PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

6227 results · page 68 of 260

News
Schneier on Security · · International

Using a VM to Contain an AI Agent

It won’t work: My suspicion was that GPT 5.6-Cyber would succeed, but the frequency and manner of its success removed all doubt. We have to reassess sandboxing quality for capable AI agents, and in general the software stack with which they interact. An off-the-shelf VM is not enough to contain a modern, cyber-capable AI agent. There is simply too much attack surface. Even innocuous features (like running with a display) add extra, exploitable attack surface.

Who should care: General readers · AI governance · Policy

#ai#security Read original →
AI Governance
T The Global Legal Post · · International

UK AI governance intelligence platform AI Score raises $5.4m in seed funding round

AI Score, a UK-based platform focused on AI governance intelligence, has closed a $5.4 million seed funding round. The raise signals continued investor appetite for tools that help organizations assess and manage AI-related risk.

Who should care: AI governance · Lawyers · Administrators · General readers · Policy

#ai-governance#ai Read original →
News
WIRED — AI · · International

Who Cares if AI Is Conscious—It’s Basically Alive

A provocative argument is circulating that the philosophical debate over AI consciousness may be beside the point — that AI systems are already behaving in ways that complicate clean distinctions between tool and something more.

Who should care: General readers · AI governance · Policy

AI Governance
New York Times — Tech · · International

Corporate America Is Getting Hooked on Open-Source A.I.

Large U.S. companies, including AT&T, are shifting toward open-source AI models as a lower-cost alternative to proprietary systems from vendors like Anthropic and OpenAI. The trend points to growing corporate appetite for AI that does not depend on expensive commercial providers.

Who should care: AI governance · Lawyers · Administrators · General readers · Policy

#ai-governance#ai Read original →
Breach
BleepingComputer · · International

39 New Methods That Compromise Passkey Authentication

Security researchers have identified 39 distinct methods attackers can use to compromise passkey-based authentication systems. The techniques do not break the underlying FIDO2 cryptography but instead target surrounding processes like credential syncing, enrollment flows, account recovery, and how authentication prompts are handled.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Record · · International

Russian data centers face new security requirements amid Ukraine's drone threats

Russia is requiring data centers to strengthen physical security as Ukrainian drone strikes increasingly threaten the regions where that infrastructure is concentrated. The Kremlin is responding to a real geographic vulnerability in its domestic data infrastructure.

Who should care: Cybersecurity · Privacy officers · Administrators

Healthcare
HIPAA Journal · · US Federal

Survey Reveals Patients Want to Know When and How AI is Used in Healthcare

A new survey found that patients want transparency about when and how artificial intelligence is used in their healthcare, including by doctors' offices and other medical providers. The findings point to a clear gap between how AI is being adopted in clinical settings and what patients expect to know about it.

Who should care: Healthcare professionals · Privacy officers · Compliance · General readers · AI governance · Policy

#healthcare#ai Read original →
News
The Guardian — Tech · · International

US military disables ad trackers on troops’ phones amid security fears

US military officials have disabled advertising trackers on troops' phones and computers following reports that commercially available location data was used to track American forces in the Middle East. Senator Ron Wyden released correspondence from the armed forces confirming the move.

Who should care: General readers · Privacy officers · Policy

Breach
DataBreaches.net · · International

DaVita settles ransomware attack lawsuit for $15M

DaVita, a national kidney dialysis company, has agreed to a $15 million class action settlement following a 2025 ransomware attack that exposed patient data, much of which was subsequently leaked on the dark web.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare#security Read original →
Healthcare Critical
HIPAA Journal · · US Federal

SonicWall Warns of Actively Exploited Vulnerabilities in SMA1000 Appliances

SonicWall has disclosed two zero-day vulnerabilities in its SMA1000 remote access appliances that attackers are actively chaining together to execute arbitrary code remotely. The flaws are already being exploited in the wild, meaning patches or mitigations are urgent rather than routine.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare#security Read original →
AI Governance
M Medscape · · International

5 Things Doctors Should Know About Medical AI Regulation

Medscape has published a guide outlining five key points physicians should understand about the current regulatory landscape for artificial intelligence used in medical settings.

Who should care: AI governance · Lawyers · Administrators · Compliance · General readers · Policy

#ai-governance#regulation#ai Read original →
Enforcement
DataBreaches.net · · International

Ledger faces $500 million class action over data breaches

Ledger, the hardware cryptocurrency wallet company, is facing a $500 million class action lawsuit filed by a customer who alleges the company failed to adequately protect user data and did not take meaningful corrective steps after prior breaches.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#enforcement#privacy Read original →
Breach
DataBreaches.net · · International

FBI probes suspected breach at IDScan.net after dark web service Nexus offered 153M+ US and Canadian driver’s license scans

A dark web service called Nexus began offering searchable access to more than 153 million scanned driver's licenses from the US and Canada, with IDScan.net suspected as the source of the breach. The FBI's New Orleans field office opened a formal investigation on the same day the service appeared.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →
Breach
DataBreaches.net · · International

TR: Fine for famous kebab chain that allowed theft of 500 thousand customers’ data

Turkey's data protection authority fined restaurant chain Baydöner after a breach exposed the personal data of over 500,000 customers, including names, phone numbers, email addresses, and location information. The investigation found the company had no system in place to detect unusual activity before the theft occurred.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · AI governance · General readers · Policy

#breach#enforcement#gdpr#privacy Read original →
← Prev Page 68 of 260 Next →