Infosec Decoded Season 4 #40: ChatGPT-4o

With Doug Spindler and @sambowne@infosec.exchange

Fri, May 17, 2024

Doug Spindler

Europe & eLoran – A Reconciliation?

PIN analysis

City of Wichita breach claimed by LockBit ransomware gang

Sam Bowne

Arizona woman accused of helping North Koreans get remote IT jobs at 300 companies
She compromised the identities of more than 60 people living in the US and used their personal information to get North Koreans IT jobs across more than 300 US companies. She operated a "laptop farm"; the laptops were issued by the employers. By using proxies and VPNs, the overseas workers appeared to be connecting from US-based IP addresses.

Hives For U.S. Drone Swarms Ready To Deploy This Year
The Hive Expedition weighs 400 pounds and can operate twelve or more drones depending on their size. The Hive XL is a 13,000-pound trailer which can house and deploy up to 80 drones. Both types of Hive allow a single operator to control the entire fleet via a simple tablet interface, and they remove the need for any physical drone handling. According to Sentien, an operator can drive a Hive to a location and have a pop-up security system running in five minutes.

China Builds World’s First Dedicated Drone Carrier
The design is smaller than regular aircraft carriers, with a flight deck approximately one third the length and half the width of a super carrier. The flight deck is wide enough to comfortably operate aircraft or drones with a wingspan of around 20 meters (65 feet) such as Chinese equivalents of the Predator drone.

Britain says it is developing a radio-wave weapon that can take out a swarm of drones for just $0.12 a shot
The Radio Frequency Directed Energy Weapon, or RFDEW, uses radio waves to detect, track, and disable electronic components at a range of up to 1000 meters. "The war in Ukraine has shown us the importance of deploying uncrewed systems, but we must be able to defend against them too"

Last summer was the hottest in 2,000 years. Here’s how we know.
Researchers rely on tree rings, glaciers, and fossil records to put our current climate in context.

I've been testing OpenAI's new ChatGPT-4o Mac app — this is a game changer
I gave it a screenshot of a game of Pong and asked it to help me find a way to play the game. Within about 30 seconds it generated all the necessary code for a fully functional game of Pong and instructions on how to run that code. It worked perfectly so I tried it with Breakout, the block-breaking game, and it created a perfect replica of that classic as well. It even created a version of Space Invaders and so I’ve put all three on GitHub. It struggled with Asteroids but got it right after I shared the error code.

ChatGPT 4o vs Gemini 1.5 Pro: It’s Not Even Close
ChatGPT 4o performs much better than Gemini 1.5 Pro in a variety of tasks including reasoning, code generation, multimodal understanding, and more. In one of my tests, ChatGPT 4o created a Python game within seconds, but Gemini 1.5 Pro failed to generate the correct code.

OpenAI GPT-4o is now rolling out — here's how to get access

Backlogs at National Vulnerability Database prompt action from NIST and CISA
Backlogs at the NVD have reached crisis proportions, prompting federal agencies to seek help from the private sector. It appears that the NVD has completely given up on adding CPE-matches to CVEs since sometime around February 15. A big contributor to the NVD backlog is the flood of vulnerabilities reported to the repository — more than 100 per day in 2024. There were more than 4,000 critical severity vulnerabilities reported in 2022, up more than 59% over the previous year.