Sign in

Marta Beltrán

@mbeltranpardo.bsky.social
61 followers 43 following 240 posts

Profesora, investigadora, divulgadora e innovadora. Apasionada de la tecnología y de las personas detrás de ella. Cuenta personal.

PostsRepliesMedia
Marta Beltrán @mbeltranpardo.bsky.social · 14/10/2025
Spyware maker NSO Group confirms acquisition by US investors techcrunch.com/2025/10/10/s...
techcrunch.com
Spyware maker NSO Group confirms acquisition by US investors | TechCrunch
NSO Group confirmed to TechCrunch that an unnamed group of American investors has taken “controlling ownership” of the surveillance tech maker.
000
Marta Beltrán @mbeltranpardo.bsky.social · 14/10/2025
The JRC policy report “Future Directions for Quantum Technology in Europe” provides background data that informed the EU Quantum Strategy unveiled recently joint-research-centre.ec.europa.eu/jrc-news-and...
joint-research-centre.ec.europa.eu
Quantum technology: 32% of the companies, but only 6% of patents are from the EU
The fragmentation of EU programmes needs to be reduced to help companies scale up.
020
Marta Beltrán @mbeltranpardo.bsky.social · 08/10/2025
EU-funded TildeOpen LLM delivers European AI breakthrough for multilingual innovation digital-strategy.ec.europa.eu/en/library/e...
digital-strategy.ec.europa.eu
EU-funded TildeOpen LLM delivers European AI breakthrough for multilingual innovation
Tilde has launched a powerful open-source language model trained on Europe's LUMI supercomputer.
000
Marta Beltrán @mbeltranpardo.bsky.social · 08/10/2025
Signing ML Artifacts: Building towards tamper-proof ML metadata records github.com/cosai-oasis/...
github.com
000
Marta Beltrán @mbeltranpardo.bsky.social · 08/10/2025
Mapping relevant data collection mechanisms for AI training www.oecd.org/en/publicati...
oecd.org
Mapping relevant data collection mechanisms for AI training
When developing AI systems, practitioners often focus on model building, while sometimes underestimating the importance of analysing the diverse data collection mechanisms. However, the diversity of m...
000
Marta Beltrán @mbeltranpardo.bsky.social · 01/10/2025
AI Act: Commission issues draft guidance and reporting template on serious AI incidents, and seeks stakeholders' feedback digital-strategy.ec.europa.eu/en/consultat...
digital-strategy.ec.europa.eu
AI Act: Commission issues draft guidance and reporting template on serious AI incidents, and seeks stakeholders' feedback
Stakeholders are encouraged to provide feedback and examples on the interplay with other reporting regimes in this public consultation.
000
Marta Beltrán @mbeltranpardo.bsky.social · 01/10/2025
ENISA Threat Landscape 2025 www.enisa.europa.eu/publications...
enisa.europa.eu
ENISA Threat Landscape 2025 | ENISA
ENISA is the EU agency dedicated to enhancing cybersecurity in Europe. They offer guidance, tools, and resources to safeguard citizens and businesses from cyber threats.
010
Marta Beltrán @mbeltranpardo.bsky.social · 25/09/2025
Risks in turning AI chatbots into AI agents... and using MCP privacyinternational.org/long-read/56...
privacyinternational.org
Risks in turning AI chatbots into AI agents... and using MCP
To justify the obscene amounts of money they have raised, AI firms are trying to convince people that their chatbots can do a lot more for you than just write emails and generate studio Ghibli images ...
000
Marta Beltrán @mbeltranpardo.bsky.social · 25/09/2025
Inside MCP Security: A Research Guide on Emerging Risks www.datocms-assets.com/75231/175314...
datocms-assets.com
000
Marta Beltrán @mbeltranpardo.bsky.social · 17/09/2025
Memory Integrity Enforcement: A complete vision for memory safety in Apple devices security.apple.com/blog/memory-...
security.apple.com
Memory Integrity Enforcement: A complete vision for memory safety in Apple devices - Apple Security Research
Memory Integrity Enforcement (MIE) is the culmination of an unprecedented design and engineering effort spanning half a decade that combines the unique strengths of Apple silicon hardware with our adv...
000
Marta Beltrán @mbeltranpardo.bsky.social · 17/09/2025
How an Attacker’s Blunder Gave Us a Rare Look Inside Their Day-to-Day Operations www.huntress.com/blog/rare-lo...
huntress.com
An Attacker’s Blunder Gave Us a Look Into Their Operations | Huntress
An attacker installed Huntress onto their operating machine, giving us a detailed look at how they’re using AI to build workflows, searching for tools like Evilginx, and researching targets like softw...
000
Marta Beltrán @mbeltranpardo.bsky.social · 16/09/2025
Sexual Exploitation, Manipulation, and Violence on Character AI Kids’ Account parentstogetheraction.org/wp-content/u...
parentstogetheraction.org
000
Marta Beltrán @mbeltranpardo.bsky.social · 16/09/2025
FTC Launches Inquiry into AI Chatbots Acting as Companions www.ftc.gov/news-events/...
ftc.gov
FTC Launches Inquiry into AI Chatbots Acting as Companions
The Federal Trade Commission is issuing orders to seven companies that provide consumer-facing AI-powered chatbots seeking information on how these firms measure, test, and monitor potentially nega
000
Marta Beltrán @mbeltranpardo.bsky.social · 16/09/2025
AI agent security: How to protect digital sidekicks (and your business) cloud.google.com/transform/ai...
cloud.google.com
AI agent security: How to protect digital sidekicks (and your business) | Google Cloud Blog
AI agents can be very powerful tools, but they also can increase the risks your organization faces if not properly secured. Here’s what you need to know.
000
Marta Beltrán @mbeltranpardo.bsky.social · 16/09/2025
NIST Releases Control Overlays for Securing AI Systems Concept Paper csrc.nist.gov/News/2025/co...
csrc.nist.gov
Control Overlays for Securing AI Systems | CSRC
NIST has released a concept paper and proposed action plan for developing a series of NIST SP 800-53 Control Overlays for Securing AI Systems, as well as a launching a Slack channel for this community...
000
Marta Beltrán @mbeltranpardo.bsky.social · 28/08/2025
ENISA to operate the EU Cybersecurity Reserve digital-strategy.ec.europa.eu/en/news/enis...
digital-strategy.ec.europa.eu
ENISA to operate the EU Cybersecurity Reserve
The European Commission has signed an agreement today with ENISA, the European Union Agency for Cybersecurity for the operation and administration of the EU Cybersecurity Reserve.
000
Marta Beltrán @mbeltranpardo.bsky.social · 28/08/2025
First known AI-powered ransomware uncovered by ESET Research www.welivesecurity.com/en/ransomwar...
welivesecurity.com
First known AI-powered ransomware uncovered by ESET Research
The discovery of PromptLock shows how malicious use of AI models could supercharge ransomware and other threats.
000
Marta Beltrán @mbeltranpardo.bsky.social · 19/08/2025
Sloppy AI defenses take cybersecurity back to the 1990s, researchers say www.scworld.com/news/sloppy-...
scworld.com
Sloppy AI defenses take cybersecurity back to the 1990s, researchers say
The startling lack of good security practices around AI has cybersecurity veterans wondering which decade we're living in.
020
Marta Beltrán @mbeltranpardo.bsky.social · 19/08/2025
AgentFlayer: When AIjacking Leads to Full Data Exfiltration in Copilot Studio labs.zenity.io/p/a-copilot-...
labs.zenity.io
A Copilot Studio Story 2: When AIjacking Leads to Full Data Exfiltration
Discover how prompt injections can lead to zero-click exploits threatening AI agents built using Copilot Studio. Learn about real-world risks, including data leakage and security blind spots. Bypass C...
000
Marta Beltrán @mbeltranpardo.bsky.social · 15/08/2025
Meta’s AI rules have let bots hold ‘sensual’ chats with kids, offer false medical info: An internal Meta policy document, seen by Reuters, reveals the social-media giant’s rules for chatbots www.reuters.com/investigates...
reuters.com
Meta’s AI rules have let bots hold ‘sensual’ chats with children
An internal Meta policy document reveals the social-media giant’s rules for chatbots, which have permitted provocative behavior on topics including sex and race.
000
Marta Beltrán @mbeltranpardo.bsky.social · 15/08/2025
USENIX Security '25 Full Proceedings (PDF, 1.2 GB) 2459d6dc103cb5933875-c0245c5c937c5dedcca3f1764ecc9b2f.ssl.cf2.rackcdn.com/sec25/sec25_...
2459d6dc103cb5933875-c0245c5c937c5dedcca3f1764ecc9b2f.ssl.cf2.rackcdn.com
010
Marta Beltrán @mbeltranpardo.bsky.social · 14/08/2025
An AI Model for the Brain Is Coming to the ICU www.wired.com/story/an-ai-...
wired.com
An AI Model for the Brain Is Coming to the ICU
The Cleveland Clinic and startup Piramidal are developing an AI model trained on brain wave data to monitor intensive care patients.
000
Marta Beltrán @mbeltranpardo.bsky.social · 14/08/2025
Meta researchers are developing a gesture-controlled wristband that can interact with a computer techcrunch.com/2025/07/23/m...
techcrunch.com
Meta researchers are developing a gesture-controlled wristband that can interact with a computer | TechCrunch
The goal of this wristband is to provide less invasive tools to interact with computers for people with motor disabilities.
000
Marta Beltrán @mbeltranpardo.bsky.social · 14/08/2025
NIST Finalizes ‘Lightweight Cryptography’ Standard to Protect Small Devices www.nist.gov/news-events/...
nist.gov
NIST Finalizes ‘Lightweight Cryptography’ Standard to Protect Small Devices
Four related algorithms are now ready for use to protect data created and transmitted by the Internet of Things and other electronics
002
Marta Beltrán @mbeltranpardo.bsky.social · 05/08/2025
Ready for AI Agents in Your SOC? cyberfuturist.medium.com/ready-for-ai...
cyberfuturist.medium.com
Ready for AI Agents in Your SOC?
Hallucinations, Hidden Costs & Human-in-the-Loop Realities
000
Marta Beltrán @mbeltranpardo.bsky.social · 05/08/2025
When LLMs autonomously attack engineering.cmu.edu/news-events/...
engineering.cmu.edu
When LLMs autonomously attack
Carnegie Mellon researchers show how LLMs can be taught to autonomously plan and execute real-world cyberattacks against enterprise-grade network environments—and why this matters for future defenses.
000
Marta Beltrán @mbeltranpardo.bsky.social · 05/08/2025
Perplexity is using stealth, undeclared crawlers to evade website no-crawl directives blog.cloudflare.com/perplexity-i...
blog.cloudflare.com
Perplexity is using stealth, undeclared crawlers to evade website no-crawl directives
Perplexity is repeatedly modifying their user agent and changing IPs and ASNs to hide their crawling activity, in direct conflict with explicit no-crawl preferences expressed by websites.
000
Marta Beltrán @mbeltranpardo.bsky.social · 03/08/2025
La biblioteca en llamas: el asesoramiento científico en la era de la desinformación elpais-com.cdn.ampproject.org/c/s/elpais.c...
elpais-com.cdn.ampproject.org
La biblioteca en llamas: el asesoramiento científico en la era de la desinformación
Es el momento de repolitizar la cultura científica como un acto de resistencia democrática y exigir a la comunidad científica una dosis de activismo
010
Marta Beltrán @mbeltranpardo.bsky.social · 01/08/2025
Explanatory Notice and Template for the Public Summary of Training Content for general-purpose AI models digital-strategy.ec.europa.eu/en/library/e...
digital-strategy.ec.europa.eu
Explanatory Notice and Template for the Public Summary of Training Content for general-purpose AI models
The Template annexed to this Explanatory Notice aims to provide a common minimal baseline for the information to be made publicly available in the Summary of Training Content for general-purpose AI mo...
000
Marta Beltrán @mbeltranpardo.bsky.social · 01/08/2025
Addressing GDPR’s Shortcomings in AI Training Data Transparency with the AI Act www.techpolicy.press/addressing-g...
techpolicy.press
Addressing GDPR’s Shortcomings in AI Training Data Transparency with the AI Act | TechPolicy.Press
Ameneh Dehshiri explains how the EU AI Act can increase transparency in GPAI training data and potentially strengthen GDPR enforcement.
000
Reposted by Marta Beltrán
Catalin Cimpanu @campuscodi.risky.biz · 31/07/2025
LOL... someone scrapped celebrity Spotify accounts/playlists and leaked their music preferences The *chef's kiss* here is the name of the site: Panama Playlists 😆 panamaplaylists.com
33211
Marta Beltrán @mbeltranpardo.bsky.social · 31/07/2025
Watermarks offer no defense against deepfakes: Waterloo researchers create “UnMarker” tool that can remove any AI image watermark, highlighting continuing dangers of deepfakes uwaterloo.ca/news/media/w...
uwaterloo.ca
Watermarks offer no defense against deepfakes | Waterloo News
New research from the University of Waterloo’s Cybersecurity and Privacy Institute demonstrates that any artificial intelligence (AI) image watermark can be removed, without the attacker needing to kn...
010
Marta Beltrán @mbeltranpardo.bsky.social · 31/07/2025
Detecting code copying at scale with Vendetect blog.trailofbits.com/2025/07/21/d...
blog.trailofbits.com
Detecting code copying at scale with Vendetect
Vendetect is our new open-source tool for detecting copied and vendored code between repositories. It uses semantic fingerprinting to identify similar code even when variable names change or comments ...
000
Marta Beltrán @mbeltranpardo.bsky.social · 31/07/2025
Thorium: A scalable file analysis and data generation platform that allows users to easily orchestrate arbitrary docker/vm/shell tools at scale github.com/cisagov/thor...
github.com
GitHub - cisagov/thorium: A scalable file analysis and data generation platform that allows users to easily orchestrate arbitrary docker/vm/shell tools at scale.
A scalable file analysis and data generation platform that allows users to easily orchestrate arbitrary docker/vm/shell tools at scale. - cisagov/thorium
000
Marta Beltrán @mbeltranpardo.bsky.social · 22/07/2025
GPUHammer: Rowhammer Attacks on GPU Memories are Practical gpuhammer.com
gpuhammer.com
GPUHammer
000
Marta Beltrán @mbeltranpardo.bsky.social · 22/07/2025
Enter, Exit, Page Fault, Leak: Testing Isolation Boundaries for Microarchitectural Leaks www.microsoft.com/en-us/resear...
microsoft.com
Enter, Exit, Page Fault, Leak: Testing Isolation Boundaries for Microarchitectural Leaks - Microsoft Research
CPUs provide isolation mechanisms like virtualization and privilege levels to protect software. Yet these focus on architectural isolation while typically overlooking microarchitectural side channels,...
000
Marta Beltrán @mbeltranpardo.bsky.social · 17/07/2025
Talk, Trust, and Trade-Offs: How and Why Teens Use AI Companions www.commonsensemedia.org/research/tal...
commonsensemedia.org
Talk, Trust, and Trade-Offs: How and Why Teens Use AI Companions
Our new report finds that teens' AI companion use is commonplace, complicated, and sometimes concerning.
001
Marta Beltrán @mbeltranpardo.bsky.social · 17/07/2025
Could AI slow science? Confronting the production-progress paradox www.aisnakeoil.com/p/could-ai-s...
aisnakeoil.com
Could AI slow science?
Confronting the production-progress paradox
001
Marta Beltrán @mbeltranpardo.bsky.social · 17/07/2025
How web3 can support European creativity? The first open challenge that invites startups, developers, designers, legal experts, creatives and researchers across Europe to reimagine the next generation of copyright solutions ec.europa.eu/digital-buil...
ec.europa.eu
How Web3 can support European creativity
2025 Copyright Innovation Challenge
000
Marta Beltrán @mbeltranpardo.bsky.social · 14/07/2025
Architecture Documentation for the German National EUDI Wallet bmi.usercontent.opencode.de/eudi-wallet/...
bmi.usercontent.opencode.de
German National EUDI Wallet: Architecture Documentation
000
Marta Beltrán @mbeltranpardo.bsky.social · 14/07/2025
OpenID for Verifiable Presentations 1.0 Final Specification Approved openid.net/openid-for-v...
openid.net
OpenID for Verifiable Presentations 1.0 Final Specification Approved
The OpenID Foundation membership has approved OpenID for Verifiable Presentations 1.0 as an OpenID Final Specification. ·
000
Marta Beltrán @mbeltranpardo.bsky.social · 04/07/2025
Expert Group for a Technology Roadmap on Encryption (E04005) ec.europa.eu/transparency...
ec.europa.eu
Register of Commission expert groups and other similar entities
000
Marta Beltrán @mbeltranpardo.bsky.social · 03/07/2025
Report: Pathways to Private Enforcement of the Digital Services Act dsa-observatory.eu/2025/06/05/r...
dsa-observatory.eu
Report: Pathways to Private Enforcement of the Digital Services Act - DSA Observatory
By Paddy Leerssen, Anna van Duin, Iris Toepoel, and Joris van Hoboken Discussion of DSA enforcement tend to focus on regulatory action by the European Commission and national Digital Services Coordina...
000
Marta Beltrán @mbeltranpardo.bsky.social · 03/07/2025
The Commission has adopted a delegated act outlining rules granting access to data for qualified researchers under the Digital Services Act (DSA) digital-strategy.ec.europa.eu/en/library/d...
digital-strategy.ec.europa.eu
Delegated act on data access under the Digital Services Act (DSA)
The Commission has adopted a delegated act outlining rules granting access to data for qualified researchers under the Digital Services Act (DSA).
000
Marta Beltrán @mbeltranpardo.bsky.social · 02/07/2025
OWASP AI Testing Guide owasp.org/www-project-...
owasp.org
OWASP AI Testing Guide | OWASP Foundation
Methodology to perform an AI System Assessment
000
Marta Beltrán @mbeltranpardo.bsky.social · 02/07/2025
AI and Secure Code Generation www.lawfaremedia.org/article/ai-a...
lawfaremedia.org
AI and Secure Code Generation
AI is reshaping code security—shifting metrics, unknown bugs, and autonomous decisions humans may never understand.
000
Marta Beltrán @mbeltranpardo.bsky.social · 01/07/2025
Crash (exploit) and burn: Securing the offensive cyber supply chain to counter China in cyberspace www.atlanticcouncil.org/in-depth-res...
atlanticcouncil.org
Crash (exploit) and burn: Securing the offensive cyber supply chain to counter China in cyberspace
If the United States wishes to compete in cyberspace, it must compete against China to secure its offensive cyber supply chain.
000
Marta Beltrán @mbeltranpardo.bsky.social · 01/07/2025
OneLogin, Many Issues: How I Pivoted from a Trial Tenant to Compromising Customer Signing Keys specterops.io/blog/2025/06...
specterops.io
OneLogin, Many Issues: How I Pivoted from a Trial Tenant to Compromising Customer Signing Keys - SpecterOps
Critical vulnerabilities in OneLogin's AD Connector leaked authentication credentials, enabling account impersonation.
000
Marta Beltrán @mbeltranpardo.bsky.social · 01/07/2025
Initial Access Attack in Azure - Understanding and Executing the Illicit Consent Grant Attack in 2025 www.alteredsecurity.com/post/initial...
alteredsecurity.com
Altered Security
Global leader in hands-on learning for enterprise and cloud security education. Join 10000+ infosec professionals from 130+ countries
000
Marta Beltrán @mbeltranpardo.bsky.social · 30/06/2025
5GHOUL: Unleashing Chaos on 5G Edge Devices via Stateful Multi-layer Fuzzin asset-group.github.io/papers/5Ghou...
asset-group.github.io
000