Millions of Apple Applications Were Vulnerable to CocoaPods Supply Chain Attack

Many macOS and iOS applications were open to a vulnerability in CocoaPods, an open-source dependency manager, E.V.A. Information Security revealed on July 1. The vulnerability has been patched since EVA…

Continue ReadingMillions of Apple Applications Were Vulnerable to CocoaPods Supply Chain Attack

AI Is Changing the Way Enterprises Look at Trust: Deloitte & SAP Weigh In

Whether you are creating or customizing an AI policy or reassessing how your company approaches trust, keeping customers’ confidence can be increasingly difficult with generative AI’s unpredictability in the picture.…

Continue ReadingAI Is Changing the Way Enterprises Look at Trust: Deloitte & SAP Weigh In

Mandiant Report: Snowflake Users Targeted for Data Theft and Extortion

A new report from Mandiant, part of Google Cloud, reveals that a financially motivated threat actor named UNC5537 collected and exfiltrated data from about 165 organizations’ Snowflake customer instances. Snowflake…

Continue ReadingMandiant Report: Snowflake Users Targeted for Data Theft and Extortion

Some Generative AI Company Employees Pen Letter Wanting ‘Right to Warn’ About Risks

Some current and former employees of OpenAI, Google DeepMind and Anthropic published a letter on June 4 asking for whistleblower protections, more open dialogue about risks and “a culture of…

Continue ReadingSome Generative AI Company Employees Pen Letter Wanting ‘Right to Warn’ About Risks