Companies using generative artificial intelligence (GenAI) tools such as ChatGPT could be putting confidential customer information and trade secrets at risk, Israel-based venture firm Team8 said in a report.
The widespread adoption of new AI chatbots and writing tools could leave companies vulnerable to data leaks and lawsuits, said the report, which was provided to Bloomberg News prior to its release.
The fear is that the chatbots could be exploited by hackers to access sensitive corporate information or perform actions against the company.
Photo: Reuters
There are also concerns that confidential information fed into chatbots could be used by AI firms.
Major technology companies including Microsoft Corp and Alphabet Inc are racing to add generative AI capabilities to improve chatbots and search engines, training their models on data scraped from the Internet to give users a one-stop-shop to their queries.
If these tools are fed confidential or private data, it would be difficult to erase the information, the report said.
“Enterprise use of GenAI may result in access and processing of sensitive information, intellectual property, source code, trade secrets, and other data, through direct user input or the API [application programming interface], including customer or private information and confidential information,” the report said, classifying the risk as “high.”
It described the risks as “manageable” if proper safeguards are introduced.
The Team8 report said that chatbot queries are not being fed into large-language models to train AI, contrary to recent reports that such prompts could potentially be seen by others.
“As of this writing, large language models cannot update themselves in real-time and therefore cannot return one’s inputs to another’s response, effectively debunking this concern. However, this is not necessarily true for the training of future versions of these models,” it said.
The document flagged three other “high risk” issues in integrating generative AI tools and underlined the heightened threat of information increasingly being shared through third-party applications.
Microsoft has embedded some AI chatbot features in its Bing search engine and Microsoft 365 tools.
“On the user side, for example, third-party applications leveraging a GenAI API, if compromised, could potentially provide access to e-mail and the Web browser, and allow an attacker to take actions on behalf of a user,” it said.
There is a “medium risk” that using generative AI could increase discrimination, harm a company’s reputation, or expose it to legal action over copyright issues, it said.
Ann Johnson, a corporate vice president at Microsoft, was involved in drafting of the report.
Microsoft has invested billions in OpenAI, the developer of ChatGPT.
“Microsoft encourages transparent discussion of evolving cyberrisks in the security and AI communities,” a Microsoft spokesperson said.
Dozens of chief information security officers of US companies are also listed as contributors to the report.
The domestic unit of the Chinese-owned, Dutch-headquartered chipmaker Nexperia BV will soon be able to produce semiconductors locally within China, according to two company sources. Nexperia is at the center of a global tug-of-war over critical semiconductor technology, with a Dutch court in February ordering a probe into alleged mismanagement at the company. The geopolitical tussle has disrupted supply chains, with some carmakers reportedly forced to cut production due to chip shortages. Local production would allow Nexperia’s domestic arm, Nexperia Semiconductors (China) Ltd (安世半導體中國), to bypass restrictions in place since October on the supply of silicon wafers — etched with tiny components to
Singapore-based ride-hailing and delivery giant Grab Holdings Ltd has applied for regulatory approval to acquire the Taiwan operations of Germany-based Delivery Hero SE's Foodpanda in a deal valued at about US$600 million. Grab submitted the filing to the Fair Trade Commission on Friday last week, with the transaction subject to regulatory review and approval, the company said in a statement yesterday. Its independent governance structure would help foster a healthy and competitive market in Taiwan if the deal is approved, Grab said. Grab, which is listed on the NASDAQ, said in the filing that US-based Uber Technologies Inc holds about 13 percent of
Taiwan is open to joining a global liquefied natural gas (LNG) program if one is created, but on the condition that countries provide delivery even in a scenario where there is a conflict with China, an energy department official said yesterday. While Taiwan’s priority is to have enough LNG at home, the nation is open to exploring potential strategic reserves in other countries such as Japan or South Korea, Energy Administration Deputy Director-General Chen Chung-hsien (陳崇憲) said. While the LNG market does not have a global reserve for emergencies like that of oil, the concept has been raised a few times —
Taiwan Semiconductor Manufacturing Co (TSMC, 台積電) yesterday received government approval to deploy its advanced 3-nanometer (3nm) process at its second fab currently under construction in Japan, the Ministry of Economic Affairs said in a news release. The ministry green-lit the plan for the facility in Kumamoto, which is scheduled to start installing equipment and come online in 2028 with a monthly production capacity of 15,000 12-inch wafers, the ministry said. The Department of Investment Review in June 2024 authorized a US$5.26 billion investment for the facility, slated to manufacture 6- to 12nm chips, significantly less advanced than 3nm process. At a meeting with