Here Comes the AI Worm: Unleashing Zero-click Worms that Target GenAI-Powered Applications

Researchers Give Birth to the First GenAI Worm

It was bound to happen — researchers have created a 1st generation AI worm that can steal data, propagate malware, and spread via email.Ben Nassi from Cornell Tech, Stav Cohen from the Israel Institute of Technology, and Ron Bitton from Intuit created the self-replicating worm and bestowed the name ‘Morris II’ after ... Read More
The Unseen Threats: Anticipating Cybersecurity Risks in 2024

The Unseen Threats: Anticipating Cybersecurity Risks in 2024

Cybersecurity risks increase every year and bludgeon victims who fail to prepare properly.  It can feel like crossing a major highway while blindfolded.  Many never see the catastrophe about to happen, until it occurs.  Cybersecurity predictions offer a glimpse at the dangerous oncoming traffic and help leaders develop strategies to ... Read More
Medical Emergency Assistance  - Thank You

Medical Emergency Assistance – Thank You

 I have been an active volunteer as part of corporate medical response teams for more than 20 years of my career. It has never been my primary job, but I like having the skills to help when really bad things happen in life. Such corporate teams bring like minded people ... Read More
SEC Cybersecurity Disclosure Rules Take Effect

SEC Cybersecurity Disclosure Rules Take Effect

 So, it begins! The SEC cybersecurity disclosure requirements take effect today for public companies, requiring them the report material cybersecurity events to the SEC and investors. I can simultaneously hear both a waterfall of tears and a resounding applause coming from the cybersecurity sectors as this has serious ramifications to ... Read More
Measuring Cybersecurity Value 'Sucks'

Cybersecurity Value – Embrace the Suck

In American military circles, there exists a term “embrace the suck”.  It means to consciously recognize and accept that something will be extremely unpleasant so as to not let it discourage from pursuing the best path to success.  It is often characterized as a situation that is misleadingly easy in ... Read More
Cybersecurity Insurance is Missing the Risk

Cybersecurity Insurance is Missing the Risk

 First published by HelpNetSecurity — Matthew RosenquistCybersecurity insurance is a rapidly growing market, swelling from approximately $13B in 2022 to an estimated $84B in 2030 (26% CAGR), but insurers are struggling with quantifying the potential risks of offering this type of insurance.The traditional actuary models do not apply well to an environment ... Read More
Caesars Bungling Notice of Data Breach

Caesars Bungling Notice of Data Breach

Caesars Rewards Members are receiving notice of the data breach that occurred more than a month prior. The breach occurred in August 2023, but Caesars did not report it to regulatory officials until September 2023 and is finally notifying victims in mid-October 2023. The loss of data includes victim’s names, ... Read More
Lacking Practicality - Executive Order for Safe, Secure, and Trustworthy AI

Lacking Practicality – Executive Order for Safe, Secure, and Trustworthy AI

 The White House just released an Executive Order intended to lay down some standards intended to manage the risks of Artificial Intelligence. I absolutely like the idea of establishing guardrails to make AI safe, secure, and trustworthy, but I am unsure that the concepts will manifest into something meaningful.It appears that the ... Read More
Striking the Balance: Effective Cybersecurity Visualization for Informed Decision-Making

Striking the Balance: Effective Cybersecurity Visualization for Informed Decision-Making

 In the complex and ambiguous realm of cybersecurity, the power of visualization tools cannot be overstated. When employed judiciously, they serve as invaluable assets, offering crucial data in a readily comprehensible manner. Conversely, when inundated with superfluous information, these tools become distractions that obscure the very insights they aim to ... Read More
Why I'm in Favor of the EU Cyber Resilience Act and You Should Be Too

Why I’m in Favor of the EU Cyber Resilience Act and You Should Be Too

 I like the EU Cyber Resilience Act! There, I said it! Yes, this will make companies nervous in the short term, but this regulation is a watershed moment that will fundamentally shift how digital products are secured and maintained! This will FORCE the industry to adapt in more transparent and ... Read More

Application Security Check Up