Security Affairs reports that zero-day vulnerability research hub and acquisition platform Crowdfense has increased its exploit acquisition program to provide up to $30 million in total rewards, while expanding its scope to cover security issues impacting enterprise software, messengers, and Wi-Fi/baseband.
The GoFetch side channel in Apple CPUs, OpenSSF's plan for secure software developer education, fuzzing vs. formal verification as a security strategy, hard problems in InfoSec (and AppSec), and more!
Jayson joins us to discuss how he is using, and social engineering, AI to help with his security engagements. We also talk about the low-tech tools he employs to get the job done, some tech tools that are in play, and the most important part of any security testing: Talking to people, creating awareness, and great reporting.
Improved defenses against insider data breaches have been aimed by California-based data security startup Cyberhaven with its new Linea AI artificial intelligence service that integrates human-like insight in organizational data analyses, reports SiliconAngle.
Cybersecurity knowledge obtained from higher education was deemed somewhat, slightly, and not at all useful by 50% of information security professionals in the U.S. and 28 other countries, The Register reports.