• unilogou. Powered by Blogger.

    Showing posts with label cyber. Show all posts
    Showing posts with label cyber. Show all posts

    Tuesday, 2 August 2016

    Yahoo 'Aware' Hacker Is Advertising 200 Million Supposed Accounts on Dark Web

    Posted By: Uni logo - 01:13:00
    An infamous cybercriminal is promoting 200 million of affirmed Yahoo client certifications on the dim web, and the organization has said it is "mindful" of the programmer's cases, yet has not affirmed nor prevented the authenticity from securing the information.

    On Monday, the programmer known as Peace, who has already sold dumps of Myspace and LinkedIn, recorded gathered qualifications of Yahoo clients on The Real Deal commercial center. Peace told Motherboard that he has been exchanging the information secretly for quite a while, however just now chose to offer it transparently.

    "We know about a case," a Yahoo representative told Motherboard in an email, before the information was made open. The organization did not deny that the client points of interest were Yahoo clients, regardless of being inquired as to whether it related to the organization's own records.

    "We are focused on ensuring the security of our clients' data and we consider any such claim important. Our security group is attempting to decide the truths. Yippee strives to keep our clients safe, and we generally urge our clients to make solid passwords, or surrender passwords by and large by utilizing Yahoo Account Key, and utilize distinctive passwords for various stages."


    As indicated by an example of the information, it contains usernames, hashed passwords (made with md5 calculation), dates of birth, and sometimes move down email addresses. The information is being sold for 3 bitcoins, or around $1,860, and apparently contains 200 million records from "2012 in all probability," as indicated by Peace. Until Yahoo affirms a rupture, notwithstanding, or the full dataset is discharged for check, it is conceivable that the information is ordered and repackaged from other significant information spills.

    Peace told Motherboard, "well fuck them they dont need to affirm well better for me they dont do secret word reset." Many organizations issue watchword resets to accounts influenced by information breaks, or even preemptively for a situation like this in which the provenance of spilled information is not so much clear.

    Motherboard got a little example of the information—just 5000 records—before it was freely recorded, and found that a large portion of the two dozen Yahoo usernames tried by Motherboard corresponded to real records on the administration. (This was finished by heading off to the login segment of Yahoo, entering the email address, and clicking next; when the email location wasn't remembered, it was impractical to proceed.)

    Be that as it may, when Motherboard endeavored to contact more than 100 of the locations in the specimen set, numerous returned as undeliverable. "This record has been debilitated or ceased," read one autoresponse to a considerable lot of the messages that neglected to convey legitimately, while others read "This client doesn't have a yahoo.com account."

    Wednesday, 20 April 2016

    AI detects cyber attacks with accuracy after attending MIT

    Posted By: Uni logo - 09:18:00


    Researchers with MIT’s Computer Science and Artificial Intelligence Laboratory (CSAIL) have announced a breakthrough in cyber threat detection that promises to dramatically lower the amount of time human analysts spend sorting through information in search of evidence of cyber attacks.
    IT analysts spend countless hours scouring through mountains of data in order to find evidence of compromised systems. Often, the search for anomalies in data is so extensive, that overwhelmed human teams are forced to overlook potentially critical information for lack of time.
    That’s where MIT’s researchers believe they can help. In a world where most companies are under constant threat of cyber attack, having a system that never sleeps or takes a coffee break is a big help.
    AI Squared (AI2), an artificial intelligence project created by the team at CSAIL, is able to detect cyber attacks with an incredible 85% accuracy.1
    This success rate didn’t come overnight. In fact, the team at CSAIL has been teaching AI2 to better identify and filter out false positives over time which are a big cause of wasted man-hours.

    It isn’t enough to input a set of things to look out for and have it feed you data as it comes across them.
    This would require a lot of time on the part of human analysts sorting between false positives and actual signs of attack.
    Instead, AI2 continuously generates new models, which are refined in a matter of hours and benefit from occasional human input.
    This human input includes letting the AI know when it has delivered a false positive, so it can not only model what a true cyber attack looks like, but also to identify when an anomaly isn’t caused by one.
    So, over time, AI2 would send less and less false positives to human analysts to review, leaving them more time to evaluate and resolve actual threats.
    Over time, the new AI platform has been able to improve the filtering out of false positives five-fold, with a three-fold improvement in detection capabilities.
    In an age where stories about AI going bonkers are commonplace, it’s refreshing to see that some projects are doing a lot of good.

    Copyright © 2016 Uni logo™ is a registered trademark.

    Designed by Unilogou. Hosted on Blogger Platform.