The Guardian

Latest news, sport, business, comment, analysis and reviews from the Guardian, the world's leading liberal voice

Carrick tells Manchester United to keep calm and carry on after Hull humbling

  • Bruno Fernandes: ‘We gave too much of the ball to them’

  • Sergej Jakirovic happy Hull proved critics wrong

Michael Carrick says he will not overreact, but has called for improvement after Manchester United started the season with a 2-0 defeat at Hull. United lost their opening game for the fourth time in the past seven years as Semi Ajayi and Nobel Mendy took advantage of poor defending from set-pieces.

The United head coach presented a professional exterior despite United’s performance not reaching the desired standard as they were deservedly beaten by Hull, who finished sixth in the Championship last season.

Continue reading...

Rijnmond - Nieuws

Het laatste nieuws van vandaag over Rotterdam, Feyenoord, het verkeer en het weer in de regio Rijnmond

Dakbrand in historisch pand |Busje brandt volledig uit

In dit blog houden we je op de hoogte van het belangrijkste en meest opvallende 112-nieuws in de regio van zaterdag 22 augustus.

Busje brandt volledig uit | Twee bestuurders gewond geraakt bij botsing

In dit blog houden we je op de hoogte van het belangrijkste en meest opvallende 112-nieuws in de regio zaterdag 22 augustus.

Wel.nl

Minder lezen, Meer weten.

Serena Williams gaat met Alcaraz dubbelen op US Open

NEW YORK (ANP) - Serena Williams maakt haar rentree op de US Open in het gemengd dubbelspel. De Amerikaanse tennisster gaat een koppel vormen met Carlos Alcaraz, de Spaanse titelverdediger bij de mannen. Het duo heeft een wildcard gekregen, zo maakten de organisatoren van het laatste grandslamtoernooi van het seizoen bekend.

De 44-jarige Williams keert na vier jaar terug op de US Open, het toernooi waar ze zes titels won. De Amerikaanse schreef 23 keer een grandslamtoernooi op haar naam. Op de US Open won ze in 1998 met Max Mirnyi het gemengd dubbelspel.

Het gemengd dubbelspel op de US Open heeft een aantrekkelijk deelnemersveld. Aryna Sabalenka, de nummer 1 van de wereldranglijst uit Belarus, vormt een combinatie met de Serviër Novak Djokovic. Jessica Pegula vormt een Amerikaans koppel met Taylor Fritz.

Het laatste grandslamtoernooi van het seizoen begint eind deze maand in New York.


Wielrenster Wiebes boekt derde ritzege in Groot-Brittannië

HAY-ON-WYE (ANP) - Wielrenster Lorena Wiebes heeft in Wales haar derde ritzege geboekt in de Ronde van Groot-Brittannië. De Nederlandse topsprintster van SD Worx - Protime was in de vierde etappe na ruim 138 kilometer en een aantal klimmetjes de snelste in de straten van Hay-on-Wye.

De Duitse Liane Lippert eindigde als tweede, voor Kimberley Le Court uit Mauritius. Le Court, de winnares van de derde etappe, behield de leiderstrui.

Wiebes won eerder deze week de eerste twee etappes van de rittenkoers. Ze staat op de derde plaats in het klassement, op bijna een halve minuut van Le Court. Lippert bezet de tweede plaats.

De Ronde van Groot-Brittannië duurt tot en met zondag.


Wielrenner Philipsen wint vierde etappe Renewi Tour voor Kooij

BILZEN (ANP) - Wielrenner Jasper Philipsen heeft de vierde etappe van de Renewi Tour gewonnen. De Belg van Alpecin - Premier Tech was na een rit over ruim 187 kilometer tussen Riemst en Bilzen een fractie sneller dan de Nederlander Olav Kooij. Het was de tweede etappezege in de rittenkoers van Philipsen, die ook de leiderstrui overneemt van zijn landgenoot Jenno Berckmoes.

Philipsen versloeg Kooij op de oplopende finishstraat dankzij een ultieme jump op de streep. De Italiaan Alessandro Borgo werd derde, voor Dylan Groenewegen.

De laatste renners van de vroege vlucht werden op 20 kilometer van de streep ingelopen door het peloton. De Deen Søren Kragh Andersen vertrok daarna alleen, maar hij werd in de laatste kilometer gegrepen.

Zondag staat de laatste etappe van de rittenkoers op het programma; een heuvelrit over 184 kilometer met start en finish in Leuven.


Frankrijk levert extra luchtafweer aan Oekraïne

Oekraïne krijgt na een nieuwe nacht met dodelijke Russische luchtaanvallen meer luchtafweer van Frankrijk. De Oekraïense president Volodymyr Zelensky heeft gebeld met zijn Franse evenknie Emmanuel Macron en die zegde hem toe meer raketten te leveren, meldden beiden op X.

"Het is cruciaal om Oekraïne alle nodige middelen te geven om zijn lucht te verdedigen en deze agressie af te wenden", aldus Macron. Hij schreef dat Rusland systematisch burgers in Oekraïne aanvalt en dat Moskou gestopt moet worden. Hij wil daarom niet alleen militaire steun aan Oekraïne leveren, maar ook de druk op Rusland blijven opvoeren.

Zelensky dankte Macron voor de extra steun. De Oekraïense president hamert al weken op het belang van extra luchtafweer. Aan de frontlinie lijken de Oekraïners de Russische opmars zo goed als tot stilstand te brengen, maar doordat de munitie van luchtverdediging opraakt kan het land zich slecht verdedigen tegen raketten en drones.


Kogelstootster Schilder na EK-titel tweede bij Diamond League

CHORZÓW (ANP) - Kogelstootster Jessica Schilder is bij de Diamond League-wedstrijd in Chorzów in Polen als tweede geëindigd. De 27-jarige Volendamse kwam tot een afstand van 20,20 meter. De zege ging naar de Amerikaanse Chase Jackson, die 20,92 meter noteerde. Jorinde van Klinken werd negende en laatste met 17,47 meter.

Schilder verzekerde zich een kleine twee weken geleden voor de derde keer op rij van de Europese titel bij het kogelstoten. In Birmingham stootte ze de kogel 20,73 meter ver. Van Klinken behaalde zilver en won goud bij het discuswerpen.


Banca Generali bestudeert ongevraagd overnamebod van concurrent

MILAAN (ANP/BLOOMBERG) - De directie van de Italiaanse bank Banca Generali bestudeert het ongevraagde overnamebod van Banca Monte dei Paschi di Siena, de oudste bank ter wereld. "Hoewel momenteel een grondige analyse van de voorwaarden van het bod plaatsvindt, geeft Banca Generali binnen de wettelijke termijn en volgens de voorgeschreven procedures zijn oordeel over het bod," aldus de bank.

"Daarbij moet worden opgemerkt dat het bod niet op verzoek van Banca Generali is uitgebracht en ook niet vooraf met het bedrijf is afgestemd."

Vrijdag werd bekend dat Banca Monte dei Paschi di Siena zijn Italiaanse concurrenten Banca Generali en Banco BPM wil overnemen in twee afzonderlijke biedingen. Daarmee wil Monte dei Paschi voorkomen dat het zelf wordt overgenomen door de grotere Italiaanse bank Intesa Sanpaolo, die in juni een bod uitbracht.

Het bod op Banco BPM, dat volledig uit aandelen bestaat, heeft een waarde van 25,3 miljard euro. Voor Banca Generali biedt Monte Paschi 8,7 miljard euro.


AI-Spam op Linkedin

No worries, het gaat geen langlopend thema worden. Denk ik dan. Het is gewoon dat ik berichten nét te integreren vind om zomaar voorbij te laten gaan. Nu weer op nu.nl, die het doorplaatsten van tweakers, die het van Linkedin zelf hebben. Whoop whoop, de strijd tegen “AI-slop”, tegen “berichten gemaakt met AI”, LinkedIn heeft de oplossing, die wordt gebruikt én het werkt. Tja.

Never read the comments. Maar je kunt het al redelijk voorspellen: bij tweakers is het sentiment sowieso nogal anti-LinkedIn. Bij LinkedIn, zowel het oorspronkelijk bericht als het Nederlandstalige bericht erover, bevat het hele spectrum: van “hoera, eindelijk”, tot “maar wat is dan AI-slop?” of “is dit dan het enige soort berichten waar je je aan mag/kunt storen?” (en ja, de “reageer met XYZ en dan stuur ik je de pdf” zouden wat mij betreft veel eerder verbannen mogen worden dan berichten waar AI een bijdrage aan geleverd heeft). Hier ook de terechte aantekening dat detectie van “geschreven door/met AI” echt zó vreselijk onbetrouwbaar is, dat het zó gemakkelijk is dat de tools teksten die 100% door een mens geschreven zijn als 100% door AI geschreven detecteren. Hoezo, “een bericht op Linkedin dat emoji’s gebruikt is door AI geschreven?”. Je bedoelt dat jij dat niet ook handmatig al die jaren al gedaan hebt??

Niemand durft meer een em-dash te gebruiken (—) omdat het synoniem geworden is voor “door AI-gegenereerde tekst”.

Afgelopen week had ik iemand op bezoek die een offerte gaat maken voor het herstel van metselwerk van ons huis. Het gesprek ging, bij een kop koffie nadat we de technische details besproken hadden die hij nodig had om de offerte te kunnen maken, op een gegeven moment over het gebruik van AI voor het (in concept) beantwoorden van de vele mails die hij kreeg. We hebben het uiteindelijk gehad over wanneer ik als (potentiële) klant het vervelend of niet zou vinden als hij AI zou gebruiken in het contact met mij. Als ik er sneller een initiële reactie mee zou kunnen krijgen niet (het is écht heel moeilijk op dit moment om wie dan ook maar op bezoek te krijgen voor een offerte als je iets aan je huis gedaan wilt hebben), wellicht sneller een offerte, beter uitgewerkt, etc.
Een AI-weergave van hoe de reparaties er uit gaan zien op basis van de foto’s die hij tijdens het gesprek gemaakt had? Hmmm, dan zou ik het fijn vinden als hij daar een lokaal model voor gebruikt.

De uiteindelijke inschatting of we met elkaar in zee gaan wordt voor 90% bepaald door mijn indruk van zijn expertise tijdens het bezoek en 10% door het offertebedrag. En 0% door of hij AI gebruikt of niet. Zo lees ik LinkedIn berichten ook. Veel zijn (inderdaad) inhoudelijk echt dramatisch. Het is een raar platform aan het worden (al een tijdje). Ja, “Facebook voor mensen met een baan” wordt het vaak genoemd. Hebben eigenlijk al dit soort online platforms nogal last van. Of mensen of bedrijven dan nu AI gebruiken om (een deel van) hun berichten te schrijven zal me eigenlijk nogal worst wezen. En het voordeel van een eigen weblog? Daar mag ik dat vinden, het is niet alsof er veel mensen zijn die er hier wat anders over gaan roepen in de reacties namelijk! 😉

Het bericht AI-Spam op Linkedin verscheen eerst op ICT en Onderwijs BLOG.

Formula 1 News

Formula 1® - The Official F1® Website

Antonelli set for grid penalty at Italian Grand Prix

Mercedes Team Principal Toto Wolff has confirmed championship leader Kimi Antonelli is set to take a significant grid penalty at his home event, the Italian Grand Prix.

VK: Voorpagina

Volkskrant.nl biedt het laatste nieuws, opinie en achtergronden

Verdachte explosies bij Nord Stream werkte mee aan Hollywoodfilm over de sabotageactie

‘Double-tap’ bij aanval op winkelcentrum in Kryvyj Rih past in Russisch én wereldwijd patroon

wrought iron WAVE

Greg Adams Photography posted a photo:

wrought iron WAVE

Hatboro, PA,

The Register

Biting the hand that feeds IT — Enterprise Technology News and Analysis

If you're not using AI to attack your own systems, your adversaries will

AI agents excel at hacking organizations, as they’ve demonstrated in real-life attacks multiple times over the past few weeks. They also expose a whole new attack surface for organizations trying to protect against both human and AI intrusions. As if defenders needed more worries to keep them up at night, agents introduce new data-integration channels that attackers can abuse. They also introduce a new type – and ever growing number – of non-human identities that are difficult to manage and can bypass traditional, static security policies. “There is tremendous risk associated with agentic AI and machine identities,” Matt Hartman, former acting head of cyber of the US Cybersecurity and Infrastructure Security Agency (CISA), told The Register. “As AI moves from generating content – yesterday's use case – to taking actions, it is inevitable that agents are going to receive access to sensitive systems and sensitive data,” Hartman said. “One area where organizations are struggling today is that they're going to need to treat every agent as a privileged identity.” Enterprises also face agentic threats from outside their organization, he added. “AI-enabled or AI-amplified identity and social engineering attacks are increasing significantly by the minute,” Hartman said. “We're seeing very highly personalized phishing, very good impersonation, automated reconnaissance. That really makes traditional indicators of trust increasingly unreliable.” For defenders, this means a “continued focus on strong identity, on phishing-resistant authentication, on behavioral signals, and on zero-trust principles therein,” he added. “Nothing deeply new here - but it is a whole new attack surface.” Meanwhile, on the attackers’ side, agents don’t take time off, and they remain singularly focused on completing a task, whether that’s finding vulnerabilities and exploit chains or mapping networks and identifying sensitive files. All of this makes these near-autonomous attack bots a gift from the heavens for financially motivated criminals and government-backed cyber operatives. It also presents a security use case for defenders: agentic red teaming. As former NSA cyber boss Rob Joyce said during a talk at RSAC: if you aren’t using AI agents to attack your own organizations, you can bet that someone else is. “You are going to be red-teamed whether you pay for it or not,” Joyce said. “The only difference is, you know who gets the results delivered to them.” Hartman echoed Joyce’s words. “What we are seeing as the leading capabilities to help defenders – there is a burgeoning market for continuous, AI-native, AI-enabled, automated red teaming and pen-testing,” he told us. After spending nearly two decades in the federal government at CISA, Hartman joined Merlin Group in October as its chief strategy officer. In his new private-sector role, he helps determine which early- to growth-stage cybersecurity and emerging technology companies the group invests in, and then works with these firms to navigate government, critical infrastructure, and other highly regulated markets. The goal is to integrate and scale “promising technologies” into critical environments, Hartman said. Right now, most of these technologies use AI agents to fight AI agents. “Organizations are just inundated with vulnerabilities, and adversaries are able to leverage AI to find vulnerabilities and exploit them in seconds when it used to take days,” he said. Agentic red teaming “is a category of products that every organization, including federal agencies, absolutely needs in the near term just to keep pace.” 'Largest controlled live AI cyberattack on record' Mandiant founder and former CEO Kevin Mandia has a new company, Armadin, which launched in March with a startling $190 million in seed and Series A funding. The firm builds and trains autonomous attacker swarms – thousands of AI agents that run 24/7 in organizations’ infrastructure to simulate real-life attackers. Ahead of Black Hat earlier this month, the startup said it and Tenex.ai, an agentic security operations provider, executed what they called the “largest controlled live AI cyberattack on record” for an unnamed “leading” global institution. Over the three-day attack, Armadin's swarm generated 17 million offensive actions, discovered 38 validated attack paths, and produced 238 security findings. Tenex.ai's agentic platform separately triaged 100 percent of 101,169 alerts and reconstructed the entire attack across 231 billion raw events. This exercise, we’re told, would have taken a five-person analyst team about 2,400 hours – or four months – to pull off. Co-founder and Chief Offensive Security Officer Evan Peña was the global red-team lead at Mandiant before co-founding Armadin. At Mandiant, he led a 210-person team whose members spanned the globe. “The problem was it was 100 percent human-led security assessments, and that would generally limit the amount of time that we would have,” Peña told The Register. His red team “would do a couple weeks or a one-month engagement, and then we would report on the engagement, give them a PDF file, walk away, and they would hire us again in a year. In today’s age of AI, it’s very archaic to think about that when we can scale so significantly with AI.” Attack yourself before someone else does At Armadin, Peña leads the human team that trains the AI agents. One of the lessons learned from OpenAI’s models autonomously attacking Hugging Face, according to Peña, is that organizations need to perform safe offensive AI attacks against their own systems. "Safe" is the keyword here: remember OpenAI’s rogue models intentionally didn’t have any guardrails in place. Yes, his statement is self-serving as it's core to Armadin's business. But he’s not wrong. “Organizations can cover so much more attack surface because we are able to leverage these agents at scale, and we have three things that we didn’t have before,” he said. “We have more time, because agents don’t sleep and they don’t take holidays. There’s no workforce requirements for them.” Number two, he said, is expertise. Attack agents need pre-training before they are set loose on organizations’ infrastructure. They need to know how to code, and perform source-code review. They need to know how to do application security, how to spot network misconfigurations, and hack into different systems and networks. “And then you add post-training to that from human expertise,” Peña said. “Number three is coverage,” he said. “We were only able to cover a finite amount of attack surface in the past. So if you had 10,000 external systems with a limited amount of time and humans, you could maybe cover 2,000 or 1,000 of those within that particular period of time. Now we can cover all 10,000 in probably hours.” Armadin’s AI agents have broken into every single customer’s environment, according to Peña. “We have found over 50 zero-days, and by zero-days, I don't just mean this zero-day allowed you to deface a web page. That’s cool, but I want to break into your network from the internet,” he said. “The zero-days I'm referring to allow an attacker to get remote code execution on an actual system. They're very high-impact zero-days. We don't care about noise, we care about impact.” Quarterly pen-testing doesn't cut it anymore The biggest challenge these days for defenders is the scale and speed AI brings to previously manual attackers’ dirty work – like scoping potential victims, performing reconnaissance, identifying vulnerable systems and exploits, and reading logs. Now all of these tasks can be automated. Penetration testing needs to keep up, Jay Bavisi, founder and group president of EC-Council, told The Register. The largest and best organizations do pen-testing once a year to meet compliance requirements, and “the better ones” run these exercises quarterly, Bavisi said. This is largely because human-led pen-tests take about three months. “So you have a serious problem with speed,” he said in an interview. “Then comes the second problem, which is scope. Nobody pen tests the entire organization.” There’s also what Bavisi calls a “sophistication problem,” because different human pen-testers will produce varied results, and organizations can’t hire hundreds of thousands of humans to try to break into their networks on a continuous basis. “The bad guys are already using AI to get rid of the speed problem. You pen-test once a year for compliance. They do it all the time because you're a gold mine. They don't have a scope problem because they're not just looking at the crown jewels - they're looking at your entire organization. And they don't have a sophistication problem because they're using algorithmic systems.” In June, the global cybersecurity training organization began offering pen-testing professionals a sponsored attempt to take the CPENT AI examination, and upskill themselves for the AI era. For every participant who passes, the council donates $1,000 in cybersecurity training and certification credits to nonprofit partners. For every completed training program, regardless of an exam pass or fail, the nonprofits get $250, and all of this has a $1 million max. “The traditional model of pen-testing once a year or once a quarter, that’s going away, and AI will take over with automated pen-testing,” Bavisi said. “But will the role of pen testers vanish? No, it will not. It will evolve into something much bigger and something far more important.” AI systems and AI-integrated applications mean there’s a lot more for security professionals to try to break and break into, and humans need to determine: What is the result of this system breaking? What’s the business impact? What do I prioritize fixing? “The present pen-testers have to be reskilled into understanding business impact and being able to make those important engineering decisions,” Bavisi said. Meanwhile, “offensive AI security professionals are the ones that are going to have to test the robustness of AI systems, because AI systems will become the heartbeat of organizations,” he added. “Pen-testers have to become masters of testing LLMs, understanding agentic behavior, thinking about what is the harm taxonomy, figuring out what kind of guardrails did we put in place.” The job of pen-testers has changed, in other words. “It now has a far wider scope.” ®

The big gate under the blue sky

Kyu John has added a photo to the pool:

The big gate under the blue sky

kottke.org

Jason Kottke's weblog, home of fine hypertext products

Jodi Ettenberg on living grief and a serendipitous...

Jodi Ettenberg on living grief and a serendipitous discovery. “Living grief lacks the tapestry of rituals, language, and social permissions around grieving that a person is offered with death.”

Vakjury. De nieuwe 'schoen' van Chanel

schoeisel

Misschien heeft actrice Margaret Qualley, bekend van Tarantino's voetenvoorliefde, er de poten gewoon niet voor, maar als vrouwelijk schoon door de moderne mores over trottoirs moet tippelen op nog geen vierde van een 'schoen', aan de hiel gehouden door een touwtje, dan wordt het toch echt tijd voor een schoeiselstrijd. Vergeet muiltjes, hakjes, sandalen, slippers, instappers, laarsjes en gympen - de halve zool is het helemaal. Achilleshiel: de dropveter bij Chanel die dit heeft bedacht moet wel Flintstones-fan of vrouwenhater zijn. En omdat ze vast ook nog 1200 dollar per stuk kosten zeggen wij tegen alle vrouwen: eis de zool op. Enfin, wat voor u?

"Shoeless shoes"

Social

Zoolloos en zielloos

Social

Getoond bij de première van de nieuwe Ridley Scott

Social

MetaFilter

The past 24 hours of MetaFilter

Yellow journalism at its finest

Why is this mustard different from all others? A journalist explores why a jar of mustard from Costco suddenly tastes a lot different than expected. Why? The answer Maille surprise you. Fun fact: there is a Mustard Brotherhood of Dijon, devoted to preserving the art of traditional mustard-making while wearing medieval-style yellow garb.

Oud-wereldkampioen boksen Zolani Tete (38) voor zijn huis in Zuid-Afrika doodgeschoten

De Zuid-Afrikaanse politie spreekt van twee gewapende verdachten met bivakmutsen. Er zijn nog geen arrestaties verricht.