From MechaHitler to Islamic Chatbots, AI Engines Are Writing the Script for Reality AI sovereignty is the new data sovereignty, except now we’re arguing not just about who owns your data, but who gets to define reality. From MechaHitler to Islamic chatbots, AI is less about objective truth and more about who gets to write the script.
Black Duck AppSec Services Buy Marks Shift Toward Offensive Assessment Services UltraViolet Cyber’s acquisition of Black Duck's application security testing services deepens its offensive capabilities and adds 400 people to its global workforce. The deal enables greater integration of assessment and defense across the software development lifecycle.
Suits Filed After Researcher Found 1 Million Patient Records With No Password Setup An Ohio firm that assists individuals in obtaining physician-certified medical marijuana cards is facing at least six proposed federal class action lawsuits so far involving the recent discovery by a security researcher of a database exposing nearly one million sensitive patient records on the web.
White House Kick Off School Year With AI Education Efforts, Public-Private Collabs The Trump administration is rolling out its Presidential Artificial Intelligence Challenge with a series of high-profile White House events and public-private sector commitments - just as the Federal Trade Commission reportedly prepares to investigate AI systems' impact on child mental health.
Series E Funding at $2B Valuation Fuels Fraud Defense, Identity Tech Buildout Washington D.C.-area identity verification provider ID.me has raised $340 million to develop fraud-fighting technology and prepare for long-term expansion. The investment supports product innovation to stop AI threats such as deepfakes and fake businesses.
A vulnerability classified as problematic has been found in GLPI up to 10.0.3. This impacts an unknown function of the component Entity Name Handler. Performing manipulation results in cross site scripting.
This vulnerability is known as CVE-2022-39373. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Moodle up to 4.1.2. This issue affects some unknown processing of the component Internal Wiki. Executing manipulation can lead to sql injection.
This vulnerability is handled as CVE-2023-30944. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability classified as problematic was found in Moodle up to 3.9.23/3.11.16/4.0.10/4.1.5/4.2.2. Affected by this issue is some unknown functionality of the component H5P Author Name Handler. Executing manipulation can lead to information disclosure.
The identification of this vulnerability is CVE-2023-5545. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability described as problematic has been identified in GLPI up to 10.0.3. This affects an unknown function of the component Account Information Pages. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2022-39372. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.