March 2024

SCMagazine.com reported “An active attack targeting a vulnerability in Ray, a widely used open-source AI framework, has impacted thousands of companies and servers running AI infrastructure — computing resources that were exposed to the attack through a critical vulnerability that’s under dispute and has no patch.”  The March 26, 2024

Continue Reading Open Source AI framework may be a security risk!

BankInfoSecurity.com reported that “Artificial intelligence technologies such as generative AI are not helping fraudsters create new and innovative types of scams. They are doing just fine relying on the traditional scams, but the advent of AI is helping them scale up attacks and snare more victims, according to fraud researchers

Continue Reading Payments Fraud is faster and easier with AI!

CIO.com reported that “Years into strategies centered on adopting cloud point solutions, CIOs increasingly find themselves facing a bill past due: rationalizing, managing, and integrating an ever-expanding lineup of SaaS offerings — many of which they themselves didn’t bring into the organization’s cloud estate.” The March 15, 2024 article entitled

Continue Reading CIOs need to take the time to think about legal issues in SaaS!

SCMagazine.com reported that “Dallas-based UT Southwestern Medical Center had data from almost 2,100 individuals compromised following a data breach, The Dallas Morning News reports.”

The March 12, 2024 report entitled “UT Southwestern breach hits over 2K patients” (https://www.scmagazine.com/brief/ut-southwestern-breach-hits-over-2k-patients) included these comments a UT Southwestern spokesperson:

We are assessing

Continue Reading  Healthcare breach at UT Southwestern!

Computerworld.com reported that “More than 150 leading artificial intelligence (AI) researchers, ethicists and others have signed an open letter calling on generative AI (genAI) companies to submit to independent evaluations of their systems, the lack of which has led to concerns about basic protections. The letter, drafted by researchers from MIT

Continue Reading Will the major Generative AI vendors allow an academic investigation of their security?

DarkReading.com reported that “New guidance expands the frame to consider organizations beyond critical infrastructure; it also addresses governance and supply chain cybersecurity.”  The February

 26, 2024 Report entitled “NIST Releases Cybersecurity Framework 2.0” (https://www.darkreading.com/ics-ot-security/nist-releases-cybersecurity-framework-2-0) which included these comments:

The new framework builds on its long-standing, cyber-risk-reducing recommendations to

Continue Reading Good news! NIST Releases Cybersecurity Framework 2.0!