Geek-Guy.com

Avelios nabs $31M led by Sequoia to fix the ailing world of healthcare IT

The race is on to build a new generation of healthcare software to replace legacy hospital systems that in some cases may not have been updated in decades. A startup out of Munich, Germany called Avelios has ambitions to build a new kind of end-to-end administrative system, leaning into more modern tooling using AI and…

Cisco Patches Critical ISE Vulnerabilities Enabling Root CmdExec and PrivEsc

Cisco has released updates to address two critical security flaws Identity Services Engine (ISE) that could allow remote attackers to execute arbitrary commands and elevate privileges on susceptible devices. The vulnerabilities are listed below – CVE-2025-20124 (CVSS score: 9.9) – An insecure Java deserialization vulnerability in an API of Cisco ISE that could permit an…

21% of CISOs pressured to not report compliance issues

CISOs are increasingly getting caught between business pressures and regulatory obligations, leaving them struggling to balance corporate loyalty and legal accountability. To wit: One in five (21%) security leaders have been pressured by other executives or board members not to report compliance issues at their companies, according to a recent study by security vendor Splunk.…

Aiming to accelerate product design with AI, Trace.Space raises a Seed round

Modern product engineering requires the production of highly accurate digital simulations, allowing engineers to create prototypes and understand the real-world performance of materials. Currently, legacy software platforms from companies like IBM and Dassault are generally employed, but — now powered by Generative AI — startups are joining the arena.  One such is Trace.Space, coming out of…

The cloud is not your only option: on-prem security still alive and well in Windows Server 2025

We’ve often heard that on-premises solutions are on their way out, but until it’s clear that being completely in the cloud makes sense, we will remain in a long transition period. Nowhere else is this made more evident than in the new security features of Windows Server 2025. While many of these features showcase a…

These researchers used NPR Sunday Puzzle questions to benchmark AI ‘reasoning’ models

Every Sunday, NPR host Will Shortz, The New York Times’ crossword puzzle guru, gets to quiz thousands of listeners in a long-running segment called the Sunday Puzzle. While written to be solvable without too much foreknowledge, the brainteasers are usually challenging even for skilled contestants. That’s why some experts think they’re a promising way to…

Boston Dynamics joins forces with its former CEO to speed the learning of its Atlas humanoid robot

Boston Dynamics Wednesday announced a partnership designed to bring improved reinforcement learning to its electric Atlas humanoid robot. The tie-up is with the Robotics & AI Institute (RAI Institute), earlier known as The Boston Dynamics AI Institute. Both organizations were founded by Marc Raibert, a former MIT professor who served as Boston Dynamics’ CEO for…

Smashing Security podcast #403: Coinbase crypto heists, QR codes, and ransomware in the classroom

In episode 403 of “Smashing Security” we dive into the mystery of $65 million vanishing from Coinbase users faster than J-Lo slipped into Graham’s DMs, Geoff gives a poor grade for PowerSchool’s security, and Carole takes a curious look at QR codes. All this and more is discussed in the latest edition of the “Smashing…

Researchers created an open rival to OpenAI’s o1 ‘reasoning’ model for under $50

AI researchers at Stanford and the University of Washington were able to train an AI “reasoning” model for under $50 in cloud compute credits, according to a new research paper released last Friday. The model known as s1 performs similarly to cutting-edge reasoning models, such as OpenAI’s o1 and DeepSeek’s R1, on tests measuring math…

Scout Motors sued over plan to sell EVs direct to consumers

Scout Motors’ plan to eschew traditional dealerships and sell EVs directly to consumers is running into legal trouble. A group of Volkswagen and Audi dealers filed a lawsuit this week against Scout Motors, the EV that spun out of Volkswagen. The lawsuit, which was first reported by Automotive News, seeks to block Scout’s direct-to-consumer sales…

XOi raises $230M, acquires Specifx to expand its tech for field service technicians

Field service engineers may not be the first group of customers that come to mind when you think about lucrative opportunities in B2B technology. But that same blind spot speaks of the opportunity in the space for those who are stepping up and targeting “the job site.” One of the players in that space, XOi …

Unlocking the Freedom of Secure Cloud Environments

Is Your Cloud Environment Truly Secure and Free? Have you ever wondered if your cloud environment is as secure as it could be? The management of Non-Human Identities (NHIs) and Secrets is a revolutionary methodology that offers a sense of freedom in cybersecurity. This approach effectively addresses the disconnect between the security and R&D teams…

Delivering Value with Streamlined IAM Protocols

Why is IAM Crucial in Delivering Value to Modern Businesses? Companies must reassess their cybersecurity strategies and adapt to the changing landscape. Non-Human Identities (NHIs) and Secrets Security Management have emerged as critical elements. But how does Identity and Access Management (IAM) fit into this picture, and why is it instrumental in delivering value to…

Gaining Assurance with Advanced Secrets Rotation

The Benefits of Harnessing Advanced Secrets Rotation How can companies ensure maximum cybersecurity assurance when dealing with Non-Human Identities (NHIs)? The answer lies in effective NHI and Secrets Management, and a central component of this lies in advanced secrets rotation. Understanding the Importance of Advanced Secrets Rotation Secrets are critical for NHIs as they function…

Ransomware payments dropped 35% in 2024

Ransomware payments saw a dramatic 35% drop last year compared to 2023, even as the overall frequency of ransomware attacks increased, according to a new report released by blockchain analysis firm Chainalysis.  The considerable decline in extortion payments is somewhat surprising, given that other cybersecurity firms have claimed that 2024 saw the most ransomware activity…

Amazon reportedly gears up to release next-gen Alexa

Amazon may be gearing up to release a next-gen, AI-powered Alexa experience, according to Reuters. Per the outlet’s report, Amazon plans to preview an upgraded version of Alexa, the company’s smart home assistant that runs on a number of first- and third-party devices, at an event on February 26. The revamped Alexa is said to…

Lawmakers fear Elon Musk, DOGE not adhering to privacy rules

Congress is getting vocal about the privacy and security implications of Elon Musk and his cohorts at the Department of Government Efficiency accessing federal systems. Democrats on the House Homeland Security Committee said Wednesday DOGE must comply with security and privacy laws as they obtain access to federal systems, something the lawmakers say they don’t…

Ransomware payments dropped in 2024 as victims refused to pay hackers

Ransomware payments fell by more than one-third in 2024 as an increasing number of victims refused to negotiate with hackers. In a report published Wednesday, crypto forensics firm Chainalysis said that while ransomware gang leak sites posted more victims than in previous years during 2024, fewer victims gave in to the hackers’ demands. Chainalysis reported…

Stripe makes $1.1 billion crypto bet as it closes on Bridge acquisition

Stripe has closed on its $1.1 billion purchase of stablecoin platform Bridge – marking the payment giant’s largest acquisition to date and tangible push into crypto. Co-founded in 2022 by Coinbase and Square alumni Zach Abrams and Sean Yu, San Antonio, Texas-based Bridge built an API that helps companies accept stablecoins. The pair raised $58…

Dell Makes Key Updates to 2025 Partner Program

Global giant Dell recently announced details on its 2025 Partner Program, which rewards partners for growing and winning new business, assists in accelerating the adoption of AI, and increases the predictability of engagement and collaboration. According to the company, Dell’s partner ecosystem has helped build one of the largest go-to-market engines in the industry, with…

The Elon Musk Act aims to ban ‘special government employees’ from having federal contracts

U.S. Democratic Representative Mark Pocan plans to introduce a bill designed to ban “special government employees” like Elon Musk from having federal contracts so they can’t steer spending towards their own self-interest.  The proposed bill is called the ELON MUSK Act, which stands for Eliminate Looting of Our Nation by Mitigating Unethical State Kleptocracy.  “No…

Workday cuts nearly 2,000 employees

Enterprise HR platform Workday is the latest tech company to announce layoffs in recent weeks. Silicon Valley-based Workday laid off 1,750 employees on Wednesday, as originally reported by Bloomberg and confirmed independently by TechCrunch. That total represents approximately 8.5% of headcount. Unlike many other tech companies, including Meta and Microsoft, Workday has not held drastic…

N-able Launches New AI-Powered Developer Portal

Recently, software company N-able launched a new AI-powered developer portal– called the N-able Developer Portal– to accelerate API integrations with the N-able end-to-end IT management and cybersecurity platform. The portal will automate development tasks and the ability to create custom solutions to deliver faster time-to-value for IT and security services. Portal leverages APIs and alliance…

N-able Launches New AI-Powered Developer Portal

Recently, software company N-able launched a new AI-powered developer portal– called the N-able Developer Portal– to accelerate API integrations with the N-able end-to-end IT management and cybersecurity platform. The portal will automate development tasks and the ability to create custom solutions to deliver faster time-to-value for IT and security services. Portal leverages APIs and alliance…

Check Point Security Solutions Now Available to Sherweb Partners

Channel distributor Sherweb has announced a new collaboration with security vendor Check Point Software Technologies. The companies are launching two new cybersecurity solutions to strengthen MSP cybersecurity. Check Point’s Harmony solutions now available through Sherweb Through this partnership, Sherweb customers can now access Check Point Harmony Email & Collaboration and Check Point Harmony SASE to…

Check Point Security Solutions Now Available to Sherweb Partners

Channel distributor Sherweb has announced a new collaboration with security vendor Check Point Software Technologies. The companies are launching two new cybersecurity solutions to strengthen MSP cybersecurity. Check Point’s Harmony solutions now available through Sherweb Through this partnership, Sherweb customers can now access Check Point Harmony Email & Collaboration and Check Point Harmony SASE to…

Infosec pros: We need CVSS, warts and all

A key pillar of a strong cybersecurity program is identifying vulnerabilities in the complex mix of software programs, packages, apps, and snippets driving all activities across an organization’s digital infrastructure. At the heart of spotting and fixing these flaws is the widely used Common Vulnerability Scoring System (CVSS), maintained by a nonprofit called the Forum…

AI’s biggest stage awaits – TechCrunch Sessions: AI tickets available

AI is heating up, and we’re diving in! TechCrunch Sessions: AI is officially open for registration. Secure your spot now and save up to $300 on select tickets before prices rise From startup founders to AI investors to aspiring innovators — TC Sessions: AI is where the entire AI ecosystem comes together. Whether you’re building,…

Tickets on sale: TechCrunch All Stage 2025, formerly known as Early Stage

Founders and investors, it’s time! TechCrunch Early Stage has evolved into TechCrunch All Stage 2025, returning to Boston on July 17. Get your tickets now and save up to $310 on select ticket types, securing your spot at the best rates. Register here for your All Stage ticket at unbeatable prices. All Stage covers all…

Google launches new AI models and brings ‘thinking’ to Gemini

Google launched its much-anticipated new flagship AI model, Gemini 2.0 Pro Experimental, on Wednesday. The announcement was part of a series of other AI model releases. The company is also making its “reasoning’ model, Gemini 2.0 Flash Thinking, available in the Gemini app. Notably, Google is releasing these AI models as the tech world remains…

4 Ways to Mitigate the Human Factors of Cybersecurity

Before exploring how to mitigate the human factors in cybersecurity, it’s essential to understand what this term means. The human factors of cybersecurity refer to the actions or events where human error leads to a successful hack or data breach. While it might seem that hackers primarily target weak points within a system, they often…

Cyberattacken – nicht alle Manager wissen von ihrer Verantwortung

width=”6016″ height=”3384″ sizes=”(max-width: 6016px) 100vw, 6016px”>Den Kopf in den Sand zu stecken, ist beim Thema Cybersecurity keine gute Idee. Das Management muss sich seiner Verantwortung stellen. alphaspirit – shutterstock.com In vielen Unternehmen ist sich das Management nicht bewusst, dass es in der Verantwortung für Cybersicherheit steht. Das Thema IT-Security wird gerne in der IT-Abteilung und…

Musk moves to dismiss suit over Tesla’s alleged use of AI-generated ‘Blade Runner’ imagery

Attorneys for Elon Musk intend to move to dismiss a case that accuses the Tesla CEO, who is also the head of President Donald Trump’s DOGE organization, of using AI-generated, copyright-violating “Blade Runner”-inspired images at a Tesla press event. In a filing submitted to the U.S. District Court Central District of California, Western Division late…

Cross-Platform JavaScript Stealer Targets Crypto Wallets in New Lazarus Group Campaign

The North Korea-linked Lazarus Group has been linked to an active campaign that leverages fake LinkedIn job offers in the cryptocurrency and travel sectors to deliver malware capable of infecting Windows, macOS, and Linux operating systems. According to cybersecurity company Bitdefender, the scam begins with a message sent on a professional social media network, enticing…

Cherry Ventures raises a new $500M fund for early stage and beyond, but will it be enough?

It’s sometimes said that European VC doesn’t have the firepower to compete with VCs in the U.S., which regularly raise billion-dollar+ funds these days. Perhaps further evidence of this view persists in the news that Berlin-based Cherry Ventures has closed its latest fund at $500 million, to be split between early-stage rounds and follow-on rounds…

Preventing account takeover on centralized cryptocurrency exchanges in 2025

By Kelly Kaoudis and Evan Sultanik This blog post highlights key points from our new white paper Preventing Account Takeovers on Centralized Cryptocurrency Exchanges, which documents ATO-related attack vectors and defenses tailored to CEXes. Imagine trying to log in to your centralized cryptocurrency exchange (CEX) account and your password and username just… don’t work. You…

Microsoft Announces New Partner Organization, Q2 Azure Performance

Global technology leader Microsoft recently announced the formation of the Microsoft Small, Medium Enterprises and Channel (SME&C) partner organization to provide customers, regardless of size, the ability to leverage and derive value from AI. Haupter, Abu-Latif enter new roles The company announced that Ralph Haupter, who was the president of Microsoft EMEA, will lead the…

CodeSignal wants you to practice soft skills with its AI-powered guide

Startups and big tech companies have aggressively used AI to help developers write code or learn programming better. People have used chatbots to prepare for different scenarios in life, like interviews. Tech assessment platform CodeSignal, which introduced a learning platform for technical subjects with AI assistants last year, launched soft skill courses on its platform today…

Shein hit with consumer protection action in EU as bloc unboxes strategy to tackle low-cost ecommerce risks

Chinese ecommerce and fast fashion giant Shein is facing fresh scrutiny in the European Union in relation to consumer protection rules following the launch of a coordinated action by the bloc’s Consumer Protection Cooperation Network (CPCN). The action is being conducted with reference to the EU’s Unfair Commercial Practices Directive, Consumer Rights Directive, Unfair Contracts…

Cybercriminals Use Go Resty and Node Fetch in 13 Million Password Spraying Attempts

Cybercriminals are increasingly leveraging legitimate HTTP client tools to facilitate account takeover (ATO) attacks on Microsoft 365 environments. Enterprise security company Proofpoint said it observed campaigns using HTTP clients Axios and Node Fetch to send HTTP requests and receive HTTP responses from web servers with the goal of conducting ATO attacks. “Originally sourced from public

Silent Lynx Using PowerShell, Golang, and C++ Loaders in Multi-Stage Cyberattacks

A previously undocumented threat actor known as Silent Lynx has been linked to cyber attacks targeting various entities in Kyrgyzstan and Turkmenistan. “This threat group has previously targeted entities around Eastern Europe and Central Asian government think tanks involved in economic decision making and banking sector,” Seqrite Labs researcher Subhajeet Singha said in a technical…

WordPress Appliance - Powered by TurnKey Linux