#security

Posts mentioning hashtag #security

Below are all the posts — topics as well as replies — that mention the hashtag #security.

Mention #security in your post to continue the discussion!

Reporting AI use

Is it against the code of conduct for an employee to input Truist proprietary information into an AI platform like ChatGPT? To my knowledge, the only AI tool currently authorized at Truist is CoPilot, and it’s being tested by a limited group of employees. A colleague of mine consistently distributes detailed meeting notes within five minutes of discussion, which strongly suggests AI assistance. Since this colleague works remotely, it’s likely they use a personal computer to access ChatGPT and then send the notes to their Truist email. I suspect this could breach the code of conduct, but I’d appreciate any insights or clarifications from others.


Cinci

Well, now we are the epicenter of attention. And I don't feel good about how they are handling what happened here with our su-k a-s safety and security bosses. My friend in corporate called me already and she knew about it so I am guessing you all do. Things like this happen but we are not confident the corporate teams can address this. HR and our managers are trying but everyone knows safety and security is not good and definitely not trusted. Pray for us!


It is risky

Nvidia’s investment in Intel coudl have far-reaching negative consequences. To begin with, Nvidia has every incentive to eliminate Intel’s Arc graphics line, which would be disastrous for consumers because Arc is the only product helping to bring GPU prices down. Without it, Nvidia would face less competition and prices could climb.

The loss of Intel’s graphics division would also harm Linux users. Intel’s approach to open, well-documented drivers has made their GPUs the most compatible and reliable option for Linux systems, while Nvidia has a history of being unfriendly toward open-source drivers. If Intel’s efforts end, Linux users will face fewer choices and greater difficulties.

Finally, Intel is currently the only company offering consumer-grade graphics virtualization through SR-IOV. If that disappears, Nvidia’s enterprise-level chips would dominate the market. This would mean ordinary consumers would be left with less performance, less flexibility, and weaker security on their personal computers.


Sounds like Commander in Chief likes military input from Vena input from Vena

Well, if I had to guess, theft is the railroads biggest problem in these two cities, I am sure many others as well.

The praise makes for a good laugh!

https://www.wowt.com/2025/09/16/trump-says-union-pacific-ceo-gave-advice-national-guard-deployments/?outputType=amp


...THE STORY BEHIND WHY OUR STOCK IS TORPEDOING TODAY

@OP+1k4t1ksy3

SEE LINK BELOW - THIS IS WHY OUR STOCK IS TANKING OUT BIG TIME - HOW COULD SOMETHING LIKE THIS HAPPEN? A MAXIMUM SEVERITY RATING OF 10 OUT OF A POSSIBLE 10 ON S/4HANA and NETWEAVER PRODUCTS - ARE YOU KIDDING??

Who is responsible for this?

https://arstechnica.com/security/2025/09/as-hackers-exploit-one-high-severity-sap-flaw-company-warns-of-3-more/

No public relations announcements will cover this up.

This is pretty serious news that will definitely impact SAP sales going forward. Just who would now want to buy SAP with 3 of our major products now exposed to a "high-severity vulnerability"

What has happened to this company??


Improving Employee Safety

What's the over-under on whether Schart gets asked about improving employee safety in the wake of horrific stabbing mu---r on Charlotte's light rail? I've seen crazies wander into lobbies off the street while the fat "security" ladies did nothing but yell at them. At least other companies have security officers guarding external entrances.

And yes, I've already submitted my question on this subject.


Missing DD254's

Heads up: L3Harris offices in Plano, TX, Richardson, TX and Ashburn, VA are MISSING -as in UNable to.locate countless DD254's for classified programs based out of these office locations. L3Harris director (S.J.) knows this has been going on for nearly a year and has not reported this up the chain. I was a senior PM who recently left the company after 10+ years to join a real (in the top 5) defense organization. L3Harris will not be landing any new substantive awards.


I knew it! They are really monitoring this!

The security Veep told a colleague of mine that communications does "monitor" these posts and even shares them with executives and other leaders. It is nice to know that he is talking as much as he does. So if a security danger-thing happens at our workplace and something had not been reported earlier to stop it from happening, we now know that an attorney can demand the emails and prove that they knew there was a problem that would endanger many of us. Thousands of associates on another post liked a post begging for someone to do something. Thousands of us! That was a massive show of support and a cry for help. They did it on layoffs.com because they can't trust to report it internally. He also told a colleague that he and his team now have to report to HR and he doesn't like that because they ask for too much to be done right away while they sit on their a-s. He said they were the ones that "had a part in fu--ing up some of his team's onboarding" which I wasn't sure what that meant. But the main point is we now know they do read these and can be held accountable when it happens.


AT&T Breached Again: 🤦🏽‍♂️

AT&T seems breached again, the hacker is selling access to 24 million users' data – are you one of those?

If you've got $100,000 – but strictly in crypto – you could buy access to the carrier's infrastructure, the offering claims.

By Sebastian Pier
PUBLISHED: SEP 03, 2025, 3:45 AM

https://www.phonearena.com/news/at-t-is-it-breached-again_id173750

Is AT&T going to be sued and fined for neglecting its users' private data? Or is it going to settle to pay out compensations to numerous users again, like it recently did?

This could very well happen, if another AT&T breach occurs – and SOCRadar's Dark Web Team has come across a new listing on the dark web that advertises what is described as unauthorized access to AT&T's internal systems.

Dark Web Offers Exploits, AT&T Access, Ledger Scam Kit, and 100K Stolen Cards

SOCRadar’s Dark Web Team has identified a new wave of underground activity involving high-value exploits, access, and data leaks. Threat actors are advertising an alleged Android 0-day affecting versions 11 through 15, persistent unauthorized access to AT&T’s core infrastructure, and a dump of over 100,000 credit cards from multiple countries. Additionally, a new scam page targeting Ledger wallet users has been leaked, suggesting broader phishing campaigns targeting the crypto community.

https://socradar.io/dark-web-offers-exploits-att-access-ledger-scam-kit-and-100k-stolen-cards/


badging out

at the FN1 building will there be badging out macjines. As of right now they do not. Just curious if the will be implementing them due to the fact that people will leave


Change my mind: Chevron laptops are increasingly becoming a bottleneck to productivity

The title says it all. We’ve got so much in the way of cybersecurity, spyware, performance monitoring, key logging, etc, that it’s negatively impacting the usability of laptops. Forget blaming the usual sources like Microsoft, or support, this is clearly a self-inflicted wound if you take a look at the application stack consuming a good percentage of your system’s resources.

Dock and undock? Best of luck with that. You’re in for at least a minute or more of zombie mode before the state change is recognized.

Standby? Good luck. Your notebook will continue to run in your bag despite selecting standby. It’s overheat or run out of battery which ever comes first.


A message to our Chief Product Officer and CTO, Saginay Berry

You have a very short window sir to do the right thing until the new CEO comes and sees right through your wall of snake oil and misdirection. Your presentation onstage at the internal kickoff was an hour of wasted time I will never get back. You showed Google AI and Notebook LM and pretended it was a technology forward development. It was not sir. We all saw through your charade.

If you want OpenText to succeed, you need to:

  • perform deep product consolidation. Go from 1000 products down to 150. We need one product for each segment we want to play in. Why do we have content server, documentum and core content? Why do we have multiple faxing solutions in BN?
  • The products you choose to keep need to be completely rewritten from the ground up using cutting edge architecture and memory safe development languages. Putting a legacy product inside a container doesn’t make it containerized. We need a real automated orchestration layer than can handle availability, capacity in real time by itself. Patching should be done in the middle of the day by scaling and moving without impacting customers.
  • Security and privacy need to be designed into all of the products from day 1. As a European developer, I cringe every time someone tells me we will comply with GDPR. Our products are not designed for security and privacy by default. As governments become more demanding, we will be left in the cold. The time is NOW!
  • Fire 50% of your direct reports. Most of your VPs and directors are incompetent and would be unable to find a job anywhere else. Most have been here too long and don’t know what modern software architecture looks like.
  • Understand that AI is not a product and will quickly become a feature. Slapping AI on something (like Ollie AI) doesn’t make it modern or desirable. Where are your real product managers thinking about building world class functionality? Aviator is nothing more than a Google AI wrapped in OpenText clothes. It is NOT innovation. It is not unique and customers aren’t buying it.

Infrastructure and Security Teams - Downhill

Both the Infrastructure and Security teams have really gotten worse over the last 2 or so years. Cocky, delusional, don't understand the business needs or requirements. Hated by all peer organizations in DDAT. They challenge everything, unskilled staff. people that we should have got rid of long ago still here and promoted into higher positions, the good staff is all gone. Nobody says anything since "Tilak's boy" is SVP.

BTW, even your leader doesn't look like he belongs in healthcare and looks like he could drop dead any minute.

What does this have to do with layoffs? "AR... layoff the doughnuts"


GTO Security Said WHAT?

was stuck in a GTO security meeting with a VP, an SD, and a D who were completely clueless about security. Honestly, my 12-year-old knows more than these muppets. I get it, though. They probably got roped into this gig after the CISO and the whole team were shown the door to save a few quid. "Who needs a security team? They're just a drain on resources."

I won't spill the beans on the meeting, but let’s just say it involved an HR, ethics, and legal issue that any other company would take seriously. Here? It was all about blaming the victim. When I asked security to check reports or audit records, they shrugged and said they don’t keep those. Really? That’s a load of rubbish. The last security team handed me a year-long report detailing profile baselines and behaviour deviations.

The current GTO security crew is either completely lost or they've slashed costs so much they can't even run the show anymore.


These HSK keys are so stupid

HSK = Hardware Security Key for those that don't know. It's a little USB type device with a fingerprint reader on the top that plugs into the USB-C port. It's quite small and VERY easily losable. Even though "technically" you aren't supposed to leave it in the computer, 99.999% of people do.

The entire "frictionless access" is d-mb. Dell spent all sorts of money on these little HSK keys to be more "secure" but, 99.99% of people just leave them in their computer anyways. They aren't "easier" or more convenient since you have to input your PIN first, THEN put your finger on it. Every place I need to login to that isn't requiring an ADM account, which requires an RSA code, I choose to use just my PIN and sc--w the HSK.

It's faster (JUST the PIN,) one step less and to even use the HSK you literally have to click the option to use it. D-mbest sht I've ever seen so far. If it were fingerprint only and you didnt have to "choose to use the key" then ok, fine.

What a massive waste of money Dell spent on this lol. I'd bet money that everybody's HSK PIN is the same exact PIN they use already. If I had to bet more money, I'd bet that most people's PINs are just their phone number w/o the area code lmfao.

I'm not sure but, unless Dell plans on forcing everyone to use this HSK for logins - with no other options such as a PIN, password, RSA - then wtf was the point in this?


Store level asset protection and Human Resources

If you are store level asset protection or Human Resources expect cuts early 2026. Rumors circulating that both those positions will be eliminated from bronze doors and under. Golden doors will more than likely still have those positions. More than likely asset protection will be the first to go, followed by H.R. leads.


HR giant Workday says hackers stole personal data in recent breach

https://techcrunch.com/2025/08/18/hr-giant-workday-says-hackers-stole-personal-data-in-recent-breach/

Workday, one of the largest providers of human resources technology, has confirmed a data breach that allowed hackers to steal personal information from one of its third-party customer relationship databases.


What does US govt stake on Intel mean?

US has no choice but to help Intel turn around its business in the hope that it will provide chip manufacturing security against China. Without the full details of the stake, we can only speculate what stipulations the US gov’t has imposed on Intel, if not talks are still on going - but…IFS and ProdCo split is likely going to get more pressure. Chip manufacturing is US top priority, chip design is aplenty. This is a boon for IFS since the gov’t could help in many ways to get the customers it badly needs. For ProdCo, it cannot stand alone and it has to find a host to attach - hello Qualcomm!
But before this happens, big internal battle is being played out. NS will not concede without exhausting every tooth and nails. Good luck!


Wave 4 Enhanced monitoring in effect

Enhanced monitoring/blocking for Wave 4 of Technology's Location Strategy is in place. All impacted employees will be blocked from:

  • Sending external emails.
  • Uploading content to the web.
  • Printing at the office.
  • Printing remotely.
  • Using removable media (USB/CD) on their work computer.

Tech managers can request exceptions if needed. If you're not sure if you're impacted by Technology's Wave 4, try doing one of those things.