The beginning of an international consensus on AI governance may be emerging from Bletchley Park.
Nov 2, 2023
auto_awesome
Tim Starks, a journalist covering the SEC's case against Solar Winds, discusses the Bletchley Declaration on AI governance. Other topics include blockchain engineering by Lazarus Group, cyber incident affecting Boeing, NodeStealer attacks on Facebook accounts, and the exploitation of Citrix Bleed vulnerability. MuddyWater spearphishing Israeli targets, India investigating attacks on iPhones. Threat Vector segment covers attack surface management, and Venomous Bear introduces new tools.
The Bletchley Declaration represents a starting point for AI governance, emphasizing research, risk-based policies, transparency, evaluation metrics, safety testing tools, and public sector capability.
Lazarus Group targets blockchain engineers with a new strain of macOS malware called candy corn, using execution flow hijacking and Discord as the delivery method, highlighting the group's evolving techniques.
Deep dives
The Importance of AI Governance and the BLEKLE Declaration
The podcast discusses British Prime Minister Rishi Sunak hosting an AI safety summit, where a consensus was reached on AI governance. This consensus is expressed in the draft agreement called the BLEKLE declaration, which outlines the need for research to understand AI risk and the development of risk-based policies to address those risks. The declaration also emphasizes transparency, evaluation metrics, safety testing tools, and public sector capability and research.
Lazarus Group Targets Blockchain Engineers with Candy Corn Malware
The podcast highlights an attempt by Lazarus Group, a North Korean threat group, to target blockchain engineers using a new strain of macOS malware called candy corn. The malware is disguised as an arbitrage bot for blockchain engineers and is delivered via a camouflaged Python application. It uses execution flow hijacking to achieve persistence on macOS and specifically targets the widely used application Discord. The campaign has been ongoing since April 2023 and continuously evolves its tools and techniques.
SEC's Case against SolarWinds and the Implications for Cybersecurity
The podcast explores the SEC's case against SolarWinds, a company involved in one of the largest breaches in history. The suit filed by the SEC alleges that SolarWinds misrepresented its cybersecurity vulnerabilities and accuses the company of being aware of these vulnerabilities. The case raises questions around the responsibilities of CISOs to address vulnerabilities and the potential regulatory actions they may face. The outcome of this case could establish important precedents for how regulators handle cybersecurity issues in the future.
Bletchley Declaration represents a consensus starting point for AI governance. Lazarus Group prospects blockchain engineers with KANDYKORN. Boeing investigates ‘cyber incident’ affecting parts business. NodeStealer’s use in attacks against Facebook accounts. Citrix Bleed vulnerability exploited in the wild. MuddyWater spearphishes Israeli targets in the interest of Hamas. India to investigate alleged attacks on iPhones. Tim Starks from the Washington Post on the SEC’s case against Solar Winds. In today’s Threat Vector segment David Moulton from Unit 42 is joined by Matt Kraning of the Cortex Expanse Team for a look at Attack Surface Management. And Venomous Bear rolls out some new tools.
On the Threat Vector segment, David Moulton, Director of Thought Leadership for Unit 42, is joined by Matt Kraning, CTO of the Cortex Expanse Team. They dive into the latest Attack Surface Management Report.
For links to all of today's stories check out our CyberWire daily news briefing: