Hacking generative AI: Limiting security risk in the age of AI

Hacking generative AI: Limiting security risk in the age of AI

Source: YouTube · IBM Technology · published Nov 26, 2024 · 22:18

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

The video explores how AI creates new security challenges, with experts warning that companies are rushing to implement AI without proper security measures, leaving themselves vulnerable to novel attacks like adversarial manipulation and deepfakes 0:03-0:0618:24-19:03.

Key Takeaways:
• AI creates a brand new attack surface requiring security professionals to constantly learn new technologies to understand vulnerabilities 0:03-0:06
• Companies are rushing to integrate AI without proper security assessments, leading to environments without proper authentication or controls 2:30-2:41
• Only 24% of AI projects include security components despite 81% of executives acknowledging it's essential 14:36-14:55

The experts emphasize that addressing AI security requires both proper threat modeling and reconsidering security fundamentals to protect against both conventional and novel AI-specific threats 15:25-15:33.

Sources:

  • 0:03-0:06 Discussion of AI creating a new attack surface
  • 2:30-2:41 Companies rushing AI integration without security
  • 14:36-14:55 Statistics on AI project security gaps

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

Being in security, you're constantly
having to learn new technology so that you can break it so you can
understand how it works under the hood. And AI is no exception. The biggest piece for us is it's not just,
you know, a new web application framework or,
you know, a new web server technology. It's a brand new attack surface
with a lot of really interesting new new attacks
that can be conducted against it. And so it's not something
that you test once and you're done. Nobody's interested in security until something breaks
and then it's all we can think about. So on today's episode,
I want to get inside the AI security mindset
with two people who know it best. One is a real life hacker who just happens to lead a security team
at IBM called X-Force. Yeah, you heard what I said. X-Force. The …