-
Blake Lively, Justin Baldoni agree to end lengthy legal battle
-
Dolly Parton cancels Las Vegas shows over health concerns
-
Wu Yize: China's 'priest' who conquered the snooker world
-
China's Wu Yize wins World Snooker Championship for first time
-
Broadway theater blaze forces 'Book of Mormon' to close
-
Advantage Arsenal as Man City held in six-goal Everton thriller
-
Roma hammer Fiorentina to remain in Champions League hunt
-
MLB Tigers star pitcher Skubal to undergo elbow surgery
-
No.6 Morikawa withdraws from final PGA Championship tuneup
-
Ukraine and Russia declare separate truces
-
Arteta warns Atletico will face Arsenal 'beasts' in Champions League
-
OpenAI co-founder under fire in Musk trial over $30 bn stake
-
US says downed Iranian missiles and drones, destroyed six boats
-
Amazon to ship stuff for any business, not just its own merchants
-
Swastikas daubed on NY Jewish homes, synagogues: police
-
Passengers stranded on cruise off Cape Verde following suspected virus deaths
-
Colombian guerrillas offer peace talks with Petro successor
-
Britney Spears admits reckless driving in plea deal
-
Health emergency on the MV Hondius: what we know
-
US downs Iran missiles and drones, destroys six of Tehran's boats
-
Simeone laughs off 'cheaper' Atletico hotel switch before Arsenal clash
-
Rohit, Rickelton keep Mumbai in the hunt
-
What is hantavirus, and can it spread between humans?
-
Britney Spears admits to reckless driving in plea deal
-
Two dead as car ploughs into crowd in Germany's Leipzig
-
Ujiri hired as president of NBA's Mavericks
-
McFarlane backs Chelsea flops after woeful Forest defeat
-
Demi Moore joins Cannes Festival jury
-
Two dead after car ploughs into people in Germany's Leipzig: mayor
-
China's Wu holds slender lead in World Snooker Championship final
-
Mosley fired as coach after Magic's first-round NBA playoff exit
-
Stars set for Met Gala, fashion's biggest night
-
Forest sink woeful Chelsea to boost survival bid
-
Oil prices jump as Iran attacks UAE, US warships enter Hormuz
-
France launches one-euro university meals for all students
-
French TV defend Champions Cup video referee after Van Graan criticism
-
Former France, England duo called up by Fiji for Nations Championship
-
US Supreme Court temporarily restores mail access to abortion pill
-
3 dead in Colombia monster truck show crash
-
Mysterious world beyond Pluto may have an atmosphere: astronomers
-
UniCredit raises capital ahead of Commerzbank takeover bid
-
A year into Merz government, German far right stronger than ever
-
French scholars seek to resurrect Moliere with AI play
-
Allies jolted on defence as Trump pulls troops from Germany
-
Passengers isolating on cruise after Cape Verde ban over suspected virus deaths
-
Famed cartoonist Chappatte calls medium a 'barometer' of freedom
-
Three things we learned from the Miami Grand Prix
-
Energy crisis fuels calls to cut methane emissions
-
Europe, Canada pull together in Yerevan in Trump's shadow
-
India's Modi eyes important win in opposition-held West Bengal
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
M.Ouellet--BTB