“We ran into our old friend BOPLA again – it turns out that an API with very weak authentication can be queried for a credit score,” explains Kare. “And guess what, not only can you pull information about the victim and do a little identity theft, but you can also check how good a victim they are, how much credit can be obtained in their name.”
discovered; but again, many companies don't discover API security flaws because they don't monitor them.
“Most retailers don’t find out they’ve been hacked, that their payment systems have been compromised, by their own free will. They’re told by their bank,” says Care. “When your security alerts come from outside, it’s not a pleasant experience, believe me.”
UN resolution on artificial intelligence passed unanimously
25.03.2024
The UN General Assembly resolution, adopted on March 21, is aimed at ensuring AI safety. It is not binding, but it is still very important, reports ZDNet .
The rise of generative AI has shown the world the enormous potential of this technology to help people in many ways, but it has also exposed its dangers. The technology has already caused data leaks, copyright infringement lawsuits, harmful deepfakes, and more, highlighting the urgent need to regulate its safety.
The resolution, which was unanimously adopted by the UN General Assembly, was proposed by the US and supported by more than 120 member states. As a result, all 193 UN member states agreed to adopt it. It calls for the design, development and deployment of AI to be “safe, secure and trustworthy.”
The text of the resolution acknowledges both the nigeria mobile database and the dangers of AI. If used correctly, some of the potential benefits listed in the resolution include accelerating the achievement of the 17 UN Sustainable Development Goals, promoting digital transformation and peace, bridging the digital divide within countries, and more.
The malicious “design, development and deployment” of AI systems could have disastrous consequences, including undermining sustainable economic, social and environmental development, widening the digital divide, exacerbating biases that contribute to discrimination, and more. In this regard, the resolution emphasizes the urgent need to achieve “a global consensus on safe, reliable and trustworthy AI systems…”.
That's why it's important to start by discovering all available APIs and adding them to the registry, and then applying corporate security policies to all registered APIs, he says.
Tools like API inventory and API compliance products can help identify and assess APIs across an organization by integrating them into the CI/CD pipeline. And organizations should use API threat detection solutions that can block API attacks in real time.
All of these can be easily fixed once
-
- Posts: 409
- Joined: Sun Dec 22, 2024 7:16 am