Secure GenAI
Secure GenAI Podcast
Mouse to Mic, CodeMender, AI Safety course 6, Oracle exploited zero day, Discord 3rd party breach.
0:00
-4:58

Mouse to Mic, CodeMender, AI Safety course 6, Oracle exploited zero day, Discord 3rd party breach.

GenAI Safety & Security | Oct 6 - Oct 12, 2025

If you enjoy our newsletter, please consider to be a paid subscriber to help us keep more news and updates coming out.

Notice: New book report is available! Check out this for more information.

Secure GenAI is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.

Highlights

  • AI turns mouse into microphones.

  • CodeMender: AI agent for code security.

  • Notes from AI Safety lecture 6.

  • Oracle: Exploited Zero-day.

  • Continuation of Discord 3rd party breach.


Deep Dive

​​AI turns mouse sensors into mic.TomsHardware

  • High-DPI mice detect subtle desk vibrations.

  • Signal processing and AI convert vibrations.

  • Speech reconstructed from normal mouse activity.

  • Affordable gaming mice are increasingly at risk.

  • Compromised software enables remote audio extraction.

CodeMender: AI agent for code security. DeepMind

  • CodeMender combines proactive and reactive security.

  • The system uses Gemini Deep Think models.

  • Rewrites insecure code with safer APIs.

  • Adds compiler annotations to block overflows.

  • Automatically corrects test failures post-patch.

  • Future plans include a public release version.

AI Safety Lecture 6. Boaz Barak

  • AI builds itself without humans.

  • Discussion about AI self improvement.

  • On jobs, economics, growth, GDP.

  • Optimistic assumption: AlphaZero.

  • AI 2027 predictions: Breakthroughs.

Oracle: Exploited Zero-day. TheHackerNews

  • Breached since August 2025.

  • Attack linked to Cl0p ransomware group.

  • CVE-2025-61882 scored critical 9.8 severity.

  • Google, Mandiant confirmed widespread exploitation campaigns.

  • The latest wave of attacks was Sep 29, 2025.

Discord breach (continue) TheVerge

  • Confirms third-party customer service breach.

  • About 70,000 users’ ID photos were exposed.

  • Attackers claim possession of 1.5TB data.

  • This includes 2,185,151 photos.

  • Discord denies direct platform compromise occurred.

Thanks for reading Secure GenAI ! This post is public so feel free to share it.

Share

Discussion about this episode

User's avatar