Aggregator
Javelin MCP Security protects agentic systems and AI‑enabled applications
Javelin announced MCP Security, a defense-in-depth solution for the Model Context Protocol (MCP), the connective tissue between AI assistants, tools, and enterprise data. The release combines Javelin Ramparts, an MCP scanner, with Javelin MCP Runtime Guardrails for real-time policy enforcement at the tool and data boundary. As enterprises accelerate agentic AI, adversaries are shifting to agent hijacking and indirect prompt injection—malicious instructions hidden in business content or third-party data that drive unintended actions. Recent demonstrations … More →
The post Javelin MCP Security protects agentic systems and AI‑enabled applications appeared first on Help Net Security.
Забудьте, что патчи всегда спасают: если его установил хакер, вы уже в ловушке
ISACA Launches AI-Centric Security Management Certification
A hacker tied to Yemen Cyber Army gets 20 months in prison
“奥巴马被捕”视频疯传,国投智能股份“慧眼”鉴真:伪造!
据媒体7月20日报道,美国总统特朗普当天分享了一段人工智能生成的视频,视频中,美国前总统奥巴马被逮捕。
视频截图,下同
特朗普20日在社交平台分享了这段时长45秒的视频。视频中,特朗普和奥巴马先是一起坐在白宫椭圆形办公室里,随后奥巴马在歌曲“YMCA”的伴奏下被特工逮捕。 当奥巴马被捕并最终被投入监狱时,人工智能生成的特朗普咧嘴一笑。在狱中,人工智能生成的奥巴马穿着橙色连体囚服。这段视频在多个社交平台获得广泛传播。
随着人工智能各项技术飞速发展,应用更加普及多元。其中,深度合成和生成式AI技术作为人工智能领域的创新应用技术,以其较低的应用门槛、较强的娱乐属性、丰富的应用场景备受关注。随着技术的开放开源、深度合成和生成产品和服务的增多,此类内容制作的技术门槛越来越低,实现了技术的“平民化”。
深度合成和生成式AI技术一旦被滥用,将会造成巨大的安全风险与实质性危害,给个人、企业造成肖像、名誉等人格和财产权益损害,也可能给社会秩序、国家政治稳定和安全造成巨大威胁。作为网络空间安全与社会治理领域国家队,国投智能股份全资子公司美亚柏科积极响应国家号召,依托自身在人工智能领域的技术积累,研发推出“鉴真”系列产品,为打击AI技术滥用提供了有力武器。
面对深伪合成与 AI 生成图片、视频带来的内容真实性挑战,公司自主研发的检测技术已构建起全面且精准的防御体系。平台可有效识别近500种各类伪造生成手段,广泛覆盖当前主流AI换脸、AI生成等方法。经领域多家专业厂家评测,美亚柏科视频图像鉴真能力,检测的精度、召回、速度等性能行业领先,为内容安全筑牢技术防线。
公司首发国内第一款深伪视频图像鉴真智能装备——慧眼视频图像鉴真工作站,该设备集成了先进的AI算法和图像处理技术,能够高效识别并验证视频图像的真实性,为司法调查、内容真实性验证等领域提供了强有力的技术保障。互联网上线“美亚鉴真平台”微信小程序,目前已在全国13个省级、超100个地市级反诈政务平台完成对接,成为全国唯一接入各类政务平台以及覆盖最广的深度合成生成内容检测小程序,并获得央视新闻专题报道和各地反诈中心部门的好评。
经美亚鉴真平台小程序鉴定,该视频为伪造公司“鉴真”系列产品以多元化的业务模式,能够满足不同场景需求,用户可依据业务特性、数据规模及安全要求,灵活选择适配版本,获取定制化的AI合成生成内容检测解决方案:
·实验室装备版适配专业科研与鉴定场景;
·手机、平板、电脑等端侧SDK支持移动设备及终端应用的实时检测集成;
·私有服务版通过本地化部署,保障数据隐私与安全;
·SaaS化服务版以云端API实现低成本、高灵活的能力输出;
·互联网微信小程序则为个人用户及中小机构提供便捷的轻量化检测服务。
国投智能股份将继续携手美亚柏科,聚焦生成式人工智能领域以及AI内容检测识别技术的研发创新,不断精研优化,推出更具安全性与可靠性的技术产品,为打击基于AI的新型涉网犯罪筑牢坚实的技术后盾,全力推动AI技术朝着健康、规范的方向蓬勃发展。
CVE-2025-54948
VerilogLAVD:用于 Verilog 漏洞检测的 LLM 辅助规则生成
北极一群岛的冰融化量足以使海平面上升 0.16 毫米
Microsoft releases emergency updates to fix Windows recovery
Incident Response to Cloud Security Incidents: AWS, Azure, and GCP Best Practices
Learn Cloud Incident Response strategies for AWS, Azure, and GCP to quickly detect, contain, and resolve cloud security incidents.
The post Incident Response to Cloud Security Incidents: AWS, Azure, and GCP Best Practices appeared first on Sygnia.
投稿第四期 | 以文会友,以礼贺秋:投稿获中秋限定礼盒
40 лет хакерской культуре — легендарный журнал Phrack возвращается с новым выпуском
Chrome High-Severity Vulnerability Let Attackers Execute Arbitrary Code
Google has released an emergency security update for Chrome to address a critical vulnerability that could allow attackers to crash the browser or execute arbitrary code on affected systems. The high-severity flaw, designated as CVE-2025-9132, affects Chrome’s V8 JavaScript engine and was discovered by Google’s automated vulnerability detection system, Big Sleep, on August 4, 2025. […]
The post Chrome High-Severity Vulnerability Let Attackers Execute Arbitrary Code appeared first on Cyber Security News.
电流重塑角膜能有效矫正视力
Enterprise Security Controls in Cloud Workspaces
Learn about implementing robust enterprise security controls within cloud workspaces. Cover identity management, data protection, and endpoint security for platforms like Google Workspace.
The post Enterprise Security Controls in Cloud Workspaces appeared first on Security Boulevard.
Ответили боту в Telegram? Поздравляем, вы стали траффером и украли чужие $65 тысяч
The 6 challenges your business will face in implementing MLSecOps
Organizations that don’t adapt their security programs as they implement AI run the risk of being exposed to a variety of threats, both old and emerging ones. MLSecOps addresses this critical gap in security perimeters by combining AI and ML development with rigorous security guidelines. Establishing a robust MLSecOps foundation is essential for both proactively mitigating vulnerabilities and simplifying the remediation of previously undiscovered flaws. AI/ML systems must remain trustworthy, resilient, and secure. MLSecOps can … More →
The post The 6 challenges your business will face in implementing MLSecOps appeared first on Help Net Security.