Too much open-source AI is exposing itself to the web
As if AI weren't enough of a security concern, now researchers have discovered that open-source AI deployments may be an even bigger problem than those from commercial providers.Threat researchers at SentinelLABS teamed up with internet mappers from Censys to take a look at the footprint of Ollama deployments exposed to the internet, and what they found was a global network of largely homogenous, open-source AI deployments just waiting for the right zero-day to come along.
175,108 unique Ollama hosts in 130 countries were found exposed to the public internet, with the vast majority of instances found to be running Llama, Qwen2, and Gemma2 models, most of those relying on the same compression choices and packaging regimes. That, says the pair, suggests open-source AI deployments have become a monoculture ripe for exploitation.
Open-source AI is a global security nightmare waiting to happen, say researchers
Infosec in Brief: Also, South Korea gets a pentesting F, US Treasury says bye bye to BAH, North Korean hackers evolve, and moreBrandon Vigliarolo (The Register)
Moore Threads announces a new GPU architecture that will power upcoming gaming and AI compute GPUs
Moore Threads announces a new GPU architecture that will power upcoming gaming and AI compute GPUs
Moore Threads unveils Huagang architecture with Lushan and Huashan GPUs, promising massive gains in gaming, ray tracing, and AI performance.Rajesh (Gizmochina)
LFS drops support for System V, citing workload problems and upstream dependencies on systemd
like this
Linux newbie needs help with solaar
Hello I'm a Linux newbie and I need some help. I'm running fedora on my laptop and I want to connect my Logitech mouse. I got solaar installed but I need to manually install the udev rule. I'm following the Instructions here
So I understand that I need to copy rules.d/42-logitech-unify-permissions.rules from the solaar GitHub and place it in /etc/udev/rules.d the thing I don't know how to do is get there. I'm not super familiar with the terminal
like this
You're not a dumbass, you've just been taught to use a computer wrong by the bad operating system.
This is a useful lesson for linux newbies in general: when you want to install a program, go to your package manager first, not your web browser.
A list of Canadian companies profiting off of ICE and Trump's violent mass deportation regime.
A list of Canadian companies profiting off of ICE and Trump's violent mass deportation regime
Watch now | Several Canadian companies appear to be pocketing profits as this horrific agenda rolls out.Rachel Gilmore (Bubble Pop with Rachel Gilmore)
like this
China is on a ‘strong currency’ mission to make the yuan a global reserve: Xi
China is on a ‘strong currency’ mission to make the yuan a global reserve: Xi
Xi Jinping says the goal of becoming an international powerhouse is a long-term one and will rest on core foundations.He Huifeng (South China Morning Post)
Ukraine peace deal must put people before land, warns key Zelensky ally
Ukraine peace deal must put people before land, warns key Zelensky ally
Exclusive: Vitaliy Kim, who was handpicked by Zelensky to be governor of the Mykolaiv Oblast region in Ukraine, has signalled a shift towards compromise in an interview with The IndependentDavid Maddox (The Independent)
cheesemoo
in reply to marcie (she/her) • • •daanvd
in reply to cheesemoo • • •AllzeitBereit
in reply to marcie (she/her) • • •