Tag: Research
-
OWASP Top 10 for LLMs and Prompt Injection
With the integration of AI systems into business processes, traditional security models are no longer sufficient. OWASP has highlighted these emerging risks by publishing a dedicated Top 10 Security Threats list for LLM systems. Below is a breakdown of the OWASP LLM Top 10 threats: LLM01: Prompt Injection Definition: Prompt Injection refers to attacks where…
-
Securing Cloud-Native Environments: A Comprehensive Look at Aqua Security and Trivy
1. Exploring Aqua Security In the ever-evolving world of cloud-native technologies, securing containerized applications and microservices has become a critical priority. Aqua Security, founded in 2015, stands at the forefront of this mission, providing innovative solutions that protect organizations’ cloud-native environments from development to production. Here’s an in-depth look at Aqua Security’s journey, mission, and…
-
Top 5 AI Marketplaces
1. Introduction Artificial intelligence (AI) technologies have become a game-changer, allowing people and businesses to create solutions that are exactly what they need. You can now build personalised AI apps and virtual assistants for any industry, even if you don’t have much technical knowledge. This makes it easier for professionals to solve real-world problems instead…
-
S4E & CTEM: Transforming Cybersecurity with Continuous Threat Exposure Management
1. Introduction 1.1. The Changing Cybersecurity Landscape Modern organizations rely on digital technologies for practically every aspect of business—communication, e-commerce, data storage, and more. With such heavy reliance, cybercriminals have more incentives and opportunities than ever to strike. New vulnerabilities appear daily, and sophisticated attack methods continue to evolve at breakneck speed. As these threats…
-
Uncensored Artificial Intelligence: Potential Threats
1. Introduction Technology is developing very quickly. This has made artificial intelligence (AI) a big change for all parts of life. AI has changed industries like healthcare, education, and finance a lot. But it can also be dangerous. Uncensored AI refers to artificial intelligence systems that operate without restrictions on the type of content or…
-
Russia’s Pre-US Internet Project and the Broad History of the Russian Internet
1. Introduction Russia’s relationship with the internet has deep roots dating back to the Cold War era. Many of us trace the origins of the internet to the U.S.-based ARPANET project. However, at almost the same time—and in some respects even rivaling the United States—Soviet scientists were exploring ways to build a national computer network.…
-
Google OSV Scanner: A Reliable Aid in Open Source Security
1. Introduction Open source projects play a pioneering role in the world of software development, but they also bring security risks that are a significant concern for developers. At this point, solutions developed to detect security vulnerabilities in open source projects are of great importance. Google’s OSV Scanner tool provides an effective solution to assist…
-
6 Best Practices for Hardening Your OpenSSH Server
OpenSSH is a powerful tool for secure remote access to your servers, but leaving it at default settings can expose your system to vulnerabilities. Follow these essential steps to harden your OpenSSH server and protect it from potential threats. 1- Disable Password Authentication Passwords can be cracked by brute force attacks or guessed by ssh…
-
The AI Tool That’s Changing the Way We Work: An Overview of NotebookLM
Introduction to NotebookLM’s AI Model NotebookLM is an AI-powered tool developed by Google to enhance productivity and research by integrating generative AI capabilities with users’ personal notes and documents. It uses Gemini 1.5’s capabilities. It is designed to act as an intelligent assistant for information retrieval, summarization, and contextual question-answering based on user-provided content. We…
-
Detection Engineering Tools
Detection engineering focuses on creating, testing, and optimizing detection rules to identify threats and suspicious activities in an organization’s network or systems. Here are some key tools used in detection engineering. 1. SIEM (Security Information and Event Management) SIEM (Security Information and Event Management) tools are software platforms that collect, analyze, and correlate security data…
-
What is CERT Polska’s Artemis Security Scanner
Who is CERT Polska and What They Do? CERT Polska, established in 1996 as Poland’s first computer emergency response team, has played a significant role in the field of computer security since then. Operating within NASK (Research and Academic Computer Network), the team is supported by a research institute that manages the .pl domain and…
-

What is Detection Engineering?
1. Introduction It’s more important than ever to protect an organization’s cyber world but as technology keeps changing, so do the bad guys and their methods. They’re always coming up with new and sneaky ways to get around the defenses. That’s where detection engineering comes in. Detection engineering acts as a digital watchdog for organizations,…
