med-mastodon.com is one of the many independent Mastodon servers you can use to participate in the fediverse.
Medical community on Mastodon

Administered by:

Server stats:

343
active users

#hack

19 posts19 participants3 posts today

Could a major cyberattack reshape U.S.-Russia talks? Erin Doherty reports President Trump brushed off a Russian hack of the U.S. federal courts’ system that exposed sensitive sealed records before his Putin summit. The courts are now stepping up security amid ongoing threats. Read how this breach might impact geopolitical dynamics: cnbc.com/2025/08/13/trump-russ #DonaldTrump #Russia #cyberattack #federalcourts #Putin #Ukraine #USpolitics #ErinDoherty #security #hack

CNBCTrump shrugs off suspected Russian hack of U.S. federal courts: 'Are you surprised?'President Donald Trump said that he "could" bring up the hack during his upcoming meeting with Russian President Vladimir Putin in Alaska.

Schandalig. Terwijl de #persoonsgegevens van 485.000 vrouwen werden gestolen, wachtte het laboratorium een maand met de bekendmaking. Een maand! De persoonsgegevens werden al te koop aangeboden op het #darkweb. 🔐 Het is alsof je slotenmaker al een maand weet dat je sleutel bij een inbraak is gestolen, maar je pas waarschuwt nadat hij eerst de sloten van zijn eigen woning heeft vervangen. Hoe kunnen we dit soort praktijken voorkomen? nos.nl/nieuwsuur/artikel/25783 #data #hack #cybercrime #privacy

And poof! They're gone.

The Telegram channel for ScatteredSpider Lapsus$ Sp1d3rhunters is gone.

But there is nothing in its place that says it was removed for violating Telegram's Terms of Service, so it may be that they removed it themselves. (Updating: Scattered Spider says it was banned).

A second related account is also suddenly deleted. Their discussion channel is still there at this time.

Reorganizing? Maybe. We'll see.

#ShinyHunters #ScatteredSpider #lapsus
#Salesforce #Snowflake #hack #extortion

Replied in thread

@dangoodin

Weird thing I observed in #infosec
There is an incredible amount of disinterest/contempt for #AI amongst many practitioners.

This contempt extends to willful ignorance about the subject.
q.v. "stochastic parrots/bullshit machines" etc.

Which, in a field with hundreds of millions of users, strikes me as highly unprofessional. Just the other day I read a blog post by a renown hacker (and likely earned a mute/block) "Why I don't use AI and you should not too".

Connor Leahy, CEO of #conjecture is one of the few credible folks in the field.

But to the question at hand.
The prompts are superbly sanitised.
In part by design, in part due to the fact that you are not connecting to a database but to a multidimensional vector data structure.

The #prompt is how you get in through the backdoor. Though I haven't looked into fuzzing, but I suspect because of the tech, the old #sqlinjection tek and similar will not work.

Long story short; It is literally impossible to build a secure #AI. By the virtue of the tech.
#promptengineering is the key to open the back door to the knowledge tree.

Then of course there are local models you can train on your own datasets. Including a stack of your old #2600magazine