Paul's Security Weekly (Audio)

Deepseek, AMD, and Forgotten Buckets - PSW #860

14 snips
Feb 6, 2025
Discover the challenges of Deepseek and the latest in AI model security. Explore AMD's microcode vulnerabilities and the risks posed by abandoned AWS S3 buckets. Dive into the world of 3D printing with innovative tips and tricks. Learn about password management weaknesses and the hidden dangers of cheap USB-to-Ethernet adapters. The discussion also highlights the evolving landscape of cybersecurity and the importance of data privacy in AI development.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

LLMs for Open-Source

  • Paul Asadoorian uses LLMs freely for open-source code development.
  • He plans to release his code publicly, so LLM data usage is less concerning.
ADVICE

AI Security

  • The UK's approach to AI security offers helpful guidance.
  • Be mindful of data shared with LLMs, especially concerning data sovereignty issues.
ANECDOTE

Supermicro BMC Vulnerability

  • Supermicro BMCs have vulnerabilities allowing firmware signature validation bypasses.
  • Attackers could install custom firmware, granting them control over the server.
Get the Snipd Podcast app to discover more snips from this episode
Get the app