CyberSec Community Rolls Out ETHOS Early Warning System

0
[ad_1]

As the tech world grapples with increasing cyber threats, the cybersecurity community has decided to join hands. Consequently, ETHOS has emerged as an open-source early warning threat information system following a collaboration of cybersecurity leaders. With ETHOS, the cybersec community aims to protect critical infrastructure across the globe by prompt information sharing.

ETHOS – An ‘Early Warning’ System To Protect Critical Infrastructure

As announced recently, ETHOS has arrived as an inclusive and proactive threat alert system, helping security professionals globally.

Specifically, ETHOS (Emerging THreat Open Sharing) is an open-source platform sharing threat intel from different cybersecurity leaders. The key firms that joined hands to develop ETHOS include 1898 & Co., ABS Group, Dragos, Nozomi Networks, Claroty, NetRise, Forescout, Network Perception, Tenable, Schneider Electric, and Waterfall Security. Moreover, CISA has also expressed interest in joining the project as required.

Developing ETHOS aims to expedite threat detection by providing readily available, open-source information about cyber threats. The platform gathers this information from multiple security vendors.

This swift accessibility will facilitate identifying anomalous behaviors, discovering novel attacks, and generating quick responses with improved communication, support, and interoperability by linking peers, industries, and governments. This unified approach will be key in protecting critical infrastructure from potential threats.

Aiming to improve public/private sector cooperation for collective cybersecurity across the globe, ETHOS – a non-profit entity – will have the information accessible via GitHub. The information shared by ETHOS will typically focus on OT/ICS environments. The main objectives of ETHOS include,

  • Building an open-source codebase for OT/ICS networks for data sharing.
  • Developing innovative design and governance decisions.
  • Producing no-profit code for early warning detections to facilitate cybersecurity professionals.

Will ETHOS Deliver Fruitful Results? Let’s hope!

The industry leaders have great expectations from the ETHOS initiative, particularly its widespread reach that will contribute towards faster and better threat detection.

LHN reached out to Anzar Hasan – a technology leader, security auditor, and a senior member of IEEE, to know his thoughts about ETHOS’s usefulness.

According to Hasan, the operation technology (OT) and critical infrastructure, including the power grid, currently faces six major challenges: cybersecurity, aging infrastructure, lack of standardization, workforce shortages, natural disasters, and supply-chain disruptions. And initiatives like ETHOS promote the idea of a combined effort to address these challenges.

Addressing these challenges will require significant investment in upgrading and modernizing critical infrastructure systems, improving cybersecurity, developing new technologies, and training and retaining a skilled workforce. Addressing these challenges will require a coordinated effort among governments, private companies, and other stakeholders.
ETHOS (Emerging THreat Open Sharing), an open-source, vendor-agnostic technology platform for sharing anonymous early warning threat information across industries with peers and governments, is the right step towards securing the critical infrastructure.

Benefits of an early warning system

Early threat alert systems like ETHOS will likely facilitate the security community to repel cyberattacks promptly before occurrence. Hasan highlights five key benefits of such ‘early warning’ tools.

1. Improved Preparedness

Early warning systems help critical infrastructure operators and relevant stakeholders prepare for potential disruptions or threats.

This allows them to develop contingency plans, coordinate responses, and allocate resources to minimize the impact of any potential disruption.

2. Reduced Downtime

Prompt threat detection and preparedness reduce downtime – an essential gain for critical infrastructure.

[It] can help critical infrastructure operators to detect potential threats or disruptions in advance, allowing them to take preventive measures to avoid downtime or minimize its impact.

3. Enhanced Security

In-time threat alerts can help security professionals reduce the success rate of incoming attacks.

This can help to prevent data breaches, sabotage, or other malicious activities that could compromise the integrity or availability of critical infrastructure systems.

4. Increased Resilience

Early warnings about potential threats lead to timely incident responses, ultimately adding to the target infrastructure’s resilience.

This can help reduce the impact of disruptions and enable faster recovery from any disruptions.

5. Improved Safety

Early warning systems help improve ICS/OT infrastructure safety by alerting relevant stakeholders about potential hazards or risks.

This can help prevent accidents, injuries, or other negative consequences resulting from system failures or other disruptions.

ETHOS is in early development, inviting interested professionals to contribute to the project’s development and direction. The memberships, open for individuals, organizations, and security vendors alike, will begin in June 2023.

Let us know your thoughts in the comments.


[ad_2]
Source link

Get $180 Off the Roborock Q7 Robot Vacuum

0
[ad_1]

Amazon has the Roborock Q7  robot vacuum on sale for just $349. That’s going to save you $180 off of its regular price. That is an all-time low for the Q7, and it’s also one of the cheapest robot vacuums available today.

To get this discount, you’ll need to clip the $180 off coupon on the page. That will drop the price from the listed price of $529 to $349 at checkout.

Roborock Q7 – Amazon

Why you should buy the Roborock Q7

The Q7 from Roborock is a higher-end of their mid-range robot vacuum. This one does not come with the auto-empty dock, that is saved for the plus model, which is not on sale right now and is regularly priced around $800. It can clean your home for about 180 minutes before it runs out of juice and needs to go back and recharge.

This model does have the new redesigned combined dustbin and water tank, which are 470ml and 350ml respectively. That allows them to be larger, and take up even less space inside the vacuum, which is really neat.

Roborock’s Q7 also has the upgraded brush system. It’s now all-rubber, so it won’t get tangled up with hair and other debris as easily. This new brush system also allows the robot vacuum to get closer to the floor, and pick up even more dirt and debris. Which is always a good thing. The Q7 does work with the Roborock app, as well as with Amazon Alex and Google Assistant. Allowing you to use your voice to control the robot vacuum, which is always pretty neat.

It also has some pretty impressive suction power, so you’re going to be able to get it to pick up everything on the floors in your home. Which is definitely a great thing to have. Even things you won’t see, it’ll still pick up. So it’s a great robot vacuum to grab.

You can pick up the Roborock Q7 from Amazon today by clicking the link down below.

Roborock Q7 – Amazon


[ad_2]
Source link

Qualcomm may skip Snapdragon 8+ Gen 2, go straight to Snapdragon 8 Gen 3

0
[ad_1]

A rather interesting rumor surfaced, claiming that Qualcomm will skip the Snapdragon 8+ Gen 2 entirely. This information comes from Yogesh Brar, a tipster with a mixed track record. So, take the info with a grain of salt.

Qualcomm may skip Snapdragon 8+ Gen 2 SoC altogether

In a tweet, he listed what SoCs Qualcomm and MediaTek are planning to launch “in coming months”. Considering that the Snapdragon 8 Gen 3 is on this list, we presume that “in coming months” equals to “by the end of the year”.

In any case, when it comes to Qualcomm, he listed the Snapdragon 4 Gen 2, Snapdragon 6 Gen 2, Snapdragon 7 Gen 3, and the Snapdragon 8 Gen 3. You will notice that the Snapdragon 8+ Gen 2 is nowhere to be found.

One follower asked him what’s happening, and the tipster said: “jumping to 8 Gen 3 directly”. So, he claims that Qualcomm will skip over the Snapdragon 8+ Gen 2 altogether.

The company has a tendency to release two flagship SoCs each year

Qualcomm does not have a tendency to release a single flagship SoC in a year. If the tipster’s info pans out, that’s exactly what will happen, though. We’re not sure about that, as it’s uncharacteristic of Qualcomm, but we’ll see.

The Snapdragon 8+ Gen 1 turned out to be an outstanding processor, and many companies decided to utilize it. It was a considerable improvement over the Snapdragon 8 Gen 1. Truth be said, if the Snapdragon 8 Gen 1 turned out to be better, the Snapdragon 8+ Gen 1 would be completely unnecessary. So, not releasing the Snapdragon 8+ Gen 2 could make sense, as the Snapdragon 8 Gen 2 turned out to be an outstanding processor.

When it comes to MediaTek, four processors are listed here. The Dimensity 7050, Dimensity 8020, DImensity 8050, and the Dimensity 9300. The Dimensity 9300 will become the company’s brand new flagship SoC, of course. You’ll notice that the Dimensity 9200+ is missing from this list, and MediaTek confirmed its launch event. That makes us doubt the source’s info even more.

In addition to these 8 processors, the tipster also said that “there are more tablet, notebook, wearables SoCs coming soon”.


[ad_2]
Source link

Apache Superset Shipped With Unpatched RCE Vulnerability

0
[ad_1]

Researchers spotted a severe unpatched remote code execution vulnerability shipped by default in Apache Superset. The vulnerability existed due to a dangerous default configuration, making thousands of Superset instances open to the public.

Apache Superset Has A Default Key Vulnerability

According to a detailed post from Horizon3.ai, their researchers found at least 3000 Apache Superset instances exposed to the internet. And around 2000 of all run a dangerous default configuration. Exploiting this vulnerability allows a remote attacker to execute malicious codes on the target Apache Superset instance.

Apache Superset is an open-source data exploration and visualization tool that is popular for its lightweight, intuitiveness, and user-friendly options for big data management.

Specifically, the flaw existed due to an exposed SECRET_KEY that Superset’s underlying Flask framework uses for validating user session cookies. Although this key is randomly generated for security, leaving it vulnerable to snooping fails the entire purpose. Hence, an adversary may exploit this exposed SECRET_KEY to sign a fake session cookie and impersonate a legit user. And according to the researchers, doing so is trivial.

The off-the-shelf flask-unsign tool automates this work: “cracking” a session cookie to discover if it was signed by a weak SECRET_KEY, and then forging a fake but valid session cookie using a known SECRET_KEY.

Nonetheless, the onus of this vulnerability seemingly doesn’t lie on Superset since the Superset configuration guide already mentions the default SECRET_KEY and asks the users to change the key later. However, it appeared that most users didn’t pay attention to this requirement, leaving thousands of instances exposed to the public, according to a Shodan search.

This vulnerability has received the CVE ID CVE-2023-27524.

Apache Fixed The Flaw

Following the researchers’ bug report, the Superset team addressed the matter and released a patch with Superset version 2.1. This patch prevents the server startup with the default configuration, making the user need to change the SECRET_KEY. However, the researchers noted that this patch doesn’t adequately work for Superset installed with docker-compose file or a helm template.

For safety, the researchers have notified many organizations running vulnerable Superset servers. Also, they have released a script on GitHub for users to check for vulnerable configuration.

Let us know your thoughts in the comments.


[ad_2]
Source link

The Nothing Phone (1) is getting the Android 14 beta

0
[ad_1]

Early into the Nothing Phone (1)’s life, we got the impression that updates would come slowly to this device. However, that might not be the case. According to 9To5Google, the Nothing Phone (1) will be getting the Android 14 beta in the coming weeks.

This is pretty big, as Nothing was pretty late to the game with Android 13. That’s understandable, as this is the company’s first phone. Also, Nothing CEO Carl Pei explained why the update process was taking so long. The company was having issues securing employees to help with the software development.

That seems to be a thing that passed. The Nothing Phone (1) will get the Android 14 beta

Now that the company has been able to get the ball rolling in terms of software development, the company is preparing to test Android 14 on its device. That’s pretty surprising seeing as the phone picked up Android 13 fairly recently. Not only that, but it also means that Nothing is getting the jump on many other more established companies in terms of hopping on Android 14.

That is a big PR plus for Nothing and a reason for early adopters to have faith in the company. We’re still figuring out how Nothing performs as a phone manufacturer and a tech company in general. Seeing it jump on Android 14 so early in the game is a good sign the company is serious about creating a strong smartphone experience.

At this point, we have no idea when the Android 14 beta will land on the Nothing Phone (1). We just know that it’s landing in the coming weeks.

With Android 13, Nothing didn’t start the beta testing phase until months after the official release. So, the fact that Nothing is testing Android 14 months before its official release hopefully points to the phone getting the stable release not too long after the Pixel phones.

However, by that time, we expect the Nothing Phone (2) to be on the market. Chances are that the Nothing Phone (2) will get Android 14 before the Nothing Phone (1). In any case, it’s great to see Nothing jumping on the Android 14 bandwagon so early in the game.


[ad_2]
Source link

Windows 10 will no longer get major feature updates

0
[ad_1]

Microsoft is done pushing major feature updates to Windows 10. The 22H2 update was the final major OS release for Windows 10 PCs. Going forward, they will only get monthly security updates. Those will come at least until October 2025 after which the company will pull all sorts of support to Windows 10. Microsoft ended support for Windows 7 and Windows 8.1 in January this year. It also stopped selling Windows 10 downloads around the same time.

Microsoft stops pushing feature updates to Windows 10

Windows 10 debuted in July 2015. Since Microsoft promises ten years of security updates and technical assistance for all major Windows releases, it still has some life left in it. However, for the rest of its life, Windows 10 will only get security updates. The company will no longer push new features or major changes to the last iteration of its PC operating system. In a blog post on Thursday, Microsoft announced that the current 22H2 release for Windows 10 will be the final version.

The company added that security updates for Windows 10 PCs are guaranteed until October 14, 2025. Existing Long-Term Servicing Channel (LTSC) releases will continue to receive updates beyond that date, though. The extended support for those releases will be based on their specific lifecycles. Microsoft encourages all Windows 10 users to upgrade to Windows 11 as early as possible to ensure continued feature support and functional improvements.

Microsoft has also announced the schedule for the next Windows LTSC releases. Organizations that require more time to adopt Windows 11 can look forward to Windows 11 Enterprise LTSC and Windows 11 IoT Enterprise LTSC in the second half of 2024. They can begin planning and testing apps and hardware on the current GA (general availability) channel release, i.e. Windows 11 version 22H2. The company will provide more details closer to the next LTSC release. Meanwhile, you can refer to this guide for tips on how to test your apps.

As said earlier, Microsoft has already ended support for Windows 7 and Windows 8.1. Those users must upgrade to Windows 11 for security updates and technical assistance from the company. While your computer will continue working, it is at greater risk for viruses and malware as it isn’t getting the latest security patches. Unfortunately, your Windows 7 or Windows 8.1 PC may not be compatible with Windows 11. You probably need to buy a new PC to upgrade to the latest version of Windows OS. You can use the PC Health Check app to see if a PC is compatible with Windows 11.


[ad_2]
Source link

Hackers are Selling a new Atomic macOS (AMOS) Stealer

0
[ad_1]
Hackers selling macOS Stealer

Atomic macOS Stealer (AMOS) is a recent information-stealing malware capable of attacking macOS to steal confidential information.

This malware was discovered by Cyble Research and Intelligence Labs (CRIL) on a telegram channel where the threat actor was advertising the malware. Its latest update was reported to be on April 25th. 

The threat actor advertised additional services like web panel, meta-mask brute force for seed and private keys, dmg installer, and crypto checker. The cost of these services was $1000 a month, as posted by the threat actor.

Telegram advertisement of AMOS

Technical Analysis

The malware was found under the name “Setup.dmg, “ an extension for installing applications on macOS.

Further analysis revealed that the malware could not only steal passwords and sensitive files but also get Wi-Fi passwords, credit card information, and browser-based sensitive data like auto-fills, passwords, cookies, and other sensitive information.

Before getting on to the stealing part, the malware provides a Fake password prompt to the victim to get the system password.

KeyChain is the application used in macOS for storing all the credentials, network IDs, Wi-Fi passwords, administrative passwords, etc.; this malware is capable of Keychain Extraction (keys for all the built-in, connected network credentials, credit card details, and macOS passwords). 

Key chain Extraction

Crypto Wallet Theft

The malware also can target crypto wallets and steal sensitive information from Crypto wallets like Electrum, Binance, Atomic, and Exodus. This is done with a list of browser extensions provided by the Crypto wallet vendors to their clients for easy access.


Control Panel Services

Buyers of this malware can be presented with an admin panel where they can manage all the information, which is an add-on service provided by the threat actor.

C&C Panel for AMOS

Browser-Information Extraction

Browser-based sensitive information like Autofills, Credit cards, passwords, and cookies can be stolen with this malware. It is written to target files from various browsers like Opera, Firefox, Chrome, Yandex, Edge, and Vivaldi.

Desktop and Documents File Grabbing

The malware steals files from the “Desktop” and “Documents” directories if the victim grants permission. Once permission is granted, the malware steals the files on these directories and stores them on the C&C server.

Malware asking for permission from the victim

Hardware Information

System hardware information like UUID, Device model name, RAM size, Cores, Serial number, and other information can be stolen by this malware.

Processing the Stolen Information

Once the malware collects all this information, the data is zipped and base64 encoded as part of the exfiltration. This zip file is then sent to the “hxxp[:]//amos-malware[.]ru/sendlog” which acts as the C&C server

Configuring with Telegram

The most important functionality is that this malware can be configured with a Telegram channel which receives the logs on the malware’s activity. This includes the number of cookies, wallets, passwords, and other information.

Cyble has released a complete analysis report on this malware. Though macOS is said to have been secure and reliable, it is recommended for organizations be secure from threat actors.

Struggling to Apply The Security Patch in Your System? – 
Try All-in-One Patch Manager Plus


[ad_2]
Source link

Best accessories for the Samsung Galaxy S23

0
[ad_1]

Now that you’ve ordered your Samsung Galaxy S23, you might be wondering what accessories you should get to compliment your phone. And make sure you can get the best experience from your Galaxy S23. Well, good thing we have you covered here. Here, we have rounded up the very best accessories that you can get for your new Galaxy S23.

Best Samsung Galaxy S23 accessories

In this list, you’ll find things like smartwatches, chargers, cables, and so much more. What you won’t find here are cases. We already have a nice roundup of the very best cases for the Galaxy S23, which you can check out here.

CostWhere to buy
Samsung 45W USB-C Fast Charging Wall Charger$49Samsung
Samsung Galaxy Buds 2 Pro$199Samsung
PopSockets$15Amazon
RAVPower Portable Charger 20000mAh PD 3.0 Power Bank$40Amazon
Samsung USB-C Cable$7Amazon
Samsung Galaxy Watch 5$279Amazon
Fitbit Versa 4$229Amazon
Anker PowerPort Atom PD 1$28Amazon
Spigen Kuel S40 Car Mount$18Amazon
Samsung 15W Wireless Charger Duo$89Amazon

Samsung 45W USB-C Fast Charging Wall Charger

EP TA845 001 Front Black USMod

If you purchased the new Galaxy S23, then this 45W wall charger is a must-buy. Even though the S23 only supports up to 25W charging, this is going to future-proof you for a bit, as future phones will work with 45W or faster. Allowing you to fully charge it in about 40 minutes. Which is really useful.

Samsung 45W USB-C Fast Charging Wall Charger – Samsung.com

Samsung Galaxy Buds 2 Pro

71Ifk3YmN1L AC SL1500

The Galaxy Buds 2 Pro are the latest pair of earbuds from Samsung. These were announced last year, and were highly acclaimed. They offer better noise cancellation and better battery life, compared to the previous “Pro” model. Samsung has also included Hi-Fi sound here, so you’re going to get some really good audio quality on these, which is always nice to see.

Samsung Galaxy Buds Pro – Samsung

PopSockets: PopGrip

galaxy s21 accessories
PopSockets: PopGrip

The PopGrip from PopSockets is a really good accessory for really any phone. And the reason why this is the best PopSocket you can buy right now is because it does allow you to swap out the top. So if you want to change the color, you can do so.

PopGrip is really great because it allows you to hold onto your phone much easier, especially for larger phones, but even works great on smaller ones like the Galaxy S23. But it also doubles as a sort of kickstand for your smartphone. Allowing you to use it on long flights to watch a movie or two, without having to hold your phone the whole time. It’s a really genius invention, and it’s something that everyone should have.

You can attach the PopGrip to your case, so that it doesn’t ruin your phone too.

PopSockets: PopGrip – Amazon

Samsung USB-C Cable

41k2lMhzoqL AC SL1500 1

This is the same USB-C cable that Samsung includes in the box of the Galaxy S23. So there’s nothing special here, it’s just an additional USB-C cable that you can pick up and have in the car, at work, or even elsewhere in your home. It’s always good to have a second USB-C cable somewhere around, for when you need to charge your phone.

Samsung USB-C Cable – Amazon

Samsung Galaxy Watch 5

61X2Pl7752L AC SL1500

The Galaxy Watch 5 is the latest smartwatch from Samsung, and many might say its the best non-Apple smartwatch on the market. It’s definitely a stunning looking watch, and it starts at only $279. It does run on Google’s Wear OS, so you’re getting all of your usual apps that you know and love here. That also includes Google Assistant, Google Wallet and so much more.

Samsung Galaxy Watch 5 – Amazon

Fitbit Versa 4

61CZSoSnVPL AC SL1500

The Fitbit Versa 4 is a great fitness tracker to go along with other accessories for your Galaxy S23. Especially if you’re looking to get in shape this year.

The Versa 4 is the latest in the Versa line for Fitbit. It offers up all of the fitness tracking that you’d expect from Fitbit. Including the ability to track your steps, your workouts, calories burned and much more. It can also deliver some notifications to your wrist.

Fitbit Versa 4 – Amazon

Anker PowerPort Atom PD 1

614SyJ alnL AC SL1500
Anker PowerPort Atom PD 1

The Anker PowerPort Atom PD 1 is the perfect USB-C PD charger to use with the Galaxy S23. While it does still come with one in the box, it never hurts to have a spare somewhere in your home or at work.

This is a 30W charger – and yes, the Galaxy S23 tops out at 25W but this will work on other devices too. It also uses Gallium Nitride or GaN, which makes this charger a lot smaller than you’re probably used too. Which is why we think it is the best option. Since you can easily toss this into your bag when you’re traveling – if we are ever able to do that again.

Anker PowerPort Atom PD 1 – Amazon

Spigen Kuel S40 Stealth Car Mount

pixel 5 accessories
Spigen Kuel S40 Stealth Car Mount

This is one of the most interesting looking car mounts out there, and it really doesn’t even look like a car mount.

The Spigen Kuel S40 stealth Car Mount is a minimalist car mount for those that don’t want to use magnets. This is a car mount that folds down when it is not in use. Just open it up and stick your phone in the mount, in landscape mode and you are good to go. It’s a good option, because it is fairly small when it is not in use, so that it is not blocking your view of the road all that much.

Spigen offers the Kuel S40 Stealth car mount in only one color. Which is black and blue, so it can blend in with your car a bit more.

Spigen Kuel S40-2 Turbulence Car Mount – Amazon

Samsung 15W Wireless Charger Duo

31C9DZk6siL AC SL1200

This is the new Wireless Charger Duo from Samsung, still capping out at 15W. And that is because Samsung’s phones only do up to 15W. This charger does come in both black and white, so you can choose the one that best fits in your home or office.

With this being a duo charger, you’re able to charge your Galaxy S23, as well as your smartwatch, or maybe your headphones too. Unfortunately, you can only charge one phone at a time here, as the other, secondary charger is slower. And meant for headphones or a smartwatch.

Samsung 15W Wireless Charger Duo – Amazon


[ad_2]
Source link

Bally Sports unhappy with Phoenix Suns, Mercury heading to local TV

0
[ad_1]

Earlier today, it was announced that the Phoenix Suns and Mercury would be leaving cable TV, in favor of local broadcast channels. The two teams had reached a deal to put all of their regular season games on local broadcast channels that are owned by Gray Television and also on a local streaming platform.

Now, Bally Sports and its parent-company, Diamond Sports Group, is not happy with that decision. Claiming that it breaches contracts and violates bankruptcy laws.

Currently, the Phoenix Suns and Mercury broadcast rights are owned by Bally Sports Arizona, who air their games, as well as on Bally Sports+. DSG is currently in bankruptcy court, and working to restructure its debt, so teams are looking for other ways to broadcast their games.

“The Phoenix Suns breached our contract and violated bankruptcy law, and Diamond Sports Group will pursue all remedies against any parties that attempt to exercise control over our property interests while we reorganize,” Diamond Sports said in a statement. “This is an improper effort by the Suns to change their broadcasting partner without permitting Diamond to exercise our contractual rights.”

The NBA renewed its contract with DSG in February, complicating things

Back in February, the NBA had renewed its contract with Diamond Sports Group, through 2025. Which complicates things here. And it’s going to put DSG and Gray Television into a nasty fight for rights to broadcast the Suns and Mercury.

Though, they need to figure things out soon, as the Mercury’s season starts on May 19. And at this point, there’s no word on where their games will be broadcast. This is likely just the beginning of a long fight between the Phoenix Suns, Mercury, DSG/Bally Sports and Gray Television.

The move to local TV is an interesting one. It’s unlikely that the Suns and Mercury would get a major payday with local channels, as they currently do with Bally Sports. But that would allow more people to see the games.


[ad_2]
Source link

Google Cloud Rolls Out Security AI Workbench Suite

0
[ad_1]

Google has announced the launching of an AI-powered platform for improved security. Dubbed the “Google Cloud Security AI Workbench,” the tool aims at improving threat detection and management to facilitate the cybersecurity community.

Google Cloud Security AI Workbench To Manage Threat Detection

According to a recent post from Google Cloud Security VP/GM, Sunil Potti, the tech giant has now decided to leverage AI for enhanced security management. Specifically, the firm has announced rolling out Google Cloud Security AI Workbench – an AI-powered security platform.

As explained, the new security suite leverages an advanced security large language model (LLM) – the Sec-PaLM. This unique model blends Google’s threat landscape visibility with Mandiant’s threat intelligence to deliver the desired security performances tailored according to different use cases.

Besides, Google has developed this suite using Google Cloud’s Vertex AI infrastructure, enabling users to have better control over the data they share with the platform.

Simply put, the Security AI Benchwork is a suite of numerous Sec-PaLM-driven features meant for helping professionals stay ahead in the security realm. Google backs these features using top-notch threat intelligence and AI-based threat detections and analyses to proactively repel future attacks. These include,

Together, these tools will not only help the professionals in effectively responding to incoming threats but also reduce the time required for securing vast attack surface areas due to the simple yet effective AI-powered tools.

Although, Google’s announcement doesn’t come first as Microsoft has already launched a similar thing recently – the Security CoPilot.

However, the two are different in that Microsoft’s Security CoPilot should facilitate the security teams in swift incident response. Whereas the Google Cloud Security AI Workbench is an inclusive security suite that assists in faster and more effective threat detection and landscape management.

Also, it has improved its Chronicle AI and Security Command Center AI solutions with Sec-PaLM to facilitate the professionals ‘do’ security with minimal friction.

Let us know your thoughts in the comments.


[ad_2]
Source link