pwshub.com

AI has potential to automate threat detection, transform cybersecurity

The fanfare around artificial intelligence may be dying down but according to security experts, its impact on defense strategy, red teaming and other aspects of cybersecurity could be long lasting.

Large language models have the potential to reduce threat analysis by as much as 80 percent, estimates Vicente Diaz (pictured), threat intelligence strategist at VirusTotal, a crowdsourced threat intelligence platform acquired by Google LLC.

“All the hype around AI, but the thing is that actually it works for different stuff,” Diaz said. “We are making advances. It’s not like we’ve solved security yet, of course, but we are making everyone’s life easier. In this case, what we are analyzing is how LLMs can help us to analyze malware binaries, reverse engineering, which basically means spending a lot of time, needing a lot of expertise to make sense of what the malware is doing. And, well, if an LLM can do it for us, that’s a nice step forward.”

Diaz spoke with theCUBE Research’s John Furrier and Savannah Peterson at mWISE 2024, during an exclusive broadcast on theCUBE, SiliconANGLE Media’s livestreaming studio. They discussed AI’s contributions to security infrastructure and code generation. (* Disclosure below.)

AI transforms red teaming, threat testing

Cybersecurity is currently experiencing the first wave of use cases for LLMs. These include identifying malware behavior and analyzing key parts of its code.

“Everything you need to do for this spend testing, for this red teaming, you can use for LLMs to create codes for you to analyze the staff and to give you the best way to go to give you an answer to something that is not trivial,” said Diaz. “And little by little, we are getting to the point that they are able to orchestrate everything for us and find answers to complex questions … We can expect that we can to some extent maybe fully automate this in the future. Maybe we can have a constant red teaming exercise going on and evolving.”

Social engineering attacks have been some of the most common threats and according to Diaz, security teams are still working on how much data is being generated for malicious purposes. He emphasizes that the human factor is still crucial for cybersecurity and our exact role in the process will likely transform as AI grows more advanced.

“Artificial intelligence was just a boring thing more related to math,” he said. “And now you see the real implications that look like magic … We had constraints in the past. One of the biggest ones was the size of the prompt that we could use. Now that this is changing and as LLMs are evolving very fast, we don’t have these constraints … With all this together, we are starting to get better and better results.”

Here’s the complete video interview, part of SiliconANGLE’s and theCUBE Research’s coverage of mWISE 2024:

(* Disclosure: Google Cloud Security sponsored this segment of theCUBE. Neither Google Cloud Security nor other sponsors have editorial control over content on theCUBE or SiliconANGLE.)

Photo: SiliconANGLE

Source: siliconangle.com

Related stories
1 month ago - The growing threat of cybersecurity attacks along the increasingly complex AI landscape reflects one reason Black Hat USA 2024 is one of the biggest cybersecurity conferences of the year. With 17.8 million phishing emails in the last six...
1 month ago - The network continues to grow in importance as a strategic business asset. A recent joint study between ZK Research and The Cube Research found that 93% of organizations felt the network was more critical to business operations than two...
1 day ago - The reach of enterprise technologies such as artificial intelligence has permeated every business operations area. Given the resulting explosion in organizational data generation and reliance, the surface for cyberattacks has expanded....
1 month ago - Japanese cybersecurity software company Trend Micro Inc. is reportedly exploring a sale after being approached by several potential buyers. Referencing people familiar with the matter, Reuters reported that Trend Micro has been working...
1 month ago - Any chief information officer who assembled a portfolio of 130 discrete products to address a single problem would probably be accused of mismanagement. But when the problem is cybersecurity, they’re more likely to be seen as prudent....
Other stories
14 minutes ago - Boeing said on Friday the head of its troubled space and defense unit is leaving the company immediately, in the first management change under new CEO Kelly Ortberg. Ortberg who took over in August said Ted Colbert would be leaving and...
14 minutes ago - Palantir Technologies, Inc. (NYSE:PLTR) co-founder, Joe Lonsdale, has expressed his support for Tesla and SpaceX CEO Elon Musk’s acquisition of Twitter, now rebranded as X. What Happened: On Thursday, while appearing on CNBC’s Squawk Box,...
35 minutes ago - The European Commission is expected to bring formal charges against Google LLC over its business practices in the search market. Bloomberg revealed the upcoming regulatory action today, citing people familiar with the matter. Google...
1 hour ago - Nvidia has built a solid position for itself in this fast-growing data center niche that could help generate sizable revenue for the company in the long run.
2 hours ago - Qualcomm Inc. has approached Intel Corp. about a potential acquisition, the Wall Street Journal reported today. It’s believed that the mobile chip designer floated the idea in recent days. The Journal’s sources cautioned that a deal is...