Equities process

Equities process Summary The National Cyber Security Centre (NCSC), as part of the UK intelligence community, has published the UK’s ‘Equities Process’ — the formal approach for deciding what to do when vulnerabilities are discovered in technology. The default is to disclose vulnerabilities to vendors so they can be fixed, but in some cases the […]

Read More →

Eradicating trivial vulnerabilities, at scale

Eradicating trivial vulnerabilities, at scale Summary The National Cyber Security Centre (NCSC) has published a paper — “A method to assess ‘forgivable’ vs ‘unforgivable’ vulnerabilities” — that builds on MITRE’s concept of ‘unforgivable vulnerabilities’. The paper proposes a practical method to assess whether a vulnerability is forgivable or unforgivable by quantifying how easy it would […]

Read More →

Exercise caution when building off LLMs

Exercise caution when building off LLMs Summary Large Language Models (LLMs) have attracted widespread interest since ChatGPT’s release, and organisations are rapidly integrating them into services. The NCSC cautions that our understanding of LLMs is still ‘in beta’: models and vendor offerings change quickly, behaviours can be unpredictable, and specific vulnerabilities (notably prompt injection) allow […]

Read More →

Hong Kong court increases fines on contractors over fatal construction site accident

Hong Kong court increases fines on contractors over fatal construction site accident Summary Hong Kong’s Kwun Tong Magistrates’ Courts has revised sentencing and significantly increased fines for contractors involved in a fatal construction accident in Yau Tong. The incident, on 14 December 2022, saw a worker fatally struck while dismantling an I-beam. Three contractors — […]

Read More →

Interview: How Tesla’s former DEI director, Kristen Kavanaugh, chose courage over fear

Interview: How Tesla’s former DEI director, Kristen Kavanaugh, chose courage over fear Summary Kristen Kavanaugh, former DEI director at Tesla and Marine Corps veteran, describes how small, consistent acts of courage build resilient leadership. She reflects on personal “moments that mattered” (coming out after Don’t Ask Don’t Tell, challenging performative DEI, resisting harmful public commentary) […]

Read More →

Crypto groups hit out at Bank of England plan to limit stablecoin ownership

Crypto groups hit out at Bank of England plan to limit stablecoin ownership Summary The Bank of England is reportedly moving to tighten rules around stablecoins, including measures that would limit ownership or access for some retail investors and bolster regulatory control over issuers and platforms. Crypto industry groups have reacted strongly, saying the proposals […]

Read More →

Product Tankers: Demand Could Be Ramping Up

Product Tankers: Demand Could Be Ramping Up Summary Shipbroker Gibson’s latest weekly note points to a possible short-term respite for the product tanker market after refinery activity hit an all-time high of ~85 mbd over the summer. Strong refinery runs pushed seaborne clean petroleum product (CPP) exports to a 16-month high, led by the Middle […]

Read More →