Atif Ahmad, Sean Maynard

#arXiv #cs.CR
View Original BlueSky
🟢 Free Internet and Infected Neighbors: How ISP Network Vulnerabilities Work

🗨️ It may seem that “free internet” is a thing of the distant past. However, the way home networks are set up still allows …

#devops
Media from HackMag — Top-notch cybersecurity magazine
View Original BlueSky
Mythos uncovers crypto weaknesses that went unknown for years

Separating the chaff from the wheat in Anthropic results is hard. We take a stab anyway.

Via Ars Technica
View Original BlueSky
A new framework for Mixture-of-Experts (MoE) inference, DA-MoE, optimizes GPU dispatch by adapting to routing distributions, achieving up to 1.55x speedups. This innovation enhances language model performance, unlocking efficiency in expert computations.
Media from AI Firehose
View Original BlueSky
Media from Patrick C Miller
View Original BlueSky
The latest update for #BitSight includes "The ECB's AI #Cybersecurity Action Plan: Why Speed, Visibility, and Evidence Matter" and "Bitsight's Ratings Algorithm Update for 2026 Makes Risk Vectors More Impactful".

#RiskManagement
Media from OpsMatters
View Original BlueSky
Not to get into conspiracy thinking or to speak about science fiction dystopian stories, however isn’t that part of what allowed Skynet to destroy humanity. The idea of uncontrollable AI has plagued many minds for decades.

www.politico.com/news/2026/07...
Media from News From A Neighbor
View Original BlueSky
Huntress reports an active credential-stuffing campaign targeting SonicWall VPN and firewall accounts, compromising 30 organizations and 92 users in under two days. No post-compromise activity observed yet. #SonicWall #Huntress #CISA
Media from Cybersecurity News Everyday
View Original BlueSky
#BlueVoyant announces its #Microsoft365 E7 readiness bundle, pairing BlueVoyant AI with deployment support for Microsoft Purview and Security Copilot with its recently announced Microsoft Agent 365 Security Deployment Service.

#Cybersecurity #MDR #ThreatIntelligence
Media from OpsMatters
View Original BlueSky
The latest update for #Cloudflare includes "Post-quantum authentication to origins is now supported" and "Natural disasters and government interference: examining Q2 2026's major Internet disruption events".

#Cybersecurity #SASE #ZeroTrust
Media from OpsMatters
View Original BlueSky
Today on KALW's Crosscurrents, they talked about exactly this. They referred to them as "family code words" but it's the same idea, and a good one!

www.kalw.org/podcast/cros...
View Original BlueSky
9to5Mac より

New lawsuit alleges unpatchable Apple chip exploit was developed using stolen trade secrets
新しい訴訟は、盗まれた貿易秘密を使用して開発されたパッチ可能なAppleチップの悪用を主張
Media from gigowat Ver.3.0
View Original BlueSky
Media from Patrick C Miller
View Original BlueSky
Rust for HPC + GPU Bundle by GitforGits | Asian Publishing House is a new release on Leanpub!

Most developers reach for Python when they need GPU power, but Rust also can deliver the same acceleration with memory safety and zero runtime overhead. … leanpub.com/b/rusthighpe...
Media from Leanpub
View Original BlueSky
Amazon researchers say a North Korea-linked group used tiny typo-crypto as a rehearsal before compromising axios and other open-source packages, using trusted maintainer access and hidden code. #NorthKorea #axios #typo-crypto
Media from Cybersecurity News Everyday
View Original BlueSky
Onyx Security, whose platform enables enterprises to deploy AI agents securely, raised a $113M Series B led by Bessemer, taking its total funding to $153M (Meir Orbach/CTech)

Main Link | Techmeme Permalink
View Original BlueSky
Root Evidence puts real-world evidence at the center of vulnerability prioritization

Root Evidence has launched the Evidence Platform, a vulnerability management platform that prioritizes vulnerabilities based on evidence of real-world exploitation and financial impact rather tha…
#hackernews #news
View Original BlueSky
Russian hackers are exploiting a new Exchange OWA XSS flaw in half-click email attacks, deploying OWAReaper for long-term mailbox access across U.S. and European government and industry targets. #Russia #Exchange #OWAReaper
Media from Cybersecurity News Everyday
View Original BlueSky
"As Japanese financial newspaper Nikkei Asia found in a recent investigation, just five US tech giants — Alphabet, Microsoft, Amazon, Meta, and Oracle — are hiding an estimated $1.65 trillion in debt that doesn’t appear on balance sheets.

futurism.com/artificial-i...
Media from Timnit Gebru
View Original BlueSky
The team that crippled London's transit just pleaded guilty on day one of trial. #CyberSecurity
Media from SUGATA AI
View Original BlueSky
┏┓
┃┃╱╲ in
┃╱╱╲╲ this
╱╱╭╮╲╲ house we
▔▏┗┛▕▔don’t support
╱▔▔▔▔▔▔▔▔▔▔╲
FLOCK CAMERAS, ICE, ANTHROPIC AND AI
╱╱┏┳┓╭╮┏┳┓╲╲
▔▏┗┻┛┃┃┗┻┛▕▔
View Original BlueSky
Anthropic files to go public
Media from dfedicatest
View Original BlueSky
Leading researchers from OpenAI and Anthropic urge the U.S. to provide resources for managing AI advancement #artificialintelligence
Media from RS Web Solutions
View Original BlueSky
OpenAI is developing a family of devices for AI interaction, including a rumored smart speaker. This marks a clear move into hardware.

Source: The Verge AI
Media from Sipirtu
View Original BlueSky
In Q4, Microsoft's Anthropic investment saw a $3.2B gain, while its OpenAI investment was marked down ~$600M but has generated a $5B gain on a full-year basis (Julie Bort/TechCrunch)

Main Link | Techmeme Permalink
View Original BlueSky
Lilian Weng left for health reasons.
Then she joined OpenAI.
The talent war is getting weird.
It's not just about the money, it's about where the power is moving.
Media from Kenny Swann AI Tutor (not political at all)
View Original BlueSky
A vulnerability in Microsoft Copilot allows attackers to embed malicious instructions in Word documents, which can alter document outputs and propagate the worm through normal workflows.
Media from securityrss.ai
View Original BlueSky
Public Citizen's J.B. Branch makes the case that the OpenAI–Hugging Face incident was "a foreseeable governance failure rooted in private decision-making"—and that voluntary corporate risk management is not enough. Congress must investigate, he says.
Media from Tech Policy Press
View Original BlueSky
OpenAI AI-agent escape attempts, Artifactory zero-days, and Anthropic Mythos findings on AES and post-quantum weaknesses headline today’s recap. Supply-chain RAT drops and exposed BMC IPMI hashes add to the risk. #OpenAI #Artifactory #Anthropic
Media from Cybersecurity News Everyday
View Original BlueSky
Bloomberg Intelligence rundown on tech/AI debt.
Media from George Pearkes
View Original BlueSky
Healthcare Dive recently reported that hackers breached Craneware, a hospital software vendor used by thousands of healthcare organizations. What stood out to me is how much operational dependency now sits outside the walls of a healthcare organization.
Media from
View Original BlueSky
Scam researchers told a Claude agent and human "scammers" to text test subjects and build a relationship. After a week, subjects said they trusted the AI more than the human and almost half were willing to install an app at its request. Almost none detected it was AI. www.wired.com/story/ai-sca...
Media from Andy Greenberg
View Original BlueSky
So it seems likely that the AI exploited human mistakes to get access, just like most hackers do. Published and missing credentials are human errors that hopefully AI will help prevent.
View Original BlueSky
Framingham DPW (via Facebook): Due to the weather, the following morning programs are cancelled for today - Thursday, July 30, 2026: - Tennis Clinic (make-up on Friday) - Hitting & Fielding Clinic We apologize for the inconvenience and appreciate your understanding.… [Link] #Framingham
Media from Framingham City Posts Bot - UNOFFICIAL!
View Original BlueSky
According to Ransomware.live, pear ransomware group has added Sonitor Technologies (🇺🇸) to its victims.
View Original BlueSky
Inside Moscow's elite Bauman University, a secret department trains the GRU's next-gen hackers, saboteurs, and spies. Leaked documents now expose how its graduates feed the units behind Russia's cyberattacks, election interference, and NATO sabotage.
Media from Szabolcs Panyi
View Original BlueSky
9to5Mac より

Apple fixes over 75 security issues with your iPhone and 150+ for Mac, update now
AppleはあなたのiPhoneとMac用の150+で75以上のセキュリティ問題を修正し、今更新
Media from gigowat Ver.3.0
View Original BlueSky
Is cybersecurity actually hard in 2026? 🛑

It’s not hard because of high-level coding. It’s hard because of gatekeeping and trying to learn 20 tools at once instead of mastering basic networking.

Read our full reality check guide:
cyberupdates365.com/is-cyber-sec...

#CyberSecurity #TechCareers
Media from Cyber Updates 365
View Original BlueSky
‘CoreWeave has sweetened terms on a $2.6B leveraged loan to fund additional computing capacity in an effort to win over investors growing wary of AI-related debt as bubble concerns mount. Discussions now involve the loan pricing 5.5% above benchmark.’ www.bloomberg.com/news/article...
Media from Jesse Felder
View Original BlueSky
How long did OpenAI's hacking agent run rogue before the company noticed? We mapped out what we know.

Beware: You'll have to scroll a while.

🎁 https://wapo.st/4wueB9Q
Media from Kevin Schaul
View Original BlueSky
According to Ransomware.live, cmdorganization ransomware group has added Contact Group (🇦🇺) to its victims.
View Original BlueSky
Scale AI hires former Google Cloud COO Francis deSouza as CEO, replacing interim CEO Jason Droege, who took over last year after Alexandr Wang left for Meta (Madison Mills/Axios)

Main Link | Techmeme Permalink
View Original BlueSky
German minister urges faster AI self-sufficiency after OpenAI test breach -
Media from CNA - Channel News Asia (Unofficial)
View Original BlueSky
A new type of attack can trick Microsoft Copilot for Word into spreading hidden prompt injections.
Media from Malwarebytes
View Original BlueSky
Privacy-Preserving Identity Management and Software Bill of Materials Vulnerability Detection: Practical Use Cases from the PRIVIDEMA Project (Mariya Georgieva Belorgey, Benoit Cogliati, Simon Demarty, Lois Huguenin-Dumittan, Özcan Öztürk, Salma Rasti Samiei, Oana Stan) ia.cr/2026/1536
Media from ePrint Updates
View Original BlueSky
22% of organizations experienced AI-enabled attacks on critical business platforms in the past 12 months, while most leaders lack confidence in detection and AI security.
Media from Business Intelligence Briefly
View Original BlueSky
OpenAI recently showed how tweaking the harness used in a benchmark made GPT Sol 5.6 go from 13.3% to 38.3%. This is a good example of the value of harnesses especially as models commoditize.

Getting 3x the performance from using the right harness will likely beat any difference in models.
Media from Dare Obasanjo
View Original BlueSky
攻撃者は侵入後、持続性確立、防御無効化、システム再構築を行い、検出・駆除だけでなく初期侵入経路の特定が重要となる。
Media from tec_acc
View Original BlueSky
NEW: I’m living in the dystopian future, so you don’t have to ✨
Media from Reece
View Original BlueSky
If the generative AI giant had followed well-known security best practices, it’s likely that its AI agent would never have escaped to the open internet and hacked multiple companies.

www.wired.com/story/openai...
Media from David Harvey
View Original BlueSky
This post shares how my team balanced routing logic across MoEs with load balancing to spread tokens more evenly, with sharding techniques in a compute-constrained environment. It's practical and illustrates fundamental architectural points in MoEs. Check it out!
vectorinstitute.ai/mixture-of-e...
Media from
View Original BlueSky
9to5Mac より

Online scams cost Americans almost $150B last year – 7x more than reported
オンライン詐欺は昨年、アメリカ人達にほぼ150Bドルを費やしました - 報告されたよりも7倍以上
Media from gigowat Ver.3.0
View Original BlueSky
BreachLock Publishes 5th Annual Penetration Testing Intelligence Report Mapping Critical Attack Paths and Actionable Cyber Resilience Strategies

BreachLock, the only offensive security platform combining agentic AI-powered autonomous penetration testing, expert-led, agentic…
Media from The IT Nerd
View Original BlueSky
Can Cyber Operations Be Deterred? What Wargames Reveal | WOTR
• Gaming Deterrence
• Whither Cyber Deterrence?
• A Cyber Deterrence Paradox
• The Invisible Made Visible
warontherocks.com/can-cyber-op...
Media from John Navas ⛵🌉
View Original BlueSky
London-based Inforcer, which helps managed service providers handle their clients' Microsoft 365 accounts, raised a $50M Series C led by Insight Partners (Dominic-Madori Davis/TechCrunch)

Main Link | Techmeme Permalink
View Original BlueSky