Agregátor RSS

Microsoft Extends Windows 10 Security Updates for One Year with New Enrollment Options

The Hacker News - 25 Červen, 2025 - 07:10
Microsoft on Tuesday announced that it's extending Windows 10 Extended Security Updates (ESU) for an extra year by letting users either pay a small fee of $30 or by sync their PC settings to the cloud. The development comes ahead of the tech giant's upcoming October 14, 2025, deadline, when it plans to officially end support and stop providing security updates for devices running Windows 10. TheRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Google Chrome 138

AbcLinuxu [zprávičky] - 25 Červen, 2025 - 04:15
Google Chrome 138 byl prohlášen za stabilní. Nejnovější stabilní verze 138.0.7204.49 přináší řadu novinek z hlediska uživatelů i vývojářů. Podrobný přehled v poznámkách k vydání. Opraveno bylo 11 bezpečnostních chyb. Vylepšeny byly také nástroje pro vývojáře. Verze pro Android nově umožňuje přesunutí adresního řádku do dolní části Chromu. Na iOS to bylo možné již od října 2023. S příští verzí 139 plánovanou na 5. srpna přestane být podporován Android 8.0 (Oreo) a Android 9.0 (Pie).
Kategorie: GNU/Linux & BSD

DietPi 9.14

AbcLinuxu [zprávičky] - 25 Červen, 2025 - 01:43
Byla vydána nová verze 9.14 z Debianu vycházející linuxové distribuce DietPi pro (nejenom) jednodeskové počítače. Přehled novinek v poznámkách k vydání. Přidána byla podpora Orange Pi 5 Ultra a Orange Pi 5 Compute Module. V katalogu softwaru přibyl GZDoom.
Kategorie: GNU/Linux & BSD

What are Gemini, Claude, and Meta AI doing with enterprise data?

Computerworld.com [Hacking News] - 25 Červen, 2025 - 01:15

Enterprise users of leading large language models are at risk of making private information public, according to a new study on the data collection and sharing practices of organizations such as Meta, Google, and Microsoft that reveals they are collecting sensitive data and sharing it with unknown third parties.

In fact, businesses may face even greater risks than the multitude of individuals who use the various LLMs, according to the findings from Incogni, a personal data removal services and data privacy company.

“Employees frequently use generative AI tools to help draft internal reports or communications, not realizing that this can result in proprietary data becoming part of the model’s training dataset,” the company said. “This lack of safeguards not only exposes individuals to unwanted data sharing, but could also lead to sensitive business data being reused in future interactions with other users, creating privacy, compliance, and competitive risks.”

Ron Zayas, the CEO of Incogni’s business and government division Ironwall, said, “the analogy would be that we spend a lot of time as businesses making sure that our emails are secure, making sure that our machines lock themselves down after a certain period of time, of following SOC 2 protocols, all these things to protect information.” But now, he said, the concern is that “we’ve opened the door, and we have employees feeding information to engines that will process that and use it [perhaps in responses to competitors or foreign governments].”

To evaluate the LLMs, Incogni developed a set of 11 criteria that allowed it to assess the privacy risk in each, and compiled the results to determine each program’s privacy ranking in the areas of training, transparency, and data collection and sharing. From these, it also derived an overall rating.

Key findings in Incogni’s study revealed that:

  • Le Chat by Mistral AI is the “least privacy invasive platform, with ChatGPT and Grok following closely behind. These platforms performed the best when it comes to how transparent they are on how they use and collect data, and how easy it is to opt out of having personal data used to train underlying models.”
  • LLM platforms developed by the biggest tech companies turned out to be the most privacy-invasive, the report said, with Meta AI (Meta) being the worst, followed by Gemini (Google) and Copilot (Microsoft).
  • Gemini, DeepSeek, Pi AI, and Meta AI don’t seem to allow users to opt out of having prompts used to train the models.
  • ChatGPT turned out to be the most transparent about whether prompts will be used for model training, and it had a clear privacy policy.
  • Grok (xAI) may share photos provided by users with third parties.
  • Meta.ai “shares names, email addresses and phone numbers with external entities, including research partners and corporate group members.”
What not to tell AI

Justin St-Maurice, technical counselor at Info-Tech Research Group, said that from a corporate perspective, “training your staff on what not to put into tools like ChatGPT, Gemini, or Meta’s AI is critical.”

He added, “just as people are taught not to post private or sensitive information on social media, they need similar awareness when using generative AI tools. These platforms should be treated as public, not private. Putting personally identifiable information (PII) or proprietary company data into these systems is no different than publishing it on a blog. If you wouldn’t post it on LinkedIn or Twitter, don’t type it into ChatGPT. The good news? You can do a lot with these tools without needing to expose sensitive data.”

According to St-Maurice, “if you’re worried about Meta or Google sharing your data, you should reconsider your overall platform choices; this isn’t really about how LLMs process your data, but how these large corporations handle your data more generally.”

Privacy concerns are important, he said, “but it doesn’t mean organizations should avoid large language models altogether. If you’re hosting models yourself, on-prem or through secure cloud services like Amazon Bedrock, you can ensure that no data is retained by the model.”

St-Maurice pointed out that, in these scenarios, “the LLM functions strictly as a processor, like your laptop’s CPU. It doesn’t ‘remember’ anything you don’t store and pass back into it yourself. Build your systems so that the LLM does the thinking, while you retain control over memory, data storage, and user history. You don’t need OpenAI or Google to unlock the value of LLMs; host your own internal models, and cut out the risk of third-party data exposure entirely.”

What people don’t understand, added Ironwall’s Zayas, “is that all this information is not only being sucked in, it’s being repurposed, it’s being reused. It’s being publicized out there, and it’s going to be used against you.”

Kategorie: Hacking & Security

Google rolls out text-to-image model Imagen 4 for free

Bleeping Computer - 25 Červen, 2025 - 00:36
Google confirmed that Imagen 4, which is the company's state-of-the-art text-to-image, is rolling out for free, but only on AI Studio. [...]
Kategorie: Hacking & Security

Můžete probourat zeď mezi dvěma svými byty a vytvořit jeden velký byt?

Lupa.cz - články - 25 Červen, 2025 - 00:00
Mezi dvěma byty v osobním vlastnictví byl vybourán otvor v nenosné zdi, osazen zárubněmi a dveřmi. SVJ s tím nesouhlasilo. Jak dopadl soudní spor? Mohou být dva byty propojeny nebo ne?
Kategorie: IT News

Softwarová sklizeň (25. 6. 2025): promažte z disku dočasné soubory

ROOT.cz - 25 Červen, 2025 - 00:00
Pravidelná sonda do světa software. Podíváme se na nástroj pro mazání dočasných souborů, budeme zálohovat git repozitáře a nakonec si namountujeme a zanalyzujeme diskové obrazy.
Kategorie: GNU/Linux & BSD

Samsung trochu vyladil výkon Exynos 2500, ale pořád je to slabší než průměr

CD-R server - 25 Červen, 2025 - 00:00
Když se v květnu objevily první výkonnostní výsledky SoC Exynos 2500 od Samsungu, nebyla to žádná sláva. Vypadá to ale, že se podařilo chování čipu ještě trochu umravnit. Již to není katastrofa, ale…
Kategorie: IT News

Fantastické Sukunaarchaeum je zatím nejblíž virům ze všech buněk, co známe

OSEL.cz - 25 Červen, 2025 - 00:00
Sukunaarchaeum mirabile vylezlo z bizarní mořské obrněnky a je z toho letní zázrak. Našli jsme linii vedoucí k virům? Nebo musíme více dohlédnout na pitný režim? Nejmenší známý archeální genom, ořezaný na základní aparát pro replikaci sama sebe. Dokonce i membránové proteiny připomínají spíš virovou částici. A pozor, těchhle věcí je plné moře!
Kategorie: Věda a technika

Claude catches up to ChatGPT with built-in memory support

Bleeping Computer - 24 Červen, 2025 - 23:52
AI startup Anthorpic is planning to add a memory feature to Claude in a bid to take on ChatGPT, which has an advanced memory feature. [...]
Kategorie: Hacking & Security

Google Cloud donates A2A AI protocol to the Linux Foundation

Bleeping Computer - 24 Červen, 2025 - 23:34
Google Cloud has donated its Agent2Agent (A2A) protocol to the Linux Foundation, which has now announced a new community-driven project called the Agent2Agent Project. [...]
Kategorie: Hacking & Security

Don't panic, but it's only a matter of time before critical 'CitrixBleed 2' is under attack

The Register - Anti-Virus - 24 Červen, 2025 - 23:01
Why are you even reading this story? Patch now!

Citrix patched a critical vulnerability in its NetScaler ADC and NetScaler Gateway products that is already being compared to the infamous CitrixBleed flaw exploited by ransomware gangs and other cyber scum, although there haven't been any reports of active exploitation. Yet.…

Kategorie: Viry a Červi

SonicWall warns of trojanized NetExtender stealing VPN logins

Bleeping Computer - 24 Červen, 2025 - 22:36
SonicWall is warning customers that threat actors are distributing a trojanized version of its NetExtender SSL VPN client used to steal VPN credentials. [...]
Kategorie: Hacking & Security

Windows 10 KB5061087 update released with 13 changes and fixes

Bleeping Computer - 24 Červen, 2025 - 20:07
Microsoft has released the June 2025 non-security preview update for Windows 10, version 22H2, with fixes for bugs preventing the Start Menu from launching and breaking scanning features on USB multi-function printers. [...]
Kategorie: Hacking & Security

Beware of fake SonicWall VPN app that steals users' credentials

The Register - Anti-Virus - 24 Červen, 2025 - 19:22
A good reminder not to download apps from non-vendor sites

Unknown miscreants are distributing a fake SonicWall app to steal users' VPN credentials.…

Kategorie: Viry a Červi

Microsoft fixes known issue that breaks Windows 11 updates

Bleeping Computer - 24 Červen, 2025 - 19:13
Microsoft is rolling out a configuration update designed to address a known issue causing Windows Update to fail on some Windows 11 systems. [...]
Kategorie: Hacking & Security

Windows 10 users can get extended security updates using Microsoft points

Bleeping Computer - 24 Červen, 2025 - 19:00
Microsoft says Windows 10 home users who want to delay switching to Windows 11 can enroll in the Extended Security Updates (ESU) program at no additional cost using Microsoft Rewards points or enabling Windows Backup to sync their data to the cloud. [...]
Kategorie: Hacking & Security

Trezor’s support platform abused in crypto theft phishing attacks

Bleeping Computer - 24 Červen, 2025 - 18:54
Trezor is alerting users about a phishing campaign that abuses its automated support system to send deceptive emails from its official platform. [...]
Kategorie: Hacking & Security

Nejlepší programy na úpravu fotek: 15 ověřených tipů, placených i zdarma

Živě.cz - 24 Červen, 2025 - 18:45
Webové editory nabízejí rychlou úpravu snímků bez instalace • Placené programy poskytují profesionální funkce a AI nástroje • Mnoho alternativ nabízí jednorázovou platbu bez předplatného
Kategorie: IT News
Syndikovat obsah