Thursday, December 26, 2024

Dive into Gemini with Practical Examples: Introducing the Google Gemini Cookbook

Google's Gemini AI model has been making waves, and now, Google is making it easier than ever to experiment and integrate with its newly released Gemini Cookbook. This isn't your grandma's cookbook; it's a curated collection of code examples and tutorials designed to get you up and running with Gemini quickly.

What's the Gemini Cookbook All About?

The Gemini Cookbook, hosted on GitHub (link to the repository), is a repository of practical examples that showcase Gemini's capabilities through real-world use cases. It's your one-stop shop for finding ready-to-use code snippets and detailed explanations of how to leverage Gemini.

Think of it as a practical guide to the model. Whether you're a seasoned AI developer or just beginning your journey, the cookbook's structure makes it easy to dive in.

What Can You Expect to Find?

The cookbook offers a variety of examples covering different aspects of working with Gemini, including:

Basic Setup and Authentication: Get started with setting up the Gemini API and authentication process without a hassle.

Text Generation: Learn how to generate creative text formats, like poems, code, scripts, musical pieces, email, letters, etc. with fine control.

Multimodal Applications: Explore how Gemini handles image and video input with examples of prompt engineering for different modalities.

Function Calling: See practical examples of how to use Gemini's function-calling capability to interface with tools and APIs.

Advanced Use Cases: Discover more complex scenarios, pushing the boundaries of what you can do with the model.

Why This Cookbook Matters

Practical and Hands-on: The focus on code examples and practical use cases means you can immediately start applying what you learn.

Variety of Scenarios: Covers different domains and applications, ensuring you'll find relevant examples for your needs.

Learning Through Examples: The best way to understand a technology is by using it. The cookbook provides clear, runnable code that accelerates your learning.

Open-Source Contribution: The cookbook is open to the community and will likely grow with further
contributions.

Staying Up-to-date: As the Gemini models continue to evolve, so will this cookbook, making it an invaluable resource to keep your work current.

Getting Started

To dive in, simply head over to the Google Gemini Cookbook GitHub repository. You'll find clearly organized directories by use case and programming language. Most examples are Python-based and the documentation includes specific instructions for running the code examples.

Who is this for?

Developers: Jumpstart development projects leveraging Gemini's AI power.

Researchers: Experiment with the model and explore advanced scenarios.

Students: Learn Gemini through hands-on practice and real-world examples.

Anyone curious about Gemini: The cookbook provides a low barrier of entry to discover how Gemini could be used.

Final Thoughts

The Gemini Cookbook is a game-changer for anyone wanting to work with Google's cutting-edge AI model. It significantly lowers the learning curve, provides ready-to-use code, and helps you get the most out of Gemini's capabilities.

We encourage you to explore the cookbook, try out the examples, and share your creations with the community. Happy coding!

Contribute to the cookbook on GitHub and help expand this great resource.



Saturday, December 14, 2024

Task Force Lima: Charting a New Course for AI-Driven Defense Innovation

In today’s rapidly evolving technological landscape, the U.S. Department of Defense (DoD) is taking bold steps to ensure it remains at the cutting edge of innovation. One noteworthy development is the introduction of Task Force Lima, an initiative highlighted in a recent executive summary from the DoD’s Artificial Intelligence ecosystem. While the full details are laid out in the December 2024 Executive Summary (TAB A), here’s a closer look at what the document’s key themes suggest and why this matters for the future of national security.

The Context: AI at the Forefront of Defense

Artificial intelligence has long since moved from speculative technology to a strategic necessity. From enhancing supply chain logistics to enabling more nuanced threat detection, AI tools and frameworks are poised to fundamentally change how the U.S. military anticipates, plans, and operates. Task Force Lima—judging from the DoD’s evolving priorities—appears to be part of a broader effort to harness these advances, translating them into tangible improvements in readiness, resilience, and responsiveness.

What Is Task Force Lima?

Though the executive summary provides the finer details, Task Force Lima can be understood as a dedicated team tasked with integrating cutting-edge AI solutions into defense workflows. This likely includes:

  • Capability Assessment: Reviewing current AI-enabled systems and identifying gaps in capability.
  • Integration Roadmap: Outlining a step-by-step guide for how new AI platforms will interface with existing defense technology ecosystems.
  • Ethical and Responsible Adoption: Ensuring that all AI initiatives comply with responsible AI guidelines, emphasizing transparency, accountability, and alignment with U.S. values.

Key Strategic Objectives

1. Operational Efficiency:
One of the core drivers behind Task Force Lima is the push to streamline operations. AI-powered predictive maintenance tools, for instance, can help reduce downtime in key military platforms. Enhanced logistics algorithms could ensure materials arrive where they’re needed, when they’re needed, mitigating supply chain vulnerabilities.

2. Decision-Making Advantage:
In an era where information flows at lightning speed, making sense of vast data sets is critical. AI tools promise to distill complex intelligence inputs into actionable insights. By leveraging machine learning models, Task Force Lima can help commanders and defense analysts gain a decision-making edge—identifying patterns, predicting adversarial actions, and recognizing opportunities faster than ever before.

3. Interoperability and Scalability:
As new AI solutions come online, ensuring they work harmoniously across different units, platforms, and even with allies’ systems is essential. The executive summary likely emphasizes the importance of developing standardized frameworks and interfaces, paving the way for seamless integration now and scalable growth in the future.

4. Workforce Development:
No AI initiative is complete without addressing the human element. Ensuring the DoD workforce is adept at implementing and overseeing AI systems remains a priority. Training programs, career development opportunities, and cross-functional collaboration can help build an AI-savvy force capable of wielding these tools effectively and ethically.

Balancing Innovation with Responsibility

The DoD and its AI Task Forces must navigate a delicate balance: embracing innovation while safeguarding national values and ethical principles. Expect Task Force Lima’s strategic outline to emphasize responsible AI use, from adhering to privacy standards and combatting algorithmic biases to maintaining compliance with existing laws and international norms.

Looking Ahead

As we move into 2025 and beyond, Task Force Lima’s efforts will likely set the tone for how the DoD incorporates AI throughout its enterprise. The December 2024 Executive Summary (TAB A) suggests a comprehensive approach—one that aligns technological ingenuity with mission objectives, ethical considerations, and cross-organizational collaboration.

This initiative points to a future where the American defense apparatus can more rapidly adapt to emerging challenges, protect critical infrastructure, and project stability in an uncertain world. By laying out a strategic vision for AI integration, Task Force Lima could become a linchpin in shaping the next generation of defense capabilities.


Note: This blog post is based on the general context of a DoD AI initiative known as “Task Force Lima.” For direct quotations, detailed timelines, or further specifics, please refer to the actual Executive Summary linked above.

Friday, December 06, 2024

New AI model advances the prediction of weather uncertainties and risks, delivering faster, more accurate forecasts up to 15 days ahead

Weather impacts all of us — shaping our decisions, our safety, and our way of life. As climate change drives more extreme weather events, accurate and trustworthy forecasts are more essential than ever. Yet, weather cannot be predicted perfectly, and forecasts are especially uncertain beyond a few days.

Because a perfect weather forecast is not possible, scientists and weather agencies use probabilistic ensemble forecasts, where the model predicts a range of likely weather scenarios. Such ensemble forecasts are more useful than relying on a single forecast, as they provide decision makers with a fuller picture of possible weather conditions in the coming days and weeks and how likely each scenario is.

Today, in a paper published in Nature, we present GenCast, our new high resolution (0.25°) AI ensemble model. GenCast provides better forecasts of both day-to-day weather and extreme events than the top operational system, the European Centre for Medium-Range Weather Forecasts’ (ECMWF) ENS, up to 15 days in advance. We’ll be releasing our model’s code, weights, and forecasts, to support the wider weather forecasting community.

 GenCast predicts weather and the risks of extreme conditions with state-of-the-art accuracy

Wednesday, November 27, 2024

Comprehensive Framework for Ethical AI Use

 

US Launches Comprehensive Framework for Ethical AI Use

AI Technologies Mapped for Safer Corporate Integration
Artificial Intelligence (AI) is swiftly advancing, and it’s expected to soon be pivotal in the operations of nearly all companies. With this advancement comes the need for a standard method of risk management to mitigate the potential dangers of AI and encourage its proper use. Addressing this need, the National Institute of Standards and Technology (NIST) in the United States introduced the “AI Risk Management Framework” (AI RMF) in January 2023.

U.S. Government Supports Responsible AI Application
The U.S. Government has been active in ensuring that corporations adopt AI responsibly. In 2022, guidelines titled “Blueprint for an AI Bill of Rights” were published, setting the stage for ethical AI usage. By October 2023, the Biden administration had furthered this initiative with a presidential directive on AI safety.

The Significance of NIST’s AI RMF
Developed as part of a government drive for responsible AI usage—inclusive of fairness, transparency, and security—AI RMF provides guidance throughout the an AI’s lifecycle. It consists of four ‘Cores’: Govern, Map, Measure, and Manage, each comprising numerous categories and subcategories for thorough governance.

A crucial subcategory under ‘Govern’, identified as Govern 1.6, requires the development of a use case inventory. The act of cataloging AI utilization scenarios serves as an initial step in comprehensively assessing AI applications and their associated risks, hence ensuring effective risk management and adherence to regulations. Crafting these inventories is advised by other protocols such as the European Union’s AI Act and the Office of Management and Budget (OMB) in the U.S.

AI RMF’s Practicality and Future Implications
Although not set as a formal standard or a mandatory requirement, AI RMF is hailed as an optimal starting point for AI governance. Offering globally applicable strategies for wide-ranging use cases—from resume screening and credit risk prediction to fraud detection and unmanned vehicles—AI RMF is considered a practical tool by Evi Fuelle, director at Credo AI. Through public commentary and stakeholder involvement, the framework has become enriched as a corporate guide, with the potential to evolve into an industry-standard directive, especially among businesses interacting with the U.S. federal government.

Important Questions and Answers

1. What is the purpose of the AI Risk Management Framework?
The AI RMF is designed to help organizations manage risks associated with the deployment of AI systems. It provides guidance on maintaining ethical standards such as fairness, transparency, and security throughout the AI lifecycle.

2. Is the AI RMF mandatory for organizations?
No, the framework is not a formal standard or a mandatory requirement but is recommended as a starting point for AI governance.

3. How does the AI RMF align with other international regulations?
The AI RMF is advised by other protocols such as the European Union’s AI Act and the Office of Management and Budget (OMB) in the U.S., which suggests a degree of international and cross-institution alignment on AI governance practices.

Key Challenges and Controversies

– Adoption and Compliance: Encouraging widespread adoption of voluntary frameworks can be challenging, especially for smaller organizations with limited resources.

– Balance of Innovation and Regulation: Striking the right balance between fostering AI innovation and ensuring ethical use can be difficult. Over-regulation may hinder technological advancement, while under-regulation could lead to unethical AI applications.

– Data Privacy: AI often relies on massive data sets, which may include sensitive information. Protecting this data while using AI is both a technical and ethical challenge.

– Job Displacement: One of the most significant societal concerns is that AI could automate jobs, leading to displacement of workers and wider economic implications.

Advantages and Disadvantages

Advantages:
– Enhanced Risk Management: The AI RMF can help organizations identify and mitigate potential risks, leading to safer AI deployments.
– Consumer Trust: Responsible AI usage as outlined by the framework can help build public and consumer trust.

– Regulatory Alignment: The AI RMF complements existing and forthcoming regulations, assisting organizations in maintaining compliance.

Disadvantages:
– Resource Requirements: Implementing the framework requires time, expertise, and potentially financial resources that some organizations may find challenging to allocate.
– Risk of Stifled Innovation: If the framework becomes too prescriptive or onerous, it could potentially stifle innovation by creating an overly complex regulatory environment.

Related Links:
For more information on the responsible use of AI, you may visit the National Institute of Standards and Technology’s official website: NIST. Additionally, information about global AI governance initiatives may be found at the European Union’s main website: European Union.

It is important to note that as AI continues to evolve, frameworks and regulations around its usage will likely develop alongside it, influencing future trends in AI governance and ethics.

Foundations of Automation and Intelligence

 

Today I am going to talk a little about what is happening and what is about to happen. There is a lot of talk about AI and AGI, neither of which are actually fully formed yet. We are seeing the results of work done on Generative Pre-Trained Transformers and Large Language Models. They are closely mimicking the way the human mind uses some of it's memory by doing language prediction and reflection. There is more to the process humans use, than just memory and conversational text recall. 

ChatGPT and Bard are not models but Human Machine Interfaces. 

The models behind it are GPT-3.5, or GPT-4, for ChatGPT and PaLM/PaLM 2 for Bard.

Google is the world leader in Machine and Deep Learning. They have lead the way on the processes of Hardware TPU, Software TensorFlow, large language models PaLM 2, PaLM API, MakerSuite, Bard, Generative AI Studio amd Vertex AI, Gen App Builder, Phenaki, SEANet, Google DeepMind Gemini, .and much more. Google is behind the research on Transformers architectures. 

Transformer: A Novel Neural Network Architecture for Language Understanding

In “Attention Is All You Need” 2017, we introduce the Transformer, a novel neural network architecture based on a self-attention mechanism that we believe to be particularly well suited for language understanding.
https://ai.googleblog.com/2017/08/transformer-novel-neural-network.html

Ref: https://arxiv.org/abs/1706.03762 Attention Is All You Need
Ashish Vaswani, Noam Shazeer, Niki Parmar, Jakob Uszkoreit, Llion Jones, Aidan N. Gomez, Lukasz Kaiser, Illia Polosukhin()

PaLM 2 is more powerful than GPT-4 but it has been restrained to avoid problems with justice.
https://github.com/Mooler0410/LLMsPracticalGuide

Monday, June 17, 2024

Welcome to the NIST Trustworthy & Responsible Artificial Intelligence Resource Center (AIRC).


Welcome to the NIST Trustworthy & Responsible Artificial Intelligence Resource Center (AIRC).

The AIRC supports all AI actors in the development and deployment of trustworthy and responsible AI technologies. AIRC supports and operationalizes the NIST AI Risk Management Framework (AI RMF 1.0) and accompanying Playbook and will grow with enhancements to enable an interactive, role-based experience providing access to a wide-range of relevant AI resources.


The Department of Veterans Affairs Establishes a Trustworthy AI Framework

 

The National Institute of Standards and Technology (NIST) AI Risk Management Framework (AI RMF) provides AI organizations with a guiding structure to operate within, and outcomes to aspire towards, all connected to their specific contexts, use cases, and skillsets. The rights-affirming framework operationalizes trustworthy AI within a culture of responsible AI practice and use.  https://airc.nist.gov/AI_RMF_Knowledge_Base


NIST AI 600-1: AI RMF Generative AI Profile

This document can help organizations identify unique risks posed by generative AI and proposes actions for generative AI risk management that best aligns with their goals and priorities.


NIST AI 100-5: A Plan for Global Engagement on AI Standards

A Plan for Global Engagement on AI Standards ( NIST AI 100-5 ) is designed to drive the worldwide development and implementation of AI-related consensus standards, cooperation and coordination, and information sharing. 


NIST AI 100-4: Reducing Risks Posed by Synthetic Content

This publication informs, and is complementary to, a separate report on understanding the provenance and detection of synthetic content that AI EO Section 4.5(a) tasks NIST with providing to the White House. NIST AI 100-4 lays out methods for detecting, authenticating and labeling synthetic content, including digital watermarking and metadata recording, where information indicating the origin or history of content such as an image or sound recording is embedded in the content to assist in verifying its authenticity.

Friday, May 24, 2024

WitnessAI is building guardrails for generative AI models - TechCrunch

WitnessAI is building guardrails for generative AI models - TechCrunch
WitnessAI, a new startup, is building tech to give companies greater control over the generative AI models they're deploying.

Sunday, April 25, 2021
















A Cyber Workforce Research and Development Platform
CERT PCTC (Private Cyber Training Cloud) contains a library of instruction and reference information about cyber security, information assurance, incident response, computer forensics, and other vital information security topics.
https://pctc.cyberforce.site/lms


IETF officially deprecates TLS 1.0 and TLS 1.1
The driving force behind the deprecation process was the large number of attacks that were revealed in previous years and which impacted the cryptographic algorithms at the base of the two protocols.
This included attacks like BEAST, POODLE, ROBOT, SWEET 32, LUCKY 13, and others, all of which showed how attackers could take advantage of weaknesses in both SSL and TLS 1.0/1.1 to compromise encrypted communications and attack organizations.
IETF officially deprecates TLS 1.0 and TLS 1.1



Microsoft Package Manager
Microsoft has a Package Manager. It is like Linux Package Managers or Chocolaty in that it has a repository of current applications. It can also be set up to have your own repository of applications specific to your environment. So you can use Powershell to install a group of applications that you use for your own business use cases.
https://docs.microsoft.com/en-us/powershell/module/packagemanagement/?view=powershell-7.1

InfoSec Update

 INTRODUCTION TO ARM ASSEMBLY BASICS

The following topics will be covered step by step:

ARM Assembly Basics Tutorial Series:
Part 1: Introduction to ARM Assembly
Part 2: Data Types Registers
Part 3: ARM Instruction Set
Part 4: Memory Instructions: Loading and Storing Data
Part 5: Load and Store Multiple
Part 6: Conditional Execution and Branching
Part 7: Stack and Functions


MITRE Publications
We encourage our staff to share their knowledge with the public through a number of avenues, including publishing papers and speaking at conferences and symposia. You can find technical reports, white papers, and other related publications on a wide variety of topics on this site.


Database of Free / Open Access Online Computer Science Books, Textbooks, and Lecture Notes
(1243 books and growing)



Malware Unicors's reverse engineering workshops
Reverse Engineering 101
11 sections. This workshop provides the fundamentals of reversing 
engineering Windows malware using a hands-on experience with 
RE tools and techniques.

Reverse Engineering 102
18 sections. This workshop build on RE101 and focuses on identifying 
simple encryption routines, evasion techniques, and packing.

OffSec Tools I Like Tiny Core Tiny Core, a unique and minimalist distribution of the Linux operating system and tools. distro.ibiblio.org/tinycorelinux/…

htrace is a shell script for http/https troubleshooting and profiling. github.com/trimstray/htra… PCredz This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface. github.com/lgandx/PCredz Spiderfoot SpiderFoot is an open source intelligence (OSINT) automation tool. It integrates with just about every data source available and utilises a range of methods for data analysis, making that data easy to navigate. github.com/smicallef/spid… Pagodo a passive Google dork script to collect potentially vulnerable web pages and applications on the Internet. github.com/opsdisk/pagodo Amass github.com/OWASP/Amass The OWASP Amass Project performs network mapping of attack surfaces and external asset discovery using open source information gathering and active reconnaissance techniques. TY @trimstray @PythonResponder @binarypool @jeff_foley

Friday, May 22, 2020

The Study of Tiny Motions being amplified, some to the point that you can hear it.




Video Magnification

Many seemingly static scenes contain subtle changes that are invisible to the naked human eye. However, it is possible to pull out these small changes from videos through the use of algorithms we have developed. We give a way to visualize these small changes by amplifying them and we present algorithms to pull out interesting signals from these videos, such as the human pulse, sound from vibrating objects and the motion of hot air.

http://people.csail.mit.edu/mrub/vidmag/



Eulerian Video Magnification for Revealing Subtle Changes in the World
Abstract

Our goal is to reveal temporal variations in videos that are difficult or impossible to see with the naked eye and display them in an indicative manner. Our method, which we call Eulerian Video Magnification, takes a standard video sequence as input, and applies spatial decomposition, followed by temporal filtering to the frames. The resulting signal is then amplified to reveal hidden information. Using our method, we are able to visualize the flow of blood as it fills the face and also to amplify and reveal small motions. Our technique can run in real time to show phenomena occurring at temporal frequencies selected by the user.



Eulerian Video Magnification code
Matlab code and executables implementing Eulerian video processing for amplifying color and motion changes.

Phase Based Video Motion Processing code
Matlab code implementing the new and improved phase-based motion magnification pipeline.

Learning-based Video Motion Magnification code
Tensorflow implementation of the learning-based motion magnification pipeline.

Videoscope
Web interface for motion and color magnification. Upload your videos and have them magnified!

Some Creative License with the Capability of Mixed Technologies for Malicious Intent





"Slaughterbot" Autonomous Killer Drones | Technology



Perhaps the most nightmarish, dystopian film of 2017 didn't come from Hollywood. Autonomous weapons critics, led by a college professor, put together a horror show.

It's a seven-minute video, a collaboration between University of California-Berkeley professor Stuart Russell and the Future of Life Institute that shows a future in which palm-sized, autonomous drones use facial recognition technology and on-board explosives to commit untraceable massacres.

The film is the researchers' latest attempt to build support for a global ban on autonomous weapon systems, which kill without meaningful human control.

They released the video to coincide with meetings the United Nations' Convention on Conventional Weapons is holding this week in Geneva, Switzerland, to discuss autonomous weapons.

"We have an opportunity to prevent the future you just saw, but the window to act is closing fast," said Russell, an artificial intelligence professor, at the film's conclusion. "Allowing machines to choose to kill humans will be devastating to our security and freedom."

In the film, thousands of college students are killed in attacks at a dozen universities after drones swarm campuses. Some of the drones first attach to buildings, blowing holes in walls so other drones can enter and hunt down specific students. A similar scene is shown at the U.S. Capitol, where a select group of Senators were killed.

Such atrocities aren't possible today, but given the trajectory of tech's development, that will change in the future. The researchers warn that several powerful nations are moving toward autonomous weapons, and if one nation deploys such weapons, it may trigger a global arms race to keep up.




https://www.youtube.com/watch?v=ecClODh4zYk

When you need to Boot from a USB Device, Rufus is your Tool




Rufus
Create bootable USB drives the easy way
Rufus is the lightest fastest USB creating tool I have had the pleasure of working with.

Thursday, September 05, 2019

What We Don't Always Realize

We often overlook things that happen over a long period of time. Sort of like our animal counterparts we fail to notice many things unless they make a sudden movement. One example is computer assisted warfare. Without noticing it we have been using and then allowing computers and robots to assist in killing humans for a very long time. For some reason many people have an image in their heads that a computer killing a person would be a desktop PC reaching out and choking someone to death. But computers are in our cars, planes, and just about every advanced weapon system. Our aircraft were computer controlled, our weapons systems were already being computerized by the time we entered the Korean war. At Bletchley Park UK we had used computers to break the German's Enigma encryption allowing us to read the Germans messages and then kill them at will. It only got worse from there, we used them to calculate targeting of artillery right after that. Computers have been killing and assisting in killing ever since. Our first use of a real computer was to kill, as it is with every advancement in technology, first we must use it for harm. When Dr. Alan Turing killed himself we had our first computer expert' stress related death, it happens with greater regularity every year. Apparently the wages of genius really is madness; perceived or factual, we have limits.

We have also allowed our robotic friends to become ubiquitous without seeing it at all. Our transportation systems, and farming, deep sea exploration, warfare, medical, and all facets of modern life are inundated with these little automated pieces of hardware. When you use a computer to automate some piece of hardware it becomes robotic in nature. It is essentially a series of automated processes in response to some kind of input. When you hit the breaks on a car with anti-lock breaks, the computer is reading sensor information from the wheels. If one of the wheels stops it releases the break pressure slightly until the wheel moves again. It is of course more complex than this. But for brevity's sake we won't delve into the inner workings. Suffice to say, you told the breaks to do something and the computer in the car told the breaks to do something else. You are not fully in charge of the car's breaks anymore. Cruise control is a similar system of automated interactions between computer and car also. The auto pilot on the planes, trains, and ships are all related systems with more sensors giving feedback for safe travel. These are all great, life saving and very highly sought after systems. They are however robotic systems and more are coming, but very little is being done to make sure they are secure from tampering.

Some of these systems are demonstrably insecure, others are untested. There  is no cause for alarm, nothing has happened yet. There hasn't been a full scale demonstration of any kind of danger, unless you count Stuxnet and he Iranian nuclear material production facility attack. It has been described in many ways, yet the one most important aspect is unspoken more than not. It was an attack on an isolated, top secret, radioactive, extremely high speed, computer controlled, system. Apparently from remote, and causing some physical destruction. No report of the workers in the facility being killed or not, but radiation certainly has the potential to kill after it has been released. You would think this might set a precedent, and in some ways it does. It isn't often we see people go to such extremes without taking a lot more lives.

By now it should become clear that we have for a long time been very deeply involved in a cyber conflict that we had not realized should be called a cyber conflict. I know many people prefer to call only computer on computer attacks cyber, or computers in the standard desktop verity being the attack vector cyber. I assure you, that the difference between the computers in the office and the CPU in the cruise missile, or Patriot, or even those in aircraft and automobiles are not much great. They obey the same concepts and logic. They process many of the same commands and use similar if not the same programming languages. There is little difference, the same experts who attack your computers at work can attack these automated systems that generate your electricity and provide your water. The danger is in that there are so many skilled in this dark art.

Now we look to the future. There are thousands of small aircraft with camera systems that are controlled over the airwaves. You can manipulate a flying camera from one nation while the aircraft is in another. There is nothing that prevents you from using it for bad except your own ethics. It can have a camera as well as anything else connected to it. It is as easy to report water pollution as it is to assassinate someone. An entire war will be fought with this technology soon. One remote presence begets another and the flying ones will insert the wheeled ones. The floating will launch the flying as well as the submersible. Even though it may not look like a human form, it is essentially a human providing final decision authority and humans are watching from remote locations. There will be no separation between military and civilian in this war. The battles are mostly machine on machine struggling to reach the human controllers. In the future, knowledge truly is power and information is the currency. Of course the future is actually only a few years or less in advance. Our automated drones and advancing technology are becoming as everyday as cell phones and television. Reporters are using them, police are using them, and soon there will be nothing that isn't using them.

A little further into the future and controls are in place for the flying things, but nothing has been able to control the advancing scope of technology. Today a plan stolen is in production within the day.

Thursday, August 01, 2019

Some of the Posts

Some of the posts I made as long ago as 2014 were in a format that didn't look right with a while background on the text, when I updated them though it placed them up to today's date. Sorry for any confusion, not that anyone is reading this.

InfoSec Update

SB (@SBousseaden)
Detecting UAC Bypass by Mocking Trusted Directories using Sysmon example was uploaded to the ATT&CK EVTX repo -> bit.ly/30YSEAB #threathunting #DFIR [125 evtx, more than 130 techniques✌️] , BTW same UACbypass used recently by TA505 APT group, consider multi spaces! pic.twitter.com/EIuL01b32B

BEST SKIMMER HUNTER Presale only for limited time
From July 22 to August 11
ElectronicCats (EC) is a startup founded in 2016, established in Aguascalientes, Mexico; its mission is to create hardware and embedded systems. In 2019, Electronic Cats has been working to launch the first commercial and user-friendly skimmer hunter.
Bank cards have information in their magnetic stripe that is used to validate transactions; Being static information, becomes one of the biggest disadvantages of this magstripe information. Most of the attackers use this limitation to seize the information using a skimming technique which occurs mainly in ATMs. The malicious attackers add a second card reader to obtain the information of the person who uses the ATM, PoS or terminal. Although, some cases come to light where some workers in establishments that had a second card reader in addition to the store's own PoS to perform such data theft.
https://hunter.electroniccats.com/


If You Were at Tony P's Talk Today
The books he mention are located here.
https://landing.google.com/sre/books/


A New Humble Bundle is out
HUMBLE BOOK BUNDLE: DATA ANALYSIS & MACHINE LEARNING BY O'REILLY
We've teamed up with O'Reilly for our newest bundle on data analysis and machine learning! Get ebooks like Advanced Analytics with Spark, Practical Statistics for Data Scientists, and more.
$711 WORTH OF AWESOME STUFF | PAY $1 OR MORE | DRM-FREE MULTI-FORMAT |
11,512 BUNDLES SOLD
https://www.humblebundle.com/books/data-analysis-machine-learning-books?hmb_source=navbar&hmb_medium=product_tile&hmb_campaign=tile_index_4 


An Introduction To Code Analysis With Ghidra
This article describes an approach for using Ghidra to perform malicious code analysis. Ghidra is a free software reverse engineering (SRE) framework developed by the National Security Agency (NSA) of the United States. It was released as open-source software in March 2019, making this powerful reverse engineering tool available to all, regardless of budget.
https://threatvector.cylance.com/en_us/home/an-introduction-to-code-analysis-with-ghidra.html