Geek-Guy.com

Month: May 2025

BSidesLV24 – GroundFloor – Adversaries Also Lift & Shift: Cloud Threats Through The Eyes Of An Adversary

Authors/Presenters: Roei Sherman, Adi inov Our sincere appreciation to BSidesLV, and the Presenters/Authors for publishing their erudite Security BSidesLV24 content. Originating from the conference’s events located at the Tuscany Suites & Casino; and via the organizations YouTube channel. Permalink The post BSidesLV24 – GroundFloor – Adversaries Also Lift & Shift: Cloud Threats Through The Eyes…

Build, don’t bind: Accel’s Sonali De Rycker on Europe’s AI crossroads

Sonali De Rycker, a general partner at Accel and one of Europe’s most influential venture capitalists, is bullish about the continent’s prospects in AI. But she’s wary of regulatory overreach that could hamstring its momentum. At a TechCrunch StrictlyVC evening earlier this week in London, De Rycker reflected on Europe’s place in the global AI…

Beware! A threat actor could steal the titles of your private (and draft) WordPress posts!

As of today, almost a billion sites have been built using WordPress, powering businesses and organizations of all sizes. That makes any newly discovered vulnerability especially concerning—like the one recently found and reported by Imperva researchers, which could affect any WordPress site. In this blog post, we’ll explain the attack itself, the conditions that made…

Google I/O 2025: What to expect, including updates to Gemini and Android 16

Google I/O, Google’s biggest developer conference of the year, is nearly upon us. Scheduled for May 20 to 21 at the Shoreline Amphitheatre in Mountain View, I/O will showcase product announcements from across Google’s portfolio. Expect plenty of news relating to Android, Chrome, Google Search, YouTube, and — of course — Google’s AI-powered chatbot, Gemini. Earlier…

Thousands of people have embarked on a virtual road trip via Google Street View

It’s Friday afternoon and I’m listening to Bowdoin College’s radio station, interspersed with ambient car honking noises. I am not in Maine. I am not in a car. I am at my desk. This is Internet Roadtrip. Internet Roadtrip is what I will call a MMORTG (massive multiplayer online road trip game). Neal Agarwal, the…

Weekly Update 452

Funny how excited people can get about something as simple as a sticker. They’re always in hot demand and occupy an increasingly large portion of my luggage as we travel around. Charlotte reckoned it would be the same for other merch too, so, while I’ve been beavering away playing code monkey on the rebranded HIBP…

Coinbase Hacked and Turns the Tables on the Cybercriminals!

  This is how you handle cybercrime digital extortion! Coinbase was compromised by trusted 3rd party partners, which exposed customer data — but customer keys to their assets were still safe. The cyber criminals then attempted to extort $20 million from Coinbase, to keep the attack secret. Coinbase’s answer: NO! Instead, they are creating a $20 million…

AI startup Cohere acquires Ottogrid, a platform for conducting market research

AI startup Cohere has acquired Ottogrid, a Vancouver-based platform that develops enterprise tools for automating certain kinds of high-level market research. Sully Omarr, one of the founders of Ottogrid, announced the deal Friday in a post on X. He didn’t disclose the terms. Ottogrid will sunset its product, according to Omarr, but give customers “ample…

Orca Security Acquires Opus to Gain AI Agent Orchestration Technology

Orca Security this week revealed it has acquired Opus to gain access to technologies capable of orchestrating artificial intelligence (AI) agents that are trained to automate a range of cybersecurity tasks. Opus previously has been employing that core capability to drive a vulnerability management platform that Orca Security now plans to sunset. Orca Security CEO..…

TechCrunch Mobility: Google’s Gemini is coming to your car, chaos comes for Luminar, and the Amazonification of Uber 2.0

Welcome back to TechCrunch Mobility — your central hub for news and insights on the future of transportation. Sign up here for free — just click TechCrunch Mobility! OK, who placed their bet on General Motors being the landing spot for Aurora co-founder and chief product officer Sterling Anderson? Not me. But here we are.…

FCC commissioner blasts Trump administration censorship policies

When Donald Trump was on the campaign trail, he argued that coordination by the Biden administration and social media companies on disinformation during the COVID-19 pandemic and elections amounted to political censorship. He claimed that supposed censorship stifled the free and unencumbered exchange of ideas essential to democracy, and posed a clear threat to the…

AI video startup Moonvalley lands $53M, according to filing

Roughly a month after Moonvalley, a Los Angeles-based startup developing AI tools for video creation, said it secured $43 million in new funding, the company has raised more, according to a filing with the SEC. The filing, submitted Thursday, reveals that Moonvalley actually landed (so far) around $53 million total from a group of 14 unnamed…

Coinbase flips $20M extortion demand into bounty for info on attackers

Coinbase responded to a security incident with combative measures Thursday after the company said cybercriminals bribed some of the cryptocurrency exchange’s international support staff to steal data on customers. The unnamed threat group stole personally identifiable information and other sensitive data on less than 1% of Coinbase’s monthly users, the company said in a blog…

TechCrunch and VivaTech Partner for the VivaTech Innovation of the Year

TechCrunch is joining forces with VivaTech, Europe’s biggest startup and tech event, to select startups for the prestigious VivaTech Innovation of the Year at VivaTech 2025. This partnership will highlight exceptional creativity, technological ingenuity, and industry-transforming potential among exhibiting startups. The VivaTech Innovation of the Year Award acknowledges and celebrates exhibiting startups at VivaTech 2025…

Spotify responds to creator backlash at public podcast play counts

Spotify announced last week that it would roll out public play counts on all podcasts as a way of “helping attract new fans.” But podcasters swiftly responded with criticism of the new feature — mainly, that it would further promote podcasts that already have large audiences while making smaller shows less appealing to new listeners.…

After adding its own billing option on iOS, Apple asks Patreon to move it to an external browser

Creator platform Patreon has to modify its app to comply with Apple’s guidelines after a recent update allowed U.S. users to make purchases via the web. The company says that its own web-based checkout option is now the default for U.S. fans, but it has to update its app so that this checkout option opens in…

Mystery investor’s attempt to stop Canoo asset sale shot down by judge

The judge in Canoo’s bankruptcy case has blocked an attempt by a mysterious financier to disrupt the sale of the EV startup’s assets. In a hearing Tuesday, Judge Brendan Linehan Shannon ruled the financier, a UK-based man named Charles Garson, lacked standing to request the sale to Canoo’s own CEO be vacated. While Garson had…

Consensus forms on reauthorizing 2015 cyber info-sharing law now, upgrading it later

The message was consistent at a House cybersecurity hearing Thursday: pass legislation extending an expiring information-sharing law before it lapses in September, and worry about improving it later. Both lawmakers and witnesses at the hearing of the Homeland Security Subcommittee on Cybersecurity and Infrastructure Protection shared that view about the pending expiration of the 2015…

Epic Games says Apple is blocking Fortnite from the US and EU App Stores

Epic Games claims that Apple is blocking its Fortnite app from the U.S. and E.U. App Stores. After winning a decisive victory for app developers in a legal battle with Apple, forcing the tech giant to allow external payments in its U.S. App Store without charging commission, Epic Games attempted to resubmit Fortnite to the…

Chipotle president Jack Hartung joins Tesla’s board ahead of Tesla Diner launch

Veteran Chipotle executive Jack Hartung was appointed a member of Tesla’s board of directors Thursday, according to a Tesla filing with the SEC. Hartung’s addition to the board comes as Tesla quietly works to finish its 1950s-style diner and charging station in Los Angeles.  Hartung brings over two decades of experience as a Chipotle CFO,…

Cork Protection & Rewst Integration Boosts MSP Efficiency

Cork Protection and Rewst have announced an integration of their products aligned to meet MSP demand for an automated approach to security. Integration offers automated approach to security vulnerabilities Cork Protection’s risk insight engine analyzes real-time data points across client environments, providing MSPs with a comprehensive understanding of their security posture and surfacing actionable insights…

Newgen Software announced that United Community Bank selected its banking solution, simplifying small business lending

COMPANY NEWS: Newgen Software, a global provider of an AI-first unified digital transformation platform, announced that United Community (United) selected the company’s banking solution to simplify its small business lending. The collaborative efforts optimised the bank’s loan management operations, maximising efficiency and enhancing customer experience across its entire loan portfolio.

Preparing for the post-quantum era: a CIO’s guide to securing the future of encryption

Quantum computing is on the verge of revolutionizing the technology landscape, much like AI did in 2024. By the end of 2025, quantum computing will emerge as a defining force, ushering in a new era filled with both unprecedented opportunities and significant challenges in securing digital assets. While state-of-the-art quantum computers aren’t yet capable of…

New HTTPBot Botnet Launches 200+ Precision DDoS Attacks on Gaming and Tech Sectors

Cybersecurity researchers are calling attention to a new botnet malware called HTTPBot that has been used to primarily single out the gaming industry, as well as technology companies and educational institutions in China. “Over the past few months, it has expanded aggressively, continuously leveraging infected devices to launch external attacks,” NSFOCUS said in a report…

Top 10 Best Practices for Effective Data Protection

Data is the lifeblood of productivity, and protecting sensitive data is more critical than ever. With cyber threats evolving rapidly and data privacy regulations tightening, organizations must stay vigilant and proactive to safeguard their most valuable assets. But how do you build an effective data protection framework? In this article, we’ll explore data protection best…

How to establish an effective AI GRC framework

Enterprise use of artificial intelligence comes with a wide range of risks in areas such as cybersecurity, data privacy, bias and discrimination, ethics, and regulatory compliance. As such, organizations that create a governance, risk, and compliance (GRC) framework specifically for AI are best positioned to get the most value out of the technology while minimizing…

Hacker stehlen BVG-Kundendaten

Kunden der Berliner Verkehrsbetriebe (BVG) sind von einer Datenpanne betroffen. Media centre BVG Die Berliner Verkehrsbetriebe (BVG) haben ihre Kunden kürzlich über ein Datenleck informiert. Wie eine BVG-Sprecherin gegenüber dem Tagesspiegel betonte, erfolgte der IT-Angriff nicht auf die internen Systeme der BVG, sondern auf einen externen Dienstleister. Dem Bericht zufolge haben die Täter dabei unter…

Researchers Expose New Intel CPU Flaws Enabling Memory Leaks and Spectre v2 Attacks

Researchers at ETH Zürich have discovered yet another security flaw that they say impacts all modern Intel CPUs and causes them to leak sensitive data from memory, showing that the vulnerability known as Spectre continues to haunt computer systems after more than seven years. The vulnerability, referred to as Branch Privilege Injection (BPI), “can be…

Commvault & Deloitte Join Forces on Cyber Resilience

Commvault, a provider of cyber resilience and data protection solutions for the hybrid cloud, and Deloitte, a professional services organization, have strategically partnered to help organizations build resiliency and stay ahead of evolving threats. Partnership offers new capabilities across cyber threat management The duo will see the integration of Commvault’s advanced cyber resilience solutions with…

Fileless Remcos RAT Delivered via LNK Files and MSHTA in PowerShell-Based Attacks

Cybersecurity researchers have shed light on a new malware campaign that makes use of a PowerShell-based shellcode loader to deploy a remote access trojan called Remcos RAT. “Threat actors delivered malicious LNK files embedded within ZIP archives, often disguised as Office documents,” Qualys security researcher Akshay Thorve said in a technical report. “The attack chain…

Proofpoint buying Hornetsecurity in a play to expand email security scope

More than of 90% of successful cyberattacks begin with emails, according to the US Cybersecurity and Infrastructure Security Agency (CISA), making them a critical asset that enterprises must protect. Cybersecurity vendor Proofpoint is looking to expand its reach in this area, announcing its intent to purchase Hornetsecurity Group, a European email security rival. The move…

Sam Altman’s goal for ChatGPT to remember ‘your whole life’ is both exciting and disturbing

OpenAI CEO Sam Altman laid out a big vision for the future of ChatGPT at an AI event hosted by VC firm Sequoia earlier this month.  When asked by one attendee about how ChatGPT can become more personalized, Altman replied that he eventually wants the model to document and remember everything in a person’s life.…

 FTC wants a new, segregated software system to police deepfake porn 

The head of the Federal Trade Commission described to lawmakers Thursday new technology, personnel and infrastructure the agency needs as it prepares to implement and enforce the Take It Down Act, placing the FTC’s enforcement wing at the forefront of the fight against nonconsensual deepfake pornography. The FTC’s proposed budget holds funding at $425.7 million,…

Proofpoint to acquire Hornetsecurity for over $1 billion

Proofpoint has entered into an agreement to acquire Hornetsecurity Group, a Germany-based provider of Microsoft 365 security services, in a deal reportedly valued at more than $1 billion. The acquisition, described as the largest in Proofpoint’s history, comes amid accelerating consolidation in the cybersecurity industry as companies seek to broaden their offerings to enterprise customers…

After helping Russia on the ground North Korea targets Ukraine with cyberespionage

North Korea’s involvement in the war in Ukraine extends beyond sending soldiers, munitions, and missiles to Russia, as cybersecurity researchers warn of recent cyberespionage campaigns against Ukrainian government entities by a known North Korean state-sponsored actor. “Proofpoint assesses TA406 is targeting Ukrainian government entities to better understand the appetite to continue fighting against the Russian…

Securing ICAM in spacecraft-based missions

Whether your operations are orbiting Earth or heading for the Moon, there’s risk if you’re waiting for a login to time out. In space, where communication can be delayed by minutes or even hours, identity becomes just as critical as propulsion or navigation. That’s why ICAM in DDIL environments — Disconnected, Disrupted, Intermittent, and Limited……

O que é um ataque cibernético? Tipos e prevenção

A segurança digital se tornou uma prioridade inegociável. Com o avanço da tecnologia, surgem também novas ameaças digitais e uma das mais perigosas é o ataque cibernético. Empresas, governos e até mesmo usuários comuns estão constantemente na mira de criminosos digitais que buscam explorar vulnerabilidades. Mas afinal, o que é ataque cibernético, quais são os…

Fake fired Twitter worker ‘Rahul Ligma’ is a real engineer with an AI data startup used by Harvard

The morning after Elon Musk’s 2022 acquisition of Twitter (now X), reporters encountered two men with boxes outside the company’s headquarters. One introduced himself as recently laid-off Twitter engineer “Rahul Ligma.”  His real name is Rahul Sonwalker but the prank went viral. He piled on his character’s notoriety when he went to the Bahamas to…

Why Digital Workplace Transformation Can’t Wait – Insights from Lenovo

New research reveals why most organisations are falling behind — and what it takes to unleash Gen AI’s full potential. As Generative AI (Gen AI) reshapes how work gets done, companies that delay modernising their digital workplaces risk falling behind. Lenovo’s latest global research report, Igniting Real Workplace Transformation reveals a stark reality: organisations recognise…