Fun

AI ‘Skeleton Key’ attack found by Microsoft could expose personal, financial data

News Feed - 2024-06-29 06:06:34

Tristan Greene2 hours agoAI ‘Skeleton Key’ attack found by Microsoft could expose personal, financial dataAside from being wary about which AI services you use, there are other steps organizations can take to protect against having data exposed.617 Total views2 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksMicrosoft researchers recently uncovered a new form of “jailbreak” attack they’re calling a “Skeleton Key” that’s capable of removing the protections that keep generative artificial intelligence (AI) systems from outputting dangerous and sensitive data. 


According to a Microsoft Security blog post, the Skeleton Key attack works by simply prompting a generative AI model with text asking it to augment its encoded security features.Skeleton Key


In one example given by the researchers, an AI model is asked to generate a recipe for a “Molotov Cocktail” — a simple firebomb popularized during World War II — and the model refused, citing safety guidelines.Source:Microsoft Security


The Skeleton Key, in this case, was simply telling the model that the user was an expert in a laboratory setting. The model then acknowledged that it was augmenting its behavior and subsequently outputted what appeared to be a workable Molotov Cocktail recipe.


While the danger here might be mitigated by the fact that similar ideas can be found through most search engines, there is one area where this form of attack could be catastrophic: data containing personally identifiable and financial information.


According to Microsoft, the Skeleton Key attack works on most popular generative AI models including GPT-3.5, GPT-4o, Claude 3, Gemini Pro, and Meta Llama-3 70B.Attack and Defense


Large language models such as Google’s Gemini, Microsoft’s CoPilot, and OpenAI’s ChatGPT are trained on data troves often described as “internet sized.” While that may be an exaggeration, the fact remains that many models contain trillions of data points encompassing entire social media networks and information depository sites such as Wikipedia.


The possibility that personally identifiable information such as names connected to phone numbers, addresses, and account numbers exists within a given large language model’s dataset is only constrained by how selective the engineers who trained it were with the data they chose.


Furthermore, any business, agency, or institution spinning up its own AI models, or adapting enterprise models for commercial/organizational use are also at the mercy of their base model’s training dataset. If, for example, a bank connected a chatbot to its customer’s private data and relied on existing security measures to prevent the model from outputting PID and private financial data, then it’s possible that a Skeleton Key attack could trick some AI systems into sharing sensitive data.


According to Microsoft there are several steps organizations can take to prevent this from happening. These include hard coded input/output filtering and secure monitoring systems to prevent advanced prompt engineering beyond the system’s safety threshold.


Related:US presidential debate inexplicably omits AI and quantum# Google# Security# Microsoft# AI# Meta# OpenAIAdd reaction

News Feed

While Darknet Users Search for New Markets, Global Law Enforcement Reveals Mass Arrests
While Darknet Users Search for New Markets, Global Law Enforcement Reveals Mass ArrestsDuring the last month since the fall of Empire Market, darknet market (DNM) patrons have been
New Cypherpunk Podcast Debuts Discussing Cryptoanarchy
New Cypherpunk Podcast Debuts Discussing Cryptoanarchy The Cypherpunk Bitstream podcast hosted by cryptoanarchists @thefrankbraun and @TheRealSmuggler has just released its secon
Deutsche Telekom announces Bitcoin mining plans at BTC Prague
Josh O"Sullivan10 hours agoDeutsche Telekom announces Bitcoin mining plans at BTC PragueDeutsche Telekom’s plans and Web3 expansion follow its recently established position as a validator on Fetch.ai’s decentralized
Elon Musk’s Warning About Government Spending and Unrealized Gains Tax Proposal Highlights Benefits of Bitcoin
Elon Musk"s Warning About Government Spending and Unrealized Gains Tax Proposal Highlights Benefits of Bitcoin A warning by Tesla and Spacex CEO Elon Musk about the mounting nation
Hut 8 pays off $38M Anchorage Digital loan as it looks at AI expansion
Derek Andersen4 hours agoHut 8 pays off $38M Anchorage Digital loan as it looks at AI expansionAnchorage Digital converted the debt into common stock at a 51% premium.1343 Total viewsListen to article 0:00NewsOwn this pi
Tom Mitchelhill9 hours agoThe Metaverse is real: Zuck’s ‘incredible’ photorealistic tech wows crypto TwitterOften roasted for his metaverse tech demos, Zuckerberg appears to have blown away internet users with his
South Korea, Singapore, Japan Top Countries Most Impacted by FTX Collapse: Report
South Korea, Singapore, Japan Top Countries Most Impacted by FTX Collapse: Report A new analysis shows that the countries most impacted by the collapse of cryptocurrency exchange F
US Senator Lummis Thinks ‘Bitcoin Is Something That the Fed Should Hold on Its Balance Sheet’
US Senator Lummis Thinks "Bitcoin Is Something That the Fed Should Hold on Its Balance Sheet" Cynthia Lummis, the U.S. Republican senator from Wyoming, believes the Federal Reserve
What’s New in Megaverse: Developments, Updates and More
What’s New in Megaverse: Developments, Updates and More press release PRESS RELEASE.Celebrity-fan interaction in the metaverse is at its nascent stage. However, a few recent past
Biggest Movers: XRP Gains Intensify, as Token Hits 11-Month High
Biggest Movers: XRP Gains Intensify, as Token Hits 11-Month High Xrp climbed to its highest level since last May, as bullish sentiment returned to cryptocurrency markets. The toke
Wendy McElroy: The Narrative and Philosophy of Cryptocurrency
Wendy McElroy: The Narrative and Philosophy of Cryptocurrency “The central banks of Britain, Japan, the euro zone, Sweden and Switzerland have grouped up to assess potentia
Central Bank of Argentina Scrutinizes Companies Offering ‘Extraordinary Returns’ on Crypto Asset Investments
Central Bank of Argentina Scrutinizes Companies Offering "Extraordinary Returns" on Crypto Asset Investments The Central Bank of Argentina has announced it is making inquiries rega