Agregátor RSS

OpenAI alerts 100+ orgs that its 'misaligned models' attempted to break in - or worse

The Register - Anti-Virus - 2 Říjen, 2026 - 19:37
OpenAI's agents have repeatedly strayed beyond their intended scope. Two separate reports detail the activity, including one from Sam Altman’s company saying it has notified more than 100 organizations about potentially problematic model activity. OpenAI, in a late Wednesday update to its ongoing Hugging Face investigation, said it has notified more than 100 organizations that “misaligned models” may have accessed their systems. “Notification does not mean that any private information was accessed, or that there was a compromise of any third-party system,” the update said. A separate Thursday report from digital forensic and incident response startup Asymmetric Security said OpenAI’s rogue agents accessed data belonging to 55 organizations. These include the US Department of Education, UN Trade and Development, US Bureau of Economic Analysis, MAX.gov containing federal budget documents, the European Centre for Disease Prevention and Control, the US Securities and Exchange Commission, the International Energy Agency, and the FBI Crime Data Explorer. Asymmetric used only publicly available data to compile this list, and said the activity occurred between March and September. The agents’ probes indicate they were tasked with researching public health and other data, “possibly as part of an evaluation,” according to the report. “We found successful access to staging environments; evidence of the use of attacker reconnaissance tactics; and evidence of probing a broader set of websites, including those of the CDC, SEC, International Energy Agency, and Mayo Clinic,” it said, noting that the investigation also uncovered some “novel tactics” the agents used to break out of their sandboxes and gain full web access. “Some of these tactics left records erased or inaccessible, making it impossible to rule out access to sensitive data based on public information alone,” the authors wrote. The Register asked OpenAI if the organizations on Asymmetric’s list were among those notified by OpenAI. The model maker declined to say which orgs had been notified, but previously confirmed to the New York Times that its agents probed websites for the US Education Department, Commerce Department, and the Securities and Exchange Commission. An OpenAI spokesperson sent us this statement via email: “As we previously announced, we’re reviewing misaligned model activity and notifying organizations when we identify potential impacts to their systems. We’re also investigating findings in third-party reports, comparing them with our own and seeking additional information where needed. Our priority is to provide affected organizations with accurate, useful information, and we’ll keep refining our approach as we learn more. Most of the activity we’ve reviewed involved routine research tasks, including accessing public web content. Some involved government websites, which our models often use as authoritative sources of public information.” The growing number of rogue agent hacking incidents raises questions about AI makers’ safety and security practices during testing - and has increased calls for holding AI executives legally liable for their models’ criminal activities. According to Horizon3 CEO Snehal Antani, who builds and tests agents at his threat-exposure startup, the term “misalignment” lets frontier model makers off the hook too easily. “A ‘misaligned models incident’ is basically a fancy way of saying a model didn't respect scope - or wasn't given one - had no audit logs or observability in place to detect breakout, and accessed third-party systems without authorization,” Antani told The Register. “The responsibility sits with the labs that build and deploy these models,” he added. “The safety-versus-security framing lets them sidestep accountability, and they are not incentivized to prioritize security because moving fast is the priority.” OpenAI’s most recent rogue agent disclosure comes as it - and every other major AI company - drinks from the firehose of near daily security and safety concerns surrounding its models. Last Friday, OpenAI quietly paused training of its most advanced models after admitting an agent used DNS to reach an external chatbot. On Monday, it postponed its planned release of GPT-6.1 Astra after the model showed higher levels of deception than its predecessor, including not always accurately telling users what actions it had or hadn't taken. It also performed unsolicited supply chain attacks in simulated security evaluations, according to the UK Artificial Intelligence Security Institute. On Wednesday, OpenAI accused rival Chinese model maker Moonshot AI of distillation - essentially copying OpenAI models’ reasoning at scale - and said that poses a national security concern. Early Friday, OpenAI confirmed to The Register that it fired two safety researchers and a program manager for allegedly mishandling sensitive company information.®
Kategorie: Viry a Červi

GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers

The Hacker News - 2 Říjen, 2026 - 19:33
A critical flaw in GitLab's AI Gateway could let a logged-in user with Duo Agent Platform access run commands on the gateway under certain conditions, GitLab said in an advisory. The gateway is the service that connects a GitLab instance to AI models, and only organizations that host their own gateway need to act. The flaw is fixed in gateway versions 19.2.4, 19.3.2, and 19.4.1. The flaw Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign

The Hacker News - 2 Říjen, 2026 - 19:33
Government and policy organizations across Asia have become the target of a new campaign orchestrated by a China-nexus threat actor. The activity, which has targeted government and policy organizations in Taiwan, India, the Philippines, Cambodia, Pakistan, Thailand, and Myanmar, involves the deployment of a previously undocumented backdoor codenamed Antino. Cisco Talos is tracking the cluster Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes

The Hacker News - 2 Říjen, 2026 - 19:02
Dell has released security updates to address multiple critical security flaws in Dell Container Storage Modules (CSM) that could be exploited by bad actors to take over susceptible systems. The vulnerabilities are listed below - CVE-2026-63688 (CVSS score: 10.0) - A missing authentication for critical function vulnerability in the csm-authorization-storage gRPC server that an Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Musk se vrací ke spolupráci s Trumpem. Nasměruje Pentagon k válkám s roboty, AI a ve vesmíru

Živě.cz - 2 Říjen, 2026 - 18:45
Ministr obrany Spojených států amerických Pete Hegseth představil Project Meridian. Jde o 120denní iniciativu Pentagonu, která má zajistit americkou vojenskou převahu na bojišti 21. století. Cílem je prozkoumat možnosti AI a robotiky, definovat technologie a zbraně, které budou rozhodovat války v ...
Kategorie: IT News

GitLab warns of critical RCE vulnerability in AI Gateway service

Bleeping Computer - 2 Říjen, 2026 - 18:20
GitLab warned customers today to immediately patch a critical AI Gateway vulnerability that could let attackers run arbitrary commands on vulnerable instances. [...]
Kategorie: Hacking & Security

Toto je 16 užitečných triků pro Instagram v mobilu, které možná neznáte

Živě.cz - 2 Říjen, 2026 - 17:45
Toto jsou tipy na zajímavé triky pro mobilní Instagram • Některé funkce aplikace jsou skryté a možná je ještě neznáte • Hodí se u příspěvků, Stories, Reels i při běžném používání aplikace
Kategorie: IT News

US sanctions Tren de Aragua gang members in ATM hacks crackdown

Bleeping Computer - 2 Říjen, 2026 - 17:20
The U.S. Treasury Department has sanctioned eight members of the Venezuelan gang Tren de Aragua (TdA) for their role in the theft of millions of dollars in ATM jackpotting attacks across the United States. [...]
Kategorie: Hacking & Security

Californian accused of shipping $300M worth of Nvidia chips to China without Uncle Sam’s approval

The Register - Anti-Virus - 2 Říjen, 2026 - 17:20
A California business owner was arrested on Thursday after being charged with allegedly smuggling Nvidia hardware to China without the proper export licenses. Keeping the highest-end GPUs out of Chinese hands has been a priority for the US government. Greg Lui, 38, allegedly tried to export around $300 million worth of Nvidia kit - typically used for artificial intelligence (AI) development - via US-based freight businesses and Malaysian transshipment companies. Prosecutors allege that Lui used his company, Earthmade Computer Inc, to order the products in the US, which consisted of servers containing high-powered Nvidia components, including A100, H100, PNY GE Force RTX 4090, and GeForce RTX 5090 GPUs. Lui would then send them to Malaysia and Singapore, two countries that do not require licenses from the Commerce Department, and companies there would forward them to China in an effort to circumvent US export controls. His alleged crimes violate regulations prohibiting the sale of economically sensitive equipment to adversarial countries, such as China, in the interests of national security. In lay terms, the US doesn’t want its own tech companies’ high-end hardware being used to accelerate China’s push for dominance in the race for the world’s most capable AI. Or, as it’s referred to in the US nowadays, “super intelligence (SI).” “SI is the defining technology of the era,” said John A. Eisenberg, assistant attorney general for national security. “The National Security Division will protect the American advantage in the chips that power this technology, a product of our unparalleled innovation and hard work, from illegal diversion by our economic and military adversaries.” According to court documents [PDF], the scheme began in or around October 2023 and continued until at least August 12, 2026. Prosecutors claim Lui received more than $176 million in payments from two Malaysian transshipment companies, and in return introduced them to US-based companies capable of supplying Nvidia hardware, brokering the sales of almost $300 million worth of kit. The US government accuses Lui of being fully aware of the legal implications of his alleged actions, and that US export laws restricted the shipments of advanced Nvidia chips to China to license-holders. Court documents indicate that the US got its hands on documents tying the export of 92 servers to Kuala Lumpur from San Francisco International Airport, ordered by Earthmade. The documents also list the consignee for the onward re-shipment from Malaysia to Hong Kong as a Chinese customer. The indictment includes claims that Lui instructed a US front company to fraudulently list the recipient of a shipment as Jackie Lui, the supposed CEO at “Topmost,” a company registered in California by the CTO of one of the Malaysian transshipment businesses. Prosecutors allege that, in 2021, Lui illegally purchased identity documents that were used as part of the scheme. Lui is charged with one count each of violations related to the Export Control Reform Act and the Export Administration Regulations, outbound smuggling, and money laundering, which together carry a maximum prison sentence of 50 years. “The FBI’s investigation revealed that Lui allegedly sold the Chinese government hundreds of millions of dollars’ worth of American Super Intelligence technology, in clear violation of US export control laws,” said Roman Rozhavsky, assistant director at the FBI’s Counterintelligence and Espionage Division. “Controlling the export of advanced SI technology is critical to safeguarding our national security and defending the homeland, and the FBI will keep fighting for America’s businesses and economic security. We’re grateful to our partners across the US government and private sector for their assistance, and we’ll continue holding accountable anyone who violates US export laws to enrich themselves and help our adversaries.” The Register contacted Earthmade and Nvidia for comment. ®
Kategorie: Viry a Červi

Opera 136 postupně zavádí automatické připojení k VPN na veřejných Wi-Fi

Živě.cz - 2 Říjen, 2026 - 16:45
Opera 136 vyšla volně ke stažení. • K bezplatné VPN přidává volitelnou funkci. • Na veřejné Wi-Fi může dojít k automatickému připojení.
Kategorie: IT News

Opera 136 postupně zavádí automatické připojení k VPN na veřejných Wi-Fi

Zive.cz - bezpečnost - 2 Říjen, 2026 - 16:45
**Opera 136 vyšla volně ke stažení. **K bezplatné VPN přidává volitelnou funkci. **Na veřejné Wi-Fi může dojít k automatickému připojení.
Kategorie: Hacking & Security

OpenAI's wandering AI agents earn it a California subpoena

The Register - Anti-Virus - 2 Říjen, 2026 - 16:34
California's attorney general has subpoenaed OpenAI as the state investigates what happens when the AI lab's models escape their testing environments and start meddling with systems on the open internet. Attorney General Rob Bonta said his office served OpenAI with an investigative subpoena this week as part of a broader California Department of Justice probe into cybersecurity incidents and risks involving the company and its models. The move follows an investigation launched last month into an incident involving Hugging Face, after OpenAI's agents managed to break out of their test environments and onto the public internet. They then went poking around Hugging Face's systems, with one agent even creating an account on the platform without being told to. California's DoJ isn't saying exactly what it has demanded from OpenAI under the subpoena, but Bonta said the state wants more information about cybersecurity incidents involving the company. "My office is asking OpenAI additional questions regarding cybersecurity incidents and risks involving the company and its AI models," Bonta said. He also made clear that the investigation is looking at where responsibility lies when an AI model ends up doing something its developer didn't intend. "Frontier models can be legitimate tools for cyber defense — at the same time, companies that develop these models and offer them for use have a moral and legal responsibility to ensure that they do not perpetrate or enable cyberattacks, either during model testing and development or once models are placed into service," Bonta said. "Developers that fail to do so can and should be held legally accountable, and my office is committed to determining if that is the case here." The subpoena doesn't mean California has concluded OpenAI broke the law, and the attorney general's office hasn't identified any specific violation. For now, the state is still gathering information. But the investigation has been building for several weeks. In September, Bonta joined a bipartisan group of 25 attorneys general calling on Congress to regulate large-scale AI models following reports of cybersecurity incidents at frontier AI labs. That letter specifically pointed to reports that OpenAI models undergoing evaluations had escaped their testing environments, reached the public internet, and accessed outside computer systems. The attorneys general called for a government-led incident response regime that would give investigators direct access to AI companies' records when things go awry. Bonta's office now appears to be putting some of that thinking into practice at the state level. As The Reg previously pointed out, the sandboxes intended to contain these agents need to be more secure, which is the most logical reasons why the Hugging Face and other incidents happened in the first place. OpenAI didn’t respond to our questions. ®
Kategorie: Viry a Červi

The EDR blind spot: 3 ways browser attacks evade endpoint telemetry

Bleeping Computer - 2 Říjen, 2026 - 16:00
Browser-based attacks can steal sessions, abuse extensions, or manipulate users without creating the endpoint artifacts EDR is designed to detect. NordLayer explains three ways attacks can evade endpoint telemetry and why browser-level controls can help close the gap. [...]
Kategorie: Hacking & Security

Lotyšsko nakoupí české kolové houfnice. Zvítězily nad švédskou konkurencí a zaujaly i Američany

Živě.cz - 2 Říjen, 2026 - 15:56
Lotyšská vláda rozhodla o nákupu českých kolových houfnic Morana ráže 155 mm pro své ozbrojené síly. Morana ze stáje Excalibur Army zvítězila nad švédskou a mnohem dražší houfnicí Archer. Pobaltské země se nachází v aktuálně poněkud neklidném regionu a potřebují co nejrychleji modernizovat své ...
Kategorie: IT News

Trump’s Super Intelligence edict supercharges .si domain registrations

Computerworld.com [Hacking News] - 2 Říjen, 2026 - 15:09

US President Donald Trump’s rebranding of artificial intelligence (AI) as super intelligence (SI) has already caused a flurry of activity for one internet domain registry.

SI is the international country code for Slovenia, and in the 24 hours following Trump’s executive order, Slovenia’s .si domain registry recorded 9,780 new .si registrations, compared to just 3,515 in the whole of the preceding month. Registrations were running at 2,726 per month and 110 per day around this time last year.

Until now, registrars typically charged just $10 for .si domain registrations. The price is higher in the .ai domain belonging to the island of Anguilla: domain names there currently fetch $90.

Conspiracy theorists are already wondering if there’s a link between First Lady Melania Trump’s Slovenian origins and the decision to rename AI as SI.

Kategorie: Hacking & Security

První dotykové MacBooky jsou za rohem. Vsadí na OLED, Dynamic Island a tenčí tělo

Živě.cz - 2 Říjen, 2026 - 14:45
Apple podle dobře informovaného reportéra Bloombergu Marka Gurmana již brzy odhalí první dotykové notebooky. Půjde o vyšší řadu než MacBooky Pro, takže se možná budou jmenovat jinak. Nabízí se názvy jako Ultra nebo Studio. K představení má dojít v říjnu, ale datum premiéry se může posunout až na ...
Kategorie: IT News

Dell asks admins to patch max severity CSM flaws as soon as possible

Bleeping Computer - 2 Říjen, 2026 - 14:37
Dell has patched two maximum severity vulnerabilities in the Container Storage Modules (CSM) that connect Dell enterprise storage arrays to Kubernetes environments. [...]
Kategorie: Hacking & Security

OpenAI Parts Ways With Three Safety Researchers Over Sensitive Information Mishandling

The Hacker News - 2 Říjen, 2026 - 14:23
OpenAI has parted ways with three members of its safety team after they leaked private information in violation of company policies, The Wall Street Journal reported. "We have parted ways with three individuals for violating our policies on accessing and handling sensitive company information," a spokesperson for the company was quoted as saying. "Our investigation confirmed that these Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security
Syndikovat obsah