バグバウンティ事業が AI 生成の低品質報告に襲われる
本文の状態
日本語全文を表示中
詳細モードで約1分の本文を読めます。
同じ出来事の情報源
この情報源を基点に整理
Ars Technica AI
セキュリティ企業は、AI が生成した偽の脆弱性報告によりプログラムが混乱し、一部ではプログラムの停止を余儀なくされている。
Source Article
元記事を日本語で読む
本文に関係しない購読案内、埋め込み通知、サイト内プロモーションは除いています。
ソフトウェアの欠陥を検出するためにハッカーに報酬を支払う企業が、AI によって生成された低品質なレポートによって溢れかえり、一部の企業はプログラム自体を停止せざるを得なくなっています。
「バグ・バウンティ」プログラムを実施する企業は長年、独立したセキュリティ研究者に脆弱性の発見を頼ってきました。しかし、AI ツールの台頭により、現在では偽の提出物によって圧倒されています。
OpenAI、T-Mobile、Motorola を顧客に抱える Bugcrowd は、3 月の 3 週間に受けたレポート数が 4 倍以上に増加したと発表し、そのほとんどが誤りであることが判明しました。
記事全文を読む
コメント
原文を表示
Companies that pay hackers to find flaws in their software are being inundated with low-quality reports generated by AI, forcing some to suspend the programs altogether.
Businesses that run “bug bounty” schemes have long relied on independent security researchers to spot vulnerabilities. But the rise of AI tools is now overwhelming them with spurious submissions.
Bugcrowd, whose customers include OpenAI, T-Mobile, and Motorola, said the number of reports it received more than quadrupled over a three-week period in March, with most proving to be false.
Read full article
Comments
関連記事
今日のまとめ
AIデイリーブリーフで今日の重要ニュースをまとめ読み