Saturday, December 9, 2023
Kiratas
  • Home
  • World
  • Lifestyle

    Trending Tags

    • Pandemic
  • Business
  • Entertainment
  • Sports
No Result
View All Result
  • Home
  • World
  • Lifestyle

    Trending Tags

    • Pandemic
  • Business
  • Entertainment
  • Sports
No Result
View All Result
Kiratas
No Result
View All Result
Home World

AI Security: No, we won’t all die. But there’s enough to do!

Eliza Houghton by Eliza Houghton
September 9, 2023
in World
0
AI Security: No, we won’t all die.  But there’s enough to do!
0
SHARES
2
VIEWS
Share on FacebookShare on Twitter

If you try to figure out whether we have already passed the peak of the AI ​​hype, a two-part picture emerges at the moment: On the one hand, the user numbers of ChatGPT and Co., which initially went through the roof, are falling again in many places. On the other hand, the number of AI tools, services, applications and use cases continues to explode unabated. But only a few offers have so far managed to remain in the general consciousness. Online discussions are increasingly characterized by critical voices questioning the universal applicability and efficiency of chatbots.

Advertisement

svg%3E

He has a weakness for risks and writing about cyber: In his main job as cofounder and CTO of intcube GmbH, David Fuhr rages and rages in this column about current incidents and general truths of information security.

KI: Here to stay

But the party is by no means over. It is the usual course of things that hyped topics have to struggle through the valley of disappointment after the climax, which inevitably comes. The question is whether the topics from the valley will reappear or disappear forever in the sinking of shattered tech dreams. When it comes to generative AI, there is some evidence that it is here to stay. Not only is the number of skills in which Large Language Models (LLMs) are superior to humans constantly increasing, but also the speed at which the systems reach individual milestones.

We are learning more and more about possible vulnerabilities and attacks on LLMs. To a certain extent, this indicates a normalization of the topic: Just as there are OWASP, MITER, ISO and IT-Grundschutz security standards and best practices for enterprise IT, mobile and cloud, all of this is now slowly coming to AI too -Usage and operation. It becomes clear when looking at version 1.0 of the OWASP Top 10 for Large Language Model Applications, which was published at the beginning of August. In order to cope with the new situation, it is necessary to combine well-known knowledge with new knowledge.

The top ten list includes run-of-the-mill vulnerabilities that would affect any other IT infrastructure, such as Supply Chain Vulnerabilities (LLM05) and Insecure Plugin Design (LLM07). Although these have a special flavor due to the special features of AI apps, weak points in the supply chain and insecurely designed components have been known for years – along with countermeasures and the difficulties of implementing them in practice and on a broad scale.

AI has many weaknesses

Then there are vulnerabilities that get a new twist when they appear in AI systems. This is the case with Insecure Output Handling (LLM02), where we have to be particularly careful about what AI could generate in there due to the unpredictability of the output. With Sensitive Information Disclosure (LLM06), the unpredictability can lead to data leaks. Where the computational intensity and complexity of LLMs make it difficult to guarantee availability at any price, this is called Model Denial of Service (LLM04). Model Theft (LLM10) is ultimately a normal digital theft of IP (Intellectual Property), but can be carried out using completely new methods; for example, skillfully asking individual, innocent questions en masse.

Then of course there are vulnerabilities that can only exist in AI applications. For example, training data poisoning (LLM03) is a problem only because machine learning, by definition, relies on training data. Prompt Injection (LLM01) has long since become the new national sport. The attempt is to use cleverly manipulated prompts to seduce LLMs into deviating from the path of their alignment and being less politically correct or intentionally giving wrong answers.

Finally, there are those vulnerabilities that point beyond the actual problems of AI and back at ourselves: Excessive Agency (LLM08) and Overreliance (LLM09). The fact that we increasingly rely, consciously or unconsciously, on the output of AI models, their assessments or even their decisions reveals the true threat potential of the technical revolution as a whole.

Against this background, it is good that we can now use some of the hype energy that has been released to focus on the problems, dangers and limitations of AI. It is important to use this – specifically, without falling into a “we will all die” reflex. There is enough to do.

(pst)

To the homepage
#Security #wont #die

Tags: #saukontroversArtificial IntelligenceDielarge language modelsLLMOWASPOWASP Top 10SecuritySecurity gapswont
Previous Post

‘My Brow Pencil’: Benefit’s best-selling eyebrow pencil

Next Post

Alfredo Sepúlveda: “The Chilean right continues to see the 1973 coup d’état as a political solution to a crisis with no way out”

Eliza Houghton

Eliza Houghton

Related Posts

40 years of democracy: more than ever
World

40 years of democracy: more than ever

by Eliza Houghton
December 9, 2023
The illustration draws a new youth for the classics
World

The illustration draws a new youth for the classics

by Eliza Houghton
December 9, 2023
Nobel Peace Prize winner Narges Mohammadi begins a hunger strike on the day of the award ceremony
World

Nobel Peace Prize winner Narges Mohammadi begins a hunger strike on the day of the award ceremony

by Eliza Houghton
December 9, 2023
European Interest Bank
World

European Interest Bank

by Eliza Houghton
December 9, 2023
La Real tears Villarreal to shreds in ten minutes
World

La Real tears Villarreal to shreds in ten minutes

by Eliza Houghton
December 9, 2023
Next Post
Alfredo Sepúlveda: “The Chilean right continues to see the 1973 coup d’état as a political solution to a crisis with no way out”

Alfredo Sepúlveda: “The Chilean right continues to see the 1973 coup d'état as a political solution to a crisis with no way out”

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

Premium Content

Correa, Atlético’s guardian angel, who does not lose when he scores

Correa, Atlético’s guardian angel, who does not lose when he scores

October 2, 2023
A massive protest by public employees shakes the Canadian province of Quebec

A massive protest by public employees shakes the Canadian province of Quebec

November 8, 2023
#TGIQF – The iMac 25th Anniversary Quiz

#TGIQF – The iMac 25th Anniversary Quiz

August 18, 2023

Browse by Category

  • Science
  • Sports
  • World

Browse by Tags

America amnesty Apple Artificial Intelligence attack attacks China Court data due Economy Europe Gaza Gaza Strip Germany Google government Hamas health investiture iOS iPhone Israel law live Madrid Microsoft million news people Politics PSOE Russia Security Spain Sports Sánchez Ukraine United States Updates Vulnerabilities war workshop world years
Kiratas

Latest News from World, Health, Politics, Sports, Business, Education, Technology, Arts and Latin America, the Middle East, South Asia.

Categories

  • Science
  • Sports
  • World

Browse by Tag

America amnesty Apple Artificial Intelligence attack attacks China Court data due Economy Europe Gaza Gaza Strip Germany Google government Hamas health investiture iOS iPhone Israel law live Madrid Microsoft million news people Politics PSOE Russia Security Spain Sports Sánchez Ukraine United States Updates Vulnerabilities war workshop world years

Recent Posts

  • 40 years of democracy: more than ever
  • The illustration draws a new youth for the classics
  • Nobel Peace Prize winner Narges Mohammadi begins a hunger strike on the day of the award ceremony
  • About Us
  • Home
  • Privacy Policy
  • Terms and Conditions

© Aroged 2023. All Rights Reserved.

No Result
View All Result
  • Home
  • Landing Page
  • Buy JNews
  • Support Forum
  • Contact Us

© Aroged 2023. All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.