提供呼叫中心服务的 Alorica 推出了一款 AI 翻译工具,让公司员工能用 200 种不同语言与客户交谈。Alorica 不会裁员,它还在积极招聘。Alorica 等公司的经验表明,AI 不会成为人类的职业“杀手”,导致大规模失业。AI 可能会像蒸汽机、电力、互联网等技术突破一样,在消除部分工作的同时创造新的工作,使得人类的工作总体上效率更高,让工人、雇主和经济都从中受益。人们曾经以为,AI 聊天机器人将会取代客服,但这种情况目前并没有发生,可能永远也不会发生。白宫经济顾问委员会上月表示,他们发现几乎没有证据表明 AI 会对整体就业情况产生负面影响。目前科技行业的大规模裁员与 AI 几乎没有关联,科技巨头不是因为 AI 会节省资金或导致工作岗位不再需要而裁员的。
Payment gateway provider Slim CD has disclosed a data breach that compromised credit card and personal data belonging to almost 1.7 million individuals. [...]
A vulnerability was found in tcpdump up to 4.9.1. It has been rated as critical. This issue affects the function cfm_print of the file print-cfm.c of the component CFM Parser. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2017-13052. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A cyber-attack on Slim CD, which handles electronic payments for US and Canadian-based merchants, has potentially exposed the credit card details of 1.7 million people
A vulnerability classified as problematic has been found in Jasper up to 1.900.13. This affects the function ras_getcmap of the file ras_dec.c. The manipulation leads to reachable assertion.
This vulnerability is uniquely identified as CVE-2016-9388. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Adobe Experience Manager up to 6.5.20. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-34141. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Adobe Experience Manager up to 6.5.20. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-34142. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in QNAP QTS and QuTS hero 5.1.4.2596 Build 20231128 and classified as critical. This vulnerability affects unknown code. The manipulation leads to path traversal.
This vulnerability was named CVE-2023-51366. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in QNAP Video Station up to 5.8.0. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to sql injection.
This vulnerability was named CVE-2023-50360. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
Google 最近用 Rust 语言为 Android 虚拟化框架重写了保护虚拟机的固件。工程师 Ivan Lozano 和 Dominik Maier 在官方博客上鼓励其他开发者用 Rust 开发固件,表示不难。固件通常是用 C 或 C++ 等内存不安全语言开发的,而 Rust 语言提供了一种内存安全替代,避免了常见的内存安全漏洞如缓冲区溢出和释放后使用,大部分大型代码库漏洞通常是内存安全漏洞。工程师指出,Rust 提供了与 C 或 C++ 相似的性能和大小,在没有开销的情况下支持与 C 的互操作性。Android Programming Languages 的工程总监 Lars Bergstrom 表示,为减少内存安全漏洞,Google 正在 Android 和 Chromium 等项目中增加 Rust 的使用。
A vulnerability was found in WordPress 1.43. It has been declared as critical. This vulnerability affects unknown code of the file js/wptable-button.php. The manipulation of the argument wpPATH leads to path traversal.
This vulnerability was named CVE-2007-2483. The attack can be initiated remotely. Furthermore, there is an exploit available.
While not very sophisticated, brute force password attacks pose a significant threat to an organization's security. Learn more from Specops Software about these types of attacks and how to defend against them. [...]
A vulnerability classified as critical was found in cryptography up to 1.5.1. Affected by this vulnerability is an unknown functionality of the component HKDF. The manipulation leads to improper input validation.
This vulnerability is known as CVE-2016-9243. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Bouncy Castle for Java up to 1.72. This vulnerability affects the function org.bouncycastle.openssl.PEMParser of the component ASN.1 Handler. The manipulation leads to denial of service.
This vulnerability was named CVE-2023-33202. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.9.3. Affected by this issue is some unknown functionality of the component PAC1934. The manipulation leads to improper validation of array index.
This vulnerability is handled as CVE-2024-38631. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.9.3 and classified as critical. This vulnerability affects the function uart_register_driver of the component max3100. The manipulation leads to null pointer dereference.
This vulnerability was named CVE-2024-38633. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.