L’aéroport de Genève attend le feu vert de Berne pour installer des caméras de reconnaissance faciale. La Suisse réfléchit aux bases légales tandis que la pratique s’est banalisée au Royaume-Uni. Faut-il ou non s’en inspirer ?
Avec la participation de Linus Gasser, C4DT.
The Blavatnik Interdisciplinary Cyber Research Center (ICRC) at Tel Aviv University is hosting its 15th annual Cyber Week Conference from June 23-26, 2025. Find out more here.
I found this short paper by John Kelsey and Bruce Schneier an insightful take on common fallacies in security – and how, despite not actually increasing security per se, they can still have beneficial side-effects, such making users feel more secure. Nonetheless, the people responsible for the security of their systems should have a clear-eyed (…)
Phishing campaigns aren’t limited to scammers being out for your money. This article depicts what is likely a state-affiliated phishing campaign, or at the very least one that is sympathetic towards the state’s interest, that targets Russian citizens looking to join Ukrainian paramilitary groups. It is noteworthy that the phishing sites appear to be spread (…)
In their article, the authors draw attention to the notion of data integrity and how integrity controls will take center stage in a world increasingly populated by AI agents, requiring verifiable, trustworthy personal data and computation. I found their layered perspective on understanding integrity failures particularly helpful, as it provides a comprehensive framework for identifying (…)
This acquisition, for the astronomical sum of $32 billion, clearly demonstrates the importance of cloud AND cybersecurity services. With access to a large customer base and a world-class multi-cloud security platform, Google aims to better compete with AWS and Azure in an area where it is still struggling to catch up with its rivals.
The Center for Education and Research in Information Assurance and Security (CERIAS) at Purdue University hosts a weekly cyber security, privacy, resiliency or autonomy speaker, highlighting technical discovery or case studies or exploring cyber operational approaches. Check out their extensive repository of talks here!
A team featuring CyLab researchers was honored with the Test of Time Award at the 2025 Symposium on Usable Security and Privacy (USEC 2025). The research team, featuring Patrick Gage Kelley (Ph.D.’12), CyLab alumnus; CyLab director Lorrie Cranor; and Norman Sadeh, co-director of Carnegie Mellon University’s Privacy Engineering Program.
CV Summit Zurich is Europe’s premium blockchain, AI, and emerging tech business event which convenes leaders, facilitates high-level discourse and connection. It takes place in Switzerland, a leading blockchain landscape and home of ‘Crypto Valley’.
Encryption is a way to ensure that data sent from one device to another can’t be read if intercepted. But what if the data pertains to criminal activity? Ana-Maria Cretu from EPFL’s Security and Privacy Engineering Lab shares her expertise on safety versus privacy concerns.
Während es sehr begrüßenswert ist, dass der Bund sich augenscheinlich dafür entschieden hat, eine lokale in-house Lösung für die KI-Anwendung “Gov-GPT“ zu nutzen, ist es problematisch, dass das sogenannte “Open Source Large Language Model“ Llama von Meta ist. Von dem oft angebrachten Kritikpunkt, dass diese Modelle nur dem Namen nach “Open Source“ sind, da die (…)
This article is interesting because it explains the reasons for Google’s change of position on Android OS development. The company is moving away from public contributions to the Android Open Source Project (AOSP) to streamline development and reduce merge conflicts. While Google commits to releasing source code post-release, reduced transparency remains a concern, as it (…)
23andMe has filed for bankruptcy, raising concerns about data privacy. This article offers tips to the 15 million users of this direct-to-consumer service on how to delete their accounts. The research community proposed robust solutions to protect genetic data, yet it is unclear whether the company implemented any, given the massive hack it suffered last (…)
This is a curated list of proposed subjects for the upcoming year for our C4DT partners. You can find more suggestions here: Additional Subjects. The projects are split in two categories: hands-on workshops, which are a 1-day training on a given subject, and project suggestions, based on current research of our affiliated labs: Summary of (…)
This is an additional set of hands-on workshops and projects for the upcoming year for our C4DT partners. You can find the chosen selection here: Main Subjects. The projects are split in two categories: hands-on workshops, which are a 1-day training on a given subject, and project suggestions, based on current research of our affiliated (…)
AI for Good is identifying innovative AI applications, building skills and standards, and advancing partnerships to solve global challenges.
The summit is organized by ITU in partnership with over 40 UN Sister Agencies and co-convened with the Government of Switzerland.
The Spring Crypto Day 2025 will take place in the Aula Polivalente, East Campus of the “Università della Svizzera italiana” – or USI for short. The East Campus of USI is located in Lugano (Switzerland), in Via la Santa 1, Viganello neighborhood. USI is Switzerland’s most international university, and one of the 12 certified public universities in Switzerland coordinated by swissuniversities.
AI plays a vital role in the digitalization of the public sector. The strategy for integrating AI systems within the Swiss Federal Administration highlights the need for a multipronged approach. While I agree that developing skills and building trust are essential initial steps and likely top priorities, the true challenge lies in addressing the lack (…)
This news illustrates how quantum technologies require forward planning in cybersecurity on unprecedented timescales (2035!), to protect against threats that exist in theory before they materialize in practice. What makes this particularly interesting is the proactive approach: the NCSC is implementing a ten-year strategic roadmap to prevent future breaches. The three-phase timeline recognizes both the (…)
Supply chain attacks will continue to hit the news in an increasingly interconnected development ecosystem as organizations rely on third-party components and actions. This seems inevitable. What I find interesting about this case is the threat actors’ approach to compromise software while it is still under development, which sets itself apart from attacks such as (…)
Whether it is part of the global AI-wars or simply an effort to adapt the education system to the rise of Generative AI, AI is making its way into schools. I see immense potential in personalized learning experiences and the profound disruption AI can bring to education systems. This article explores how nations have started (…)
Surveillance of children’s activities is being practiced by schools not only for security reasons but also with the intention of ensuring children’s well-being. On top of that, this article suggests that AI has unencrypted access to students’ activities and discussions. I like this article because it raises important concerns, poses open-ended questions, and sheds light (…)
A brief reminder that in an era of a destabilising security context in Europe and the resulting growing threat of cyber attacks on day-to-day infrastructure, having a stash of cash sufficient for basic groceries at home is a simple precaution everyone should take.
Le réseau Pravda, basé à Moscou, injecte des masses considérables de faux contenus dans les services d’IA d’OpenAI comme de Google. En parallèle, l’administration américaine somme les scientifiques de l’IA d’éliminer les «biais idéologiques» de leurs modèles.
Avec la participation de Jean-Pierre Hubaux, directeur académique du C4DT.