Tag
Adafruit received a demand letter from Flux.ai's legal counsel demanding they refrain from publishing an article about Flux's security misconfiguration and alleged false claims. Adafruit has paused publishing while considering a response.
Microsoft is facing backlash for threatening legal action against a security researcher who publicly posted zero-day exploits, with critics highlighting the company's inconsistent history with vulnerability disclosure.
Security researcher discloses multiple serious vulnerabilities in a cheap Temu smart doorbell, including fleet-wide account takeover, live call hijacking, and WiFi password exfiltration, affecting the Naxclow IoT platform.
The article argues that the traditional 90-day responsible disclosure window is obsolete because LLMs enable rapid, simultaneous discovery of vulnerabilities, necessitating immediate patching of critical issues.
OpenAI publishes an Outbound Coordinated Vulnerability Disclosure Policy outlining how it responsibly reports security vulnerabilities discovered in third-party software, anticipating increased vulnerability detection as AI systems become more capable at finding and patching security issues.
OpenAI has launched a Bug Bounty Program in partnership with Bugcrowd, offering cash rewards ranging from $200 to $20,000 for security researchers who discover and report vulnerabilities in OpenAI's systems.
OpenAI introduces GPT-2, a 1.5 billion parameter transformer-based language model trained on 40GB of internet text that achieves state-of-the-art performance on language modeling benchmarks and demonstrates zero-shot capabilities in reading comprehension, translation, question answering, and summarization. Due to safety concerns, only a smaller model and technical paper are released publicly rather than the full trained model.