Recent #cybersecurity news in the semiconductor industry

1 day ago

➀ Astute Group partners with SCI Semiconductor to globally distribute the ICENI family of memory-safe microcontrollers (MCUs) based on CHERI technology, ensuring hardware-enforced security;

➁ The ICENI MCUs eliminate memory safety vulnerabilities, addressing critical needs in national infrastructure, defense, automotive, and medical industries;

➂ This collaboration aligns with the UK’s Digital Security by Design initiative, positioning CHERI as a commercial solution for unhackable hardware protections against cyber threats.

semiconductorcybersecuritymicrochip
3 days ago

➀ Secure boot ensures only authenticated firmware runs on IoT devices by verifying cryptographic signatures during startup;

➁ It protects against malware injections and unauthorized code execution in low-end embedded systems with limited user oversight;

➂ The mechanism enhances tamper resistance by validating firmware integrity across bootloader, kernel and critical components.

securityIoTcybersecurity
3 days ago

➀ Cloudflare announced it blocked a record-breaking 11.5 Tbps DDoS attack, primarily sourced from IoT devices and cloud providers, peaking at 5.1 billion packets per second.

➁ This attack surpassed its previous record of 7.3 Tbps in June 2025, marking a tenfold increase in scale compared to 2021's 1.9 Tbps attack.

➂ UDP flood tactics overwhelmed targeted systems by exhausting server resources, highlighting the growing reliance on cloud infrastructure for such attacks.

CloudflarecybersecurityDDoS
about 1 month ago

➀ Prof. Jürgen Czarske's team at TU Dresden secured €1.5M funding through the DFG's Reinhart-Koselleck program for a 5-year project on physics-informed deep learning in fiber-optic security transmission;

➁ The project aims to address AI's explainability challenges and high energy consumption while developing energy-efficient optical neural networks for applications like secure communication and quantum computing;

➂ Innovations focus on combining data-driven AI with physical models to enable real-time light scattering measurements and reduce reliance on power-intensive GPUs.

AIcybersecuritysemiconductor
2 months ago

➀ Activision suspended Call of Duty: WWII servers after hackers exploited unpatched RCE vulnerabilities, gaining unauthorized PC control;

➁ The 2017 game's P2P matchmaking system and outdated anti-cheat tech (pre-Ricochet) amplified security risks;

➂ Hackers triggered Notepad pop-ups, forced shutdowns, and illicit content injections, prompting Microsoft Store removal despite Steam/Game Pass availability.

PC gamingcybersecurity
2 months ago

➀ A 2024 Pew Research survey reveals 48% of U.S. teens believe social media has a mostly negative impact, up from 32% in 2022, with mental health as a key concern;

➁ 55% of parents express extreme concern about teen mental health, while 35% of teens share similar worries for their generation;

➂ Social media is cited as the top threat to mental health by 44% of parents and 22% of teens, with bullying and societal pressures also highlighted in personal accounts.

Privacycybersecurity
2 months ago

➀ Developer Michael Lynch discovered an insecure RMA status portal at goHardDrive, exposing customer names, addresses, and contact details through sequential RMA number guessing;

➁ Despite adding ZIP code and house number verification, the 4.2 million permutation vulnerability remained exploitable via brute-force attacks;

➂ The company closed the portal and offered Lynch a $20 refund instead of industry-standard bug bounty rewards, raising concerns about data security practices.

Privacycybersecurity
2 months ago

➀ Brazilian watchdog Procon-SP challenges Nintendo's EULA clause allowing account bans/device bricking as 'abusive';

➁ Nintendo enforces strict anti-piracy measures, including disabling consoles for using Mig Flash cartridges;

➂ Legal dispute escalates as Switch 2 faces unprecedented demand and supply shortages

NintendoSwitchcybersecurity
2 months ago

➀ The Fraunhofer FHR Wachtberg-Forum highlighted radar technology's critical role in military and civilian security across land, sea, air, and space, with Bundeswehr Space Command emphasizing space domain awareness;

➁ A strategic partnership with Quantum Systems was announced, advancing drone-based surveillance and radar innovation for defense applications;

➂ The event showcased cognitive RF systems, experimental radar technologies, and interdisciplinary collaboration to address evolving global security challenges.

AIHPCcybersecurity
2 months ago

➀ U.S. Department of Justice dismantled 29 North Korean 'laptop farms' across 16 states, uncovering IT workers who fraudulently obtained jobs at over 100 U.S. companies to fund nuclear programs;

➁ Operatives used VPNs, stolen identities, and U.S.-based collaborators to bypass sanctions, with some stealing $900,000 in cryptocurrency;

➂ Google Cloud reports expanded North Korean operations in Europe, while AI tools complicate detection of fraudulent job applicants.

GooglePrivacycybersecurity
2 months ago

① Bitcoin Depot accuses law enforcement of overreach for forcibly opening crypto ATMs to seize cash meant for scam victims, claiming it violates banking laws;

② The company argues funds in ATMs legally belong to them, and improper seizures "create another victim";

③ Lack of crypto transaction understanding leads to destructive enforcement methods, while scammers increasingly exploit such ATMs due to anonymity challenges.

PrivacySoftwarecybersecurity
2 months ago

➀ Epic Games won a lawsuit against a Fortnite player who used DMA devices to cheat in 839 tournaments, resulting in a $175,000 fine and a lifetime ban;

➁ The penalty amount was calculated as 25 times the player's $6,850 winnings, based on $200 per copyright violation across 839 matches;

➂ This follows Epic's prior legal actions against cheating, including forcing another player to issue a public apology and return earnings.

cybersecuritygaming
2 months ago

➀ Universität Bremen collaborates with ANEDO GmbH and SEGNO Industrie Automation to develop a modular edge-computing system combined with AI for real-time condition monitoring of mobile machinery in ports and construction;

➁ The system employs a cloud-based platform and transfer learning to analyze data, predict failures, and reduce reliance on extensive field data, improving cost efficiency;

➂ Enhanced data security measures with encryption and a user-friendly monitoring app aim to prevent unauthorized access and support industrial digitization.

AICloudcybersecurity
2 months ago

➀ A Columbia Journalism Review study reveals generative AI search engines like ChatGPT, Perplexity, and Gemini provided incorrect answers to over 60% of queries, with Grok 3 failing 94% of tests;

➁ Premium AI tools performed worse than free versions, often delivering overly confident yet inaccurate responses;

➂ These tools bypassed source citations, fabricated links, and disrupted traffic to original content providers, challenging digital content ecosystems.

AISoftwarecybersecurity
2 months ago

➀ A critical directory traversal vulnerability (CVE-2025-6218) in WinRAR allows attackers to hijack directory paths and execute malicious code via malicious archives;

➁ Impacted versions (WinRAR 7.11 and earlier) pose high confidentiality risks, scoring 7.8/10 on CVSS;

➂ RARLAB has released WinRAR 7.12 Beta 1 with security patches, urging immediate manual updates for Windows users.

Softwarecybersecurity
2 months ago

❶ The article emphasizes the importance of transparency in AI decision-making, particularly in fields like medical diagnostics and recruitment, where understanding the rationale behind AI outputs is critical for trust and model improvement.

❷ It highlights two main focuses of Explainable AI (XAI): enhancing data/model quality for engineers and addressing ethical requirements to provide user-centric explanations, ensuring responsible AI deployment.

❸ The whitepaper advocates advancing XAI research, standardizing tools for large-scale models, integrating XAI into AI education, and encouraging corporate adoption to foster collaboration between human expertise and machine learning.

AISoftwarecybersecurity
3 months ago

➀ The UK House of Lords Committee will hold a session with space industry leaders to discuss the space economy, domestic launch capabilities, and national security implications;

➁ Expert panels include representatives from techUK, Maersk, Orbex, and independent advisors, addressing topics like orbital launch plans and economic impacts;

➂ The Committee's final report will be submitted to the government in autumn 2025, with proceedings available for public viewing via Parliament TV.

HPCcybersecuritysemiconductor
3 months ago

➀ Microsoft announces a new policy to regularly remove legacy drivers from Windows Update to enhance security and compatibility;

➁ The cleanup targets outdated drivers with newer replacements and allows partners to provide feedback, but older devices may lose support;

➂ Critics express concerns about potential forced upgrades and reduced functionality for legacy hardware.

MicrosoftWindowscybersecurity