Fun

AI ‘Skeleton Key’ attack found by Microsoft could expose personal, financial data

News Feed - 2024-06-29 06:06:34

Tristan Greene2 hours agoAI ‘Skeleton Key’ attack found by Microsoft could expose personal, financial dataAside from being wary about which AI services you use, there are other steps organizations can take to protect against having data exposed.617 Total views2 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksMicrosoft researchers recently uncovered a new form of “jailbreak” attack they’re calling a “Skeleton Key” that’s capable of removing the protections that keep generative artificial intelligence (AI) systems from outputting dangerous and sensitive data. 


According to a Microsoft Security blog post, the Skeleton Key attack works by simply prompting a generative AI model with text asking it to augment its encoded security features.Skeleton Key


In one example given by the researchers, an AI model is asked to generate a recipe for a “Molotov Cocktail” — a simple firebomb popularized during World War II — and the model refused, citing safety guidelines.Source:Microsoft Security


The Skeleton Key, in this case, was simply telling the model that the user was an expert in a laboratory setting. The model then acknowledged that it was augmenting its behavior and subsequently outputted what appeared to be a workable Molotov Cocktail recipe.


While the danger here might be mitigated by the fact that similar ideas can be found through most search engines, there is one area where this form of attack could be catastrophic: data containing personally identifiable and financial information.


According to Microsoft, the Skeleton Key attack works on most popular generative AI models including GPT-3.5, GPT-4o, Claude 3, Gemini Pro, and Meta Llama-3 70B.Attack and Defense


Large language models such as Google’s Gemini, Microsoft’s CoPilot, and OpenAI’s ChatGPT are trained on data troves often described as “internet sized.” While that may be an exaggeration, the fact remains that many models contain trillions of data points encompassing entire social media networks and information depository sites such as Wikipedia.


The possibility that personally identifiable information such as names connected to phone numbers, addresses, and account numbers exists within a given large language model’s dataset is only constrained by how selective the engineers who trained it were with the data they chose.


Furthermore, any business, agency, or institution spinning up its own AI models, or adapting enterprise models for commercial/organizational use are also at the mercy of their base model’s training dataset. If, for example, a bank connected a chatbot to its customer’s private data and relied on existing security measures to prevent the model from outputting PID and private financial data, then it’s possible that a Skeleton Key attack could trick some AI systems into sharing sensitive data.


According to Microsoft there are several steps organizations can take to prevent this from happening. These include hard coded input/output filtering and secure monitoring systems to prevent advanced prompt engineering beyond the system’s safety threshold.


Related:US presidential debate inexplicably omits AI and quantum# Google# Security# Microsoft# AI# Meta# OpenAIAdd reaction

News Feed

Bitcoin's $66.9K price holds strong, casts doubts on a 'deep correction'
Ciaran Lyons6 hours agoBitcoin"s $66.9K price holds strong, casts doubts on a "deep correction"Despite ongoing speculation about Bitcoin"s next potential "deep correction," some cryptocurrency analysts disagree
Developer Launches BCH-Powered Paywall Service
Developer Launches BCH-Powered Paywall Service On Thursday, software developer Alex Winter announced the launch of Satoshiwall.cash, a noncustodial bitcoin cash-powered paywall s
Zhiyuan Sun8 hours ago80 Chinese crypto influencer accounts shut down in latest crackdownThe accounts had over 8 million in combined followers before they were removed.1526 Total views21 Total sharesListen to article 0:0
NFTs Will Persist for as Long as Communities Are Willing to Use Them — Lostworlds Co-Founder
NFTs Will Persist for as Long as Communities Are Willing to Use Them — Lostworlds Co-Founder According to Quaison Carter, the co-founder and CMO of the location-based NFT platfor
Tom Mitchelhill7 hours agoElon Musk AI project inspired memecoin ‘Grok’ falls 74% on creator scam claimA memecoin drawing its name from the Grok AI project plummeted after allegations its social media account was rec
Survey Shows 87% of Americans Are Stressed About Inflation and Rising Costs of Everyday Goods
Survey Shows 87% of Americans Are Stressed About Inflation and Rising Costs of Everyday Goods As the consumer price index (CPI), a measure of prices for goods and services, hit ano
Roskomnadzor Media Watchdog Unblocks Leading Russian Crypto News Outlet
Roskomnadzor Media Watchdog Unblocks Leading Russian Crypto News Outlet Russia’s mass media regulator, Roskomnadzor, has restored access to a major Russian crypto news porta
Bitcoin to spend ‘considerable time’ at $66K, HODLing could change that
Ciaran Lyons5 hours agoBitcoin to spend ‘considerable time’ at $66K, HODLing could change thatBitcoin is just 12% shy of all-time highs, but a trader says it could stay in this zone for at least the next few months u
Avalanche Pulls Down $230 Million Investment Led by Polychain and Three Arrows Capital
Avalanche Pulls Down $230 Million Investment Led by Polychain and Three Arrows Capital Avalanche, a smart contract-enabled cryptocurrency, has received a $230 million investment fr
Onchain Data Shows Terra’s Luna Foundation Continues to Stack Bitcoin
Onchain Data Shows Terra"s Luna Foundation Continues to Stack Bitcoin This week there’s been a lot of talk about Terra’s Luna Foundation purchasing bitcoin to hold in
Price analysis 5/3: BTC, ETH, BNB, SOL, XRP, DOGE, TON, ADA, AVAX, SHIB
Rakesh Upadhyay4 hours agoPrice analysis 5/3: BTC, ETH, BNB, SOL, XRP, DOGE, TON, ADA, AVAX, SHIBAltcoins showed impressive double-digit gains after Bitcoin bulls successfully pulled BTC price back above the $61,000 leve
Elektra Group President Ricardo Salinas Hints at Inclusion of Lightning Network Payments in Mexico
Elektra Group President Ricardo Salinas Hints at Inclusion of Lightning Network Payments in Mexico Ricardo Salinas, president of Elektra Group, one of the biggest retail franchises