Aggregator
CVE-2025-1566 | Google ChromeOS 129.0.6668.36 DNS Query missing encryption
CVE-2025-3248 | langflow-ai langflow up to 1.2.0 HTTP Request /api/v1/validate/code missing authentication (EDB-52262)
Полмиллиарда на алтарь свободы слова — Трамп посадил CISA на бюджетную диету
xAI API Key Leak Exposes Proprietary Language Models on GitHub
Employee at Elon Musk’s artificial intelligence firm xAI inadvertently exposed a private API key on GitHub for over two months, granting unauthorized access to proprietary large language models (LLMs) fine-tuned on internal data from SpaceX, Tesla, and Twitter/X. Security researchers at GitGuardian discovered the leak, which compromised 60 private and unreleased models, including development versions […]
The post xAI API Key Leak Exposes Proprietary Language Models on GitHub appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Firefox предупредил о “повреждении” расширения — но кто на самом деле заражён?
Отравление SEO: как вредоносные сайты оказываются на первых строчках поиска
【活动预告】“AI+Security”系列第5期之AI赋能安全的技术验证与场景化落地
【活动预告】“AI+Security”系列第5期之AI赋能安全的技术验证与场景化落地
有心理健康问题的青少年更可能长时间沉迷社媒
活动预告|“AI+Security”系列第5期之AI赋能安全的技术验证与场景化落地
活动预告|“AI+Security”系列第5期之AI赋能安全的技术验证与场景化落地
Китай построил облако на своих чипах. Без Intel. Без AMD. Без подачек Запада
What a future without CVEs means for cyber defense
The importance of the MITRE-run Common Vulnerabilities and Exposures (CVE) Program shouldn’t be understated. For 25 years, it has acted as the point of reference for cybersecurity professionals to understand and mitigate security flaws. By providing a standardized method for naming and cataloguing known vulnerabilities, it offers defenders a shared language for understanding, prioritizing, and responding to real-world threats. The program has traditionally relied on US government funding to sustain operations and, unfortunately, and equivalent … More →
The post What a future without CVEs means for cyber defense appeared first on Help Net Security.