#anyscale — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #anyscale, aggregated by home.social.
-
AI framework vulnerability is being used to compromise enterprise servers (CVE-2023-48022) https://www.helpnetsecurity.com/2024/03/27/cve-2023-48022/ #machinelearning #authentication #OligoSecurity #vulnerability #enterprise #Don'tmiss #BishopFox #Hotstuff #Anyscale #News
-
Oligo reports active exploitation of CVE-2023-48022 (9.8 critical, disclosed 30 November 2023 by Anyscale) Ray remote code execution vulnerability. Ray is a widely used open-source AI framework. The CVE remains unpatched because Anyscale disputes the vulnerability: "Ray does not have authentication built in - is a long-standing design decision based on how Ray’s security boundaries are drawn and consistent with Ray deployment best practices" Oligo suggests that the vulnerability was exploited as a zero-day since at least September 2023. 🔗 https://www.oligo.security/blog/shadowray-attack-ai-workloads-actively-exploited-in-the-wild
h/t: @campuscodi
#CVE_2023_48022 #Anyscale #Ray #AI #eitw #activeexploitation #zeroday
-
This new Reinforcement Learning course from #Anyscale is very well done. It's more accessible to the beginner than the one I co-wrote when I worked for them 😀 https://applied-rl-course.netlify.app/en