How Legacy became a costly crypto bust for players and a business win for Peter Molyneux After millions in NFT sales, the hyped “play to earn” game was effectively dead in weeks. https://arstechnica.c…
How Legacy became a costly crypto bust for players and a business win for Peter Molyneux After millions in NFT sales, the hyped “play to earn” game was effectively dead in weeks. https://arstechnica.c…
Global recruitment giant says 71% of human firewalls saw wages stagnate last year as threats and responsibilities grewCybersecurity professionals were the most overlooked workers in IT when it came to…
Space Force awards 11 firms prototype deals to build orbital interceptorsThe United States Space Force (USSF) has awarded eleven companies contracts to develop space-based interceptors for President T…
XWayland 24.1.11 Brings Crash Fixes Red Hat's Olivier Fourdan announced today the availability of XWayland 24.1.11 that brings a few bug/regression fixes... https://www.phoronix.com/news/XWayland-24.1…
Keep the patches away for as long as you likeMicrosoft has devised a solution to the problem of Windows Updates that break customer devices – users are now able to pause them for as long as they like.…
Security giant says attackers grabbed 'limited set' of data. Crooks claim 10 million recordsA home security biz getting digitally burgled is not a great look - but that's exactly where ADT finds itsel…
iThome資安人才向來是科技人力中的少數,在法遵要求上市櫃公司都得有一定規模不等的專責資安人力,不能再像過去靠資訊部門兼任之後,過去幾年,資安人才更成了超級搶手的人才,不分產業也都吹起了資安人才荒。隨著生成式AI的崛起,尤其過去兩年,科技大廠推出的資安AI助手越來越成熟,LLM挖掘軟體系統漏洞的能力也越來越強,生成式AI開始成了提升資安人才戰力的利器。這也讓企業開始意識到,可以運用生成式AI來緩…
AMD VPE 2.0 Support Merged For Mesa 26.2 Merged overnight to the latest Mesa graphics driver development code is enabling the VPE 2.0 engine to be found with future AMD Radeon GPUs... https://www.phor…
UK’s data watchdog confirms its boss has been off the job since February while an HR investigation runsThe UK's data watchdog is without its chief after John Edwards stepped aside from the Information…
Dynamic Earth's ancient rock holds not primordial crystal, but a tiny Linux box having a bad dayBork!Bork!Bork! From the beginning of time, there has always been Bork. Lurking within the heart of this…
Ubuntu Linux Will Begin Landing AI Features Throughout The Next Year Now that Ubuntu 26.04 LTS has shipped, Canonical is opening up on their next major focus for Ubuntu development: lots of AI feature…
新聞中國國家級駭客屢屢鎖定周邊國家發動攻擊,蒙古也是目標之一,例如,Mustang Panda(Earth Preta、RedDelta、TA416)曾攻擊臺灣和蒙古,IronHusky冒充蒙古政府攻擊蒙古與俄羅斯的政府單位,如今又有新的駭客組織攻擊蒙古政府機構而引起注意。資安公司ESET揭露中國駭客GopherWhisper,這些駭客使用多種以Go語言撰寫而成的工具於蒙古某個政府機構部署並執行各…
新聞將AI用於資安防禦以對抗AI攻擊,已成為各界關注焦點,特別是近期AI在漏洞挖掘能力上的高速推進,然而,AI大廠Google認為,解決資安漏洞風險的關鍵,不只在於大規模「找出」漏洞,更關鍵的是,如何運用AI大規模且高效率地「修補」漏洞。這樣的論點近期一再被強調。例如,2024年舉行AIxCC準決賽的美國國防高等研究計劃署(DARPA),以及去年宣布正研發AI代理CodeMender的Google…
AI vuln-hunter finds what humans taught it to find. Funny thatOpinion In retrospect, calling it Mythos made it a hostage to fortune. Anthropic may have hoped that the name implied its AI code security…
Microsoft Copilot now heading into ‘Official Sensitive’ work after winning back just 26 minutes a day in a trialHMRC is betting big on Microsoft Copilot, rolling it out to tens of thousands of staff a…
iThome企業資安預算成長率再度創新高,2026年平均一家企業資安預算達到2,371萬元,比去年足足增加了13%,占了IT預算的8.2%。其中一般製造業和政府學校的資安預算在IT預算中的比重更超過了一成。立即下載完整報告【iThome 2026 CIO& CISO大調查】資安策略篇完整報告資安管理向來是企業資訊長和資安長的年度優先目標,近兩三年來,加上主管機關對上市櫃公司的資安法遵要求,如資安長…
新聞為鼓勵國內業者重視產品資安,數發部資安院在去年12月舉辦首屆漏洞獵補(bug bounty)活動,邀請研華、威強電等11家業者參加,超過20項產品參與,共有179名資安研究人員參與,發現約20個漏洞,資安院為引導資安社群與產業建立機制,今年將舉辦第二屆漏洞獵補活動,盼喚起業者重視產品資安。資安院長林盈達表示,資安院在資安署支持下舉辦首屆漏洞獵補活動,原本擔心研究人員找不到漏洞,另一方面又擔心找…
新聞AI新創Anthropic上週五(4/24)公布一項名為Project Deal的內部實驗,首度驗證AI代理人可在無人干預下完成真實交易,並顯示出模型能力差異將直接轉化為經濟結果。Anthropic在舊金山辦公室打造了一個類似Craigslist的分類式交易市場,並邀請69名員工參與,先由Claude訪談每人欲出售與購買的物品、價格與談判風格,並建立專屬AI代理人,同時提供100美元預算進行交…
新聞Anthropic因Claude Code付費方案標示變動引發開發者社群討論。部分使用者發現,Claude定價頁與支援文件一度顯示Claude Code未列入每月20美元的Pro方案,僅出現在每月100美元起的Max方案,引發外界質疑Anthropic是否未經正式公告就調整開發者工具的付費門檻。Anthropic成長主管Amol Avasare表示,僅針對約2%新專業消費者(prosumer)…
新聞資安業者Sysdig Threat Research Team指出,InternLM開發的LMDeploy大型語言模型推論工具,在伺服器端請求偽造(SSRF)漏洞公開後,不到13小時就出現利用嘗試。該漏洞編號為CVE-2026-33626,影響LMDeploy0.12.3之前版本,官方已在0.12.3修補。CVE-2026-33626漏洞風險在於,攻擊者可透過模型請求中的image_url欄位…