Wednesday, April 3, 2024

George Carlin’s estate settles lawsuit over podcast’s artificial intelligence comedy special

There will be no follow-up to the artificial intelligence-generated George Carlin comedy special released by podcaster Dudesy. In January, Carlin’s estate filed a lawsuit against the podcast and its creators, Will Sasso and Chad Kultgen, alleging they violated the performers’ publicity rights and violated copyrights. Now, the parties have reached a settlement that includes permanently removing the comedy special from Dudesy’s archives. Sasso and Kurtgen also agreed not to repost the content on any platform or use Carlin’s image, voice or likeness on any platform without the estate’s approval. New York Times.

The artificial intelligence algorithm Dudesi used in the special was trained on thousands of hours of routine training over Carlin’s decades-long career. It provided enough fodder for an hour-long special, but it left a rather poor impression of the late comedian, with basic laughs and few of Carlin’s hallmarks of humor. Carlin’s daughter Kelly called it “a poorly executed replica cobbled together by an unscrupulous individual” in a statement.

Josh Schiller, who is representing Carlin’s estate in court, told The Times: “[t]The world has begun to realize the power and potential dangers inherent in artificial intelligence tools that can mimic voices, generate fake photos and alter videos. He added that this was “not a problem that is going to go away on its own” and that it “must be” that the courts take swift and forceful action. The lawyer said that companies that manufacture artificial intelligence software “must also bear a certain degree of responsibility.”

The lawsuit is just one of many filed by creatives against artificial intelligence companies and people who use the technology by training algorithms on someone’s job. Several nonfiction writers and novelists, including George R.R. Martin, John Grisham, and Jodi Picoult, sued OpenAI for using them works to train its large language model. New York Times Several other news organizations have also sued the company for using their articles for training purposes and allegedly copying their content verbatim without attribution.

Source link



from Tech Empire Solutions https://techempiresolutions.com/george-carlins-estate-settles-lawsuit-over-podcasts-artificial-intelligence-comedy-special/
via https://techempiresolutions.com/

Critical security vulnerability discovered in popular LayerSlider WordPress plugin

ReportApril 3, 2024Editorial DepartmentCyber ​​Security/Vulnerabilities

WordPress Security Vulnerabilities

A critical security vulnerability affecting the WordPress LayerSlider plugin could be abused to extract sensitive information such as password hashes from the database.

This flaw is designated CVE-2024-2879 and has a CVSS score of 9.8 out of 10.0. It is described as a SQL injection case affecting versions 7.9.11 through 7.10.0.

The issue was resolved in version 7.10.1, released on March 27, 2024, following responsible disclosure on March 25. “This update includes important security fixes,” the maintainers of LayerSlider said in their release notes.

LayerSlider is a visual web content editor, graphic design software, and digital visual effects that allows users to create animations and rich content for their websites. According to its own website, the plugin is used by “millions of users around the world.”

Internet security

Wordfence said the flaw found in the tool stems from insufficient escaping of user-supplied parameters and the lack of wpdb::prepare(), allowing an unauthenticated attacker to attach additional SQL queries and collect sensitive information.

The development follows the discovery of an unauthenticated stored cross-site scripting (XSS) flaw in the WP-Members membership plugin (CVE-2024-1852, CVSS score: 7.2) that could facilitate the execution of arbitrary JavaScript Program code. Resolved in version 3.4.9.3.

WordPress Security Vulnerabilities

The WordPress security company said that due to insufficient input sanitization and output escaping, the vulnerability “allows an unauthenticated attacker to inject arbitrary web script into the page, which will be deleted whenever the user visits the injected page (i.e., edit the user page). The script will be executed.”

It added that if the code is executed in the context of an administrator’s browser session, it could be used to create malicious user accounts, redirect site visitors to other malicious sites, and conduct other attacks.

Over the past few weeks, security vulnerabilities have been revealed in other WordPress plugins, such as Tutor LMS (CVE-2024-1751, CVSS score: 8.8) and Contact Form Entry (CVE-2024-2030, CVSS score: 6.4) respectively. Used to leak information and inject arbitrary web scripts.

Did you find this article interesting?follow us Twitter and LinkedIn to read more exclusive content from us.



Source link



from Tech Empire Solutions https://techempiresolutions.com/critical-security-vulnerability-discovered-in-popular-layerslider-wordpress-plugin/
via https://techempiresolutions.com/

Tuesday, April 2, 2024

Indigo Chief Business Analyst Sales Vacancy

Indigo Chief Business Analyst Sales Vacancy

Overview:

Indigo is recruiting an experienced Principal Sales Business Analyst at its Gurgaon office. You will analyze an organization and design its processes and systems, evaluating business models and their integration with technology. Assess current state, identify customer needs, and define future state and/or business solutions. Research, collect and synthesize information.

Full details for this content Work As stated below:

Roles and Responsibilities:

The ideal candidate should be able to:

  • Develop and maintain knowledge of current and emerging technology developments/trends and assess impact on existing business needs.
  • Create documentation including requirements, user stories, acceptance criteria, feature descriptions/concept descriptions, user guides, processes, wireframes, and newsletters.
  • Assist the Project Manager in leading, directing and reviewing all activities related to delivering technical products.
  • Ability to collaborate with subject matter experts (SMEs), technical teams, and project managers in all phases of the software development life cycle to develop solutions.
  • Responsible for conducting design thinking sessions to gain a deep understanding of end-user needs, managing the solution backlog for the solution, working with the solution owner to prioritize requirements, defining and managing the scope and sprints of the project.
  • Provide operational support to enterprise users. Work with various teams to resolve issues as they arise.
  • Possess a strong foundation of functional knowledge and are subject matter experts in various domains and technology products.
  • Attend stakeholder meetings, consult with them about their needs, document and analyze those needs, and help innovate solutions.

Required skills:

  • Business needs analysis
  • data analysis
  • Write business requirements/user stories/acceptance criteria/concept notes/wireframes/newsletters
  • Use clear diagrams to document processes
  • Create and maintain Redline/JIRA tickets.

It is best to have skills:

  • SQL/DB work experience
  • Previous experience in aviation or travel industry sales.
  • Develop UAT test scripts
  • Execute UAT testing and provide artifacts when required.
  • Minimum 3 years of experience required.

Disclaimer: The above recruitment information is for reference only. The above recruitment information is taken from the official website of the organization. We do not provide any recruitment guarantees. Recruitment should be conducted in accordance with the formal recruitment process of the company or organization posting the position. We do not charge any fees for providing this job information. Neither the author, Studycafe nor its affiliates accept any responsibility for any loss or damage arising from any information contained in this article or from any action taken in reliance on the information contained herein.

Sign up for a StudyCafe membership.For more details about membership, click the Become a Member button

Become a member

If you have any questions about membership, you can email us at: [email protected]

Join Studycafe’s WhatsApp group or Telegram channel to know the latest updates on Government Jobs, Sarkari Naukri, Private Jobs, Income Tax, GST, Company Laws, Judgments and CA, CS, ICWA and more! “

Source link



from Tech Empire Solutions https://techempiresolutions.com/indigo-chief-business-analyst-sales-vacancy/
via https://techempiresolutions.com/

The US and UK are teaming up to test the safety of artificial intelligence models

OpenAI, Google, Anthropic, and other companies developing generative AI are constantly improving their technology and releasing better and better large-scale language models. The UK and US governments have signed a memorandum of understanding to develop a common approach to independent assessment of the safety of these models. The UK’s AI Security Institute and the US’s AI Security Institute (announced by Vice President Kamala Harris but not yet operational) will jointly develop a suite of tests to assess risks and ensure “the security of state-of-the-art AI models” “. “

They plan to share technical knowledge, information and even personnel as part of the partnership, and one of their initial goals appears to be joint testing on publicly accessible models.British Science Minister Michelle Donelan, who signed the agreement, said financial times They “really have to move quickly” as they expect a new generation of AI models to be available next year. They believe these models could be a “complete game changer,” but they still don’t know what they can do.

according to era, While both the US and UK intend to work with other countries in the future, this partnership is the world’s first bilateral arrangement on AI security. “Artificial intelligence is the defining technology of our generation,” said U.S. Commerce Secretary Gina Raimondo. “This partnership will accelerate the work of our two institutes to address the full range of risks, whether they are to our country or not.” safety or our wider society.” “Our partnership makes it clear that we are not escaping these concerns – we are working hard to address them. As a result of our collaboration, our institutes will gain a better understanding of artificial intelligence systems , conduct a more robust assessment and issue stricter guidance. ”

While this particular partnership focuses on testing and evaluation, governments around the world are also developing regulations to control AI tools. Back in March, the White House signed an executive order aimed at ensuring that federal agencies only use artificial intelligence tools that “do not jeopardize the rights and safety of the American people.” A few weeks ago, the European Parliament approved sweeping legislation regulating artificial intelligence. It would ban “artificial intelligence that manipulates human behavior or exploits human vulnerabilities”, “biometric classification systems based on sensitive characteristics”, and “untargeted scraping” of faces from CCTV footage and the Internet to create facial recognition databases . Additionally, deepfakes and other AI-generated images, videos and audio will need to be clearly labeled according to its rules.

Source link



from Tech Empire Solutions https://techempiresolutions.com/the-us-and-uk-are-teaming-up-to-test-the-safety-of-artificial-intelligence-models/
via https://techempiresolutions.com/

Monday, April 1, 2024

Microsoft spins off Teams and Office 365 for global customers

In October, Microsoft separated Teams from its Microsoft 365 and Office 365 suites in the European Union and Switzerland to avoid potential fines. Now the company is expanding this offering, selling Microsoft Teams globally separately from Microsoft 365 and Office 365, Reuters Report. “Doing so also addresses feedback from the European Commission and provides multinational companies with greater flexibility when they want to standardize sourcing across regions,” a Microsoft spokesperson told the publication.

Current users now have the option to keep the current offer or switch to one of the individual products, which is especially useful for anyone who uses the Office suite but prefers other communications services like Zoom or Google Meet. Business customers who are new to Microsoft products can purchase Teams separately for $5.25, while Office sans Teams costs $7.75 to $54.75.

Microsoft’s journey to spin off Teams and Office began in 2020 when Slack filed an antitrust complaint with the EU. The company, now owned by Salesforce, claims that incorporating Teams into the Office suite is illegal and that Microsoft is preventing customers from removing the chat platform. The European Commission has since been investigating the matter, and Microsoft announced in April 2023 that it would separate Teams from Microsoft 35 and Office 365. Although the move took effect last fall, Microsoft still faces the risk of a hefty EU fine if it is found to have violated antitrust laws.

Source link



from Tech Empire Solutions https://techempiresolutions.com/microsoft-spins-off-teams-and-office-365-for-global-customers/
via https://techempiresolutions.com/

The Best iPhone Accessories of 2024

Peak Design’s iPhone Tripod is a sturdy, well-designed aluminum frame that folds into a credit card-sized shape. You pay a premium for build design and quality, and there’s even a tiny hex wrench built into the tripod leg to tighten it when needed.

The sturdy micro ball head lets you adjust the angle of your iPhone when it’s in tripod mode. Even better, it magnetically attaches securely to your phone, both vertically and horizontally. This makes it a great stand for your phone, even if you don’t plan on taking videos or photos.

You also don’t need to spend money on a Peak Design case to make sure it works, although it does feel like a stronger connection if you do. Any MagSafe iPhone can be locked to the peripheral device and securely attached to this mobile tripod whether in use or folded up.

There are also plenty of more affordable MagSafe phone holders, such as Moft’s snap-on holder and wallet (which can support your iPhone while holding a few credit cards), Anker’s MagGo phone grip, and the now-ubiquitous PopSockets. While MagSafe accessories like these are convenient, they’re not as sturdy as something that securely snaps onto your smartphone or smartphone case. Every MagSafe holder, wallet, charger, and other accessory I’ve tried eventually falls off if I push hard enough. However, Peak Design’s tripod has no sticky residue and does not require the use of a specific protective case. —Matt Smith, UK Bureau Chief

Source link



from Tech Empire Solutions https://techempiresolutions.com/the-best-iphone-accessories-of-2024/
via https://techempiresolutions.com/

Vultur Android banking Trojan returns with upgraded remote control capabilities

Android Banking Trojan

An Android banking Trojan called Vultur has resurfaced with a range of new features and improved anti-analysis and detection avoidance techniques, allowing its operators to remotely interact with mobile devices and collect sensitive data.

“Vultur has also begun to disguise more malicious activity by encrypting its C2 communications, using multiple encrypted payloads that decrypt on the fly, and using the guise of legitimate applications to carry out its malicious actions,” NCC Group researcher Joshua Kamp said. A report released this week.

Vultur was first revealed in early 2021, and the malware is capable of leveraging Android’s Accessibility Services API to perform its malicious operations.

The malware was observed to be distributed via Trojan-laden applications in the Google Play Store, masquerading as authenticator and productivity applications and tricking unsuspecting users into installing them. These dropper applications are provided as part of a Dropper as a Service (DaaS) operation called Brunhilda.

Other attack chains observed by NCC Group include the use of a combination of text messages and phone calls to deliver implants (a technique known as Telephone Oriented Attack Delivery (TOAD)), ultimately delivering updated versions of the malware.

Internet security

“The first text message directed the victim to make a phone call,” Kemp said.When the victim calls the number, the scammer provides the victim with a second text message that contains a link to the implant: Modified version [legitimate] McAfee Security App. “

The original text message was designed to induce a false sense of urgency by instructing the recipient to call a number to authorize a non-existent transaction involving a large amount of money.

Once installed, the malicious implant executes three related payloads (two APKs and a DEX file), which register the bot with the C2 server, obtain ancillary services for remote access via AlphaVNC and ngrok, and Execute commands obtained from the C2 server.

One of Vultur’s standout features is its ability to remotely interact with infected devices, including clicking, scrolling, and swiping through Android’s accessibility services, as well as downloading, uploading, deleting, installing, and finding files.

Additionally, the malware can prevent victims from interacting with a predefined list of applications, display custom notifications in the status bar, and even disable Keyguard to bypass lock screen security.

Android Banking Trojan

“Recent developments in Vultur demonstrate a shift in focus toward maximizing remote control of compromised devices,” Camp said.

“With the ability to issue commands for scrolling, swipe gestures, clicks, volume controls, preventing apps from running and even merging file manager functions, it’s clear that the main goal is to gain complete control over the infected device.”

This development comes as Team Cymru revealed the Octo (also known as Coper) Android banking Trojan’s transformation into a malware-as-a-service operation, offering its services to other threat actors for information theft.

“The malware provides a variety of advanced features, including keylogging, SMS and push notification interception, and device screen control,” the company said.

Internet security

“It uses various injections to steal sensitive information such as passwords and login credentials by displaying fake screens or overlays. Additionally, it leverages VNC (Virtual Network Computing) to remotely access the device, thus enhancing its monitoring capabilities.”

The Octo campaign is estimated to have compromised 45,000 devices, primarily in Portugal, Spain, Turkey, and the United States. Other victims were located in France, the Netherlands, Canada, India and Japan.

The findings also emerged of a new campaign targeting Android users in India, which distributes malicious APK packages posing as online booking, billing and courier services through malware-as-a-service (MaaS) offerings.

Symantec, a unit of Broadcom, said in an announcement that the malware “aims to steal banking information, text messages and other confidential information from the victim’s device.”

Did you find this article interesting?follow us Twitter and LinkedIn to read more exclusive content from us.



Source link



from Tech Empire Solutions https://techempiresolutions.com/vultur-android-banking-trojan-returns-with-upgraded-remote-control-capabilities/
via https://techempiresolutions.com/

Chuzo Login

How to Login to Chuzo Are you having trouble logging into Chuzo? Let’s explore this guide to trouble shoot your problems. Make Sure...