EILMELDUNGEN LIVE
🕵️ Sicherheitslücken[UPDATE] [hoch] VMware Tanzu Spring Security: Mehrere Schwachstellen(26.08.2026 um 11:07 Uhr)
🕵️ Sicherheitslücken[NEU] [kritisch] TYPO3 Extensions: Mehrere Schwachstellen(26.08.2026 um 12:26 Uhr)
🐧 Linux TippsVMs won't contain cyber-capable agents(26.08.2026 um 13:00 Uhr)
🕵️ Sicherheitslücken[UPDATE] [hoch] VMware Tanzu Spring Security: Mehrere Schwachstellen(26.08.2026 um 11:07 Uhr)
🕵️ Sicherheitslücken[NEU] [kritisch] TYPO3 Extensions: Mehrere Schwachstellen(26.08.2026 um 12:26 Uhr)
🐧 Linux TippsVMs won't contain cyber-capable agents(26.08.2026 um 13:00 Uhr)

10 🕛 kürzlich 2 Min Lesezeit 14 Leser online ️ CVE-RADAR
0

Who’s afraid of an open-weight model? GLM, context bombing and post-Black Hat attacks

↗ Quelle (YouTube · IBM Technology)
🗣️ Stimme:
📺
YouTube · IBM Technology
295 YouTube-Aufrufe
Explore the podcast → https://ibm.biz/~lbxDSQuvq

GLM-5.3 is, by some measures, better than GPT Sol and Anthropic’s Mythos at vulnerability discovery and validation. On episode 48 of Security Intelligence, Erblind Morina, Kimmie Farrington and Patrick Fussell join host Matt Kosinski to debate whether this is really cool or really scary, or maybe a little of both.

Then: Tracebit researchers have developed a way to use prompt injections as a defensive measure. Called “context bombing,” the technique plants malicious prompts alongside the very assets that attacking AI agents are likely to target.

Finally, Huntress reports on a rash of social engineering attacks on Black Hat conference attendees. They’re not terribly sophisticated, but any concentrated offensive against the cybersecurity community is worth paying attention to. You never know who might be on the other side of those phishing emails.

Find out all this—and more—on Security Intelligence.

00:00 - Intro
1:14 - GLM-5.3
11:46 - Context bombing
19:12 - Black Hat conference attacks

"The opinions expressed in this podcast are solely those of the participants and do not necessarily reflect the views of IBM or any other organization or entity. AI tools may be used to transcribe this episode and support selected stages of the production process. All AI-assisted content is reviewed by the production team before publication."


AI news moves fast. Sign up for a monthly newsletter for AI updates from IBM → https://ibm.biz/~AIVsCRIKo

AI was used in the creation of the transcript and metadata for this video.
Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf youtube.com.
↗ Original-Artikel auf youtube.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
159 Fachleser & IT-Security Experten haben diesen Report heute geteilt
Teilen mit Netzwerk & Team:

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 43%
🟡 In Evaluierung 22%
🟢 Keine Auswirkung 10%
Spannende Innovation 25%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
11 Quellen
[UPDATE] [kritisch] GeoServer: Schwachstelle ermöglicht SQL-Injection und potenziell Codeausführung
1 Quelle
Experts Weigh in on the Medusa Ransomware Gang
1 Quelle
AI Models are Finding Vulnerabilities Faster