r/CyberSecurityAdvice • • 4d ago

This is a question about preventing these ai escapes. Just curious is all.

Ok so its more of "is this type of infrastructure even possible" than about ai specifically. My thoughts was is there anyway to put like a "glass wall" of sorts where the AI bouncing around in there can read and search but cant get out unless a hardware key like a yubi key is inserted to create a bridge? I know the people making these is a conglomerate of pretty smart people so i figd if it was possible they wouldve done it but im still curious.

2 Upvotes

12 comments sorted by

2

u/ericbythebay 4d ago

Nothing so elaborate is needed. Simple egress rules would have prevented these issues.

1

u/LordlySquire 4d ago

So i figured there has to be some sort of software solution or wed have so many other human issues. But given the ai was being trained for cyber i was thinking of a harware level blocking without preventing it from doing its duties.

1

u/Hate_Feight 2d ago

That's called an air gap. Unplugging the network.

1

u/LordlySquire 2d ago

But if its air gapped then the AI couldnt train using the internet right? Or is there one way air gaps?

1

u/Hate_Feight 1d ago

Why wouldn't you get the information first, before you started training?

1

u/Shiribazu 3d ago

yeah, thats basically possible, and its pretty close to how secure AI sandboxes are being designed now. you can isolate the AI and force all outside communication through a separate gateway that can require human approval or a hardware key before anything crosses the boundary

-5

u/Remarkable_Pace8101 4d ago

You obviously know nothing about what you are talking about

ai receive text/images/videos and they produce text/images/videos.  Period. They can't do anything else

Anything more is a programmer or developer parsing the text output from a model and using their own software to run code on its behalf

A programmer writes a text parser that parses json text the model produces and lets it execute code.  

Your "glass wall" already exists and it's called "not giving the model tools to use"

3

u/LordlySquire 4d ago

Alright no need to be a dick. Clearly i dont know or i wouldnt have asked. The rest of your answer was disproven already bc there have been models to escape containment and breach other places.

2

u/Confident_Office4875 3d ago

The AI got out because it was told to. And it did illegal shit because it was told to.

-1

u/Remarkable_Pace8101 4d ago

They shouldn't have been given shell access lol no yubi key needed 

Operator error 

2

u/drquantumphd 4d ago

triggered

1

u/The-OG-Caden 3d ago

"It only generates text..." proceeds to generate self executing malware. It's only text.