¿®Íê¤Ç¤¤Ê¤¤AI¥â¥Ç¥ë¤ò¼Â¹Ô¤¹¤ë¤È¤½¤ÎAI¤òÄ̤·¤Æ¥·¥¹¥Æ¥à¤Ë¿¯Æþ¤µ¤ì¤ë²ÄǽÀ¤¬¤¢¤ë¤³¤È¤ò¥»¥¥å¥ê¥Æ¥£´ë¶È¤¬·Ù¹ð
¥»¥¥å¥ê¥Æ¥£´ë¶È¤Î¡ÖWiz¡×¤¬¡¢°°Õ¤Î¤¢¤ëAI¥â¥Ç¥ë¤òHugging Face¾å¤Ç¼Â¹Ô¤¹¤ë¤³¤È¤Ç¤½¤ÎAI¥â¥Ç¥ë¤òÄ̤·¤ÆHugging Face¤Î¥·¥¹¥Æ¥à¤Ë¿¯Æþ¤Ç¤¤ëÀȼå(¤¼¤¤¤¸¤ã¤¯)À¤òȯ¸«¤·¤¿¤Èȯɽ¤·¤Þ¤·¤¿¡£
Hugging Face works with Wiz to strengthen AI cloud security | Wiz Blog
https://www.wiz.io/blog/wiz-and-hugging-face-address-risks-to-ai-infrastructure
https://huggingface.co/blog/hugging-face-wiz-security-blog
We uploaded a backdoored AI model to @HuggingFace which we could use to potentially access other customers¡Ç data✨
Here is how we did it - and collaborated with Hugging Face to fix it 🧵⬇ pic.twitter.com/S8t49rzTIf— sagitz (@sagitz_) 2024ǯ4·î4Æü
Wiz Research identifies critical risks in AI-as-a-service - YouTube
Hugging Face¤Ç¤ÏAI¥â¥Ç¥ë¤Î¥¢¥Ã¥×¥í¡¼¥É¡¦¥À¥¦¥ó¥í¡¼¥É¤Î¤Û¤«¤Ë¡¢¥¢¥Ã¥×¥í¡¼¥É¤µ¤ì¤Æ¤¤¤ëAI¤òHugging Face¤Î¥·¥¹¥Æ¥à¾å¤Ç¼Â¹Ô¤·¤Æ´Êñ¤ËÆ°ºî¤ò³Îǧ¤¹¤ë¡ÖInference API¡×¤È¤¤¤¦µ¡Ç½¤¬ÍÑ°Õ¤µ¤ì¤Æ¤¤¤Þ¤¹¡£
AI¥â¥Ç¥ë¤Ï³«È¯¤µ¤ì¤¿¥Õ¥ì¡¼¥à¥ï¡¼¥¯¤Ë´ð¤Å¤¤¤Æ¤µ¤Þ¤¶¤Þ¤Ê·Á¼°¤ÇÊݸ¤µ¤ì¤Æ¤¤¤Þ¤¹¡£Hugging Face¤Ë¤Ï¤µ¤Þ¤¶¤Þ¤Ê·Á¼°¤ÎAI¥â¥Ç¥ë¤ò¥¢¥Ã¥×¥í¡¼¥É²Äǽ¤Ç¤¹¤¬¡¢AI¥â¥Ç¥ë¤Î·Á¼°¤Î¤Ê¤«¤Ë¤Ï¡Öpickle¡×¤Î¤è¤¦¤Ë¥ê¥â¡¼¥È¥³¡¼¥É¼Â¹Ô¤¬²Äǽ¤Ç°ÂÁ´¤Ç¤Ï¤Ê¤¤¤â¤Î¤â¸ºß¤·¤Æ¤¤¤Þ¤¹¡£
¤½¤³¤Ç¡¢Wiz¤Î¥Á¡¼¥à¤Ïpickle·Á¼°¤Ç°°Õ¤Î¤¢¤ëAI¥â¥Ç¥ë¤òºîÀ®¤·¡¢Hugging Face¤Ë¥¢¥Ã¥×¥í¡¼¥É¤·¤ÆInference API¤Ç¼Â¹Ô¤·¤Þ¤·¤¿¡£¤³¤ÎAI¥â¥Ç¥ë¤Ï¡¢°ìÈÌŪ¤ÊÆþÎϤˤÏÄ̾ï¤ÎAI¤Î¤è¤¦¤Ë¤Õ¤ë¤Þ¤¤¤Þ¤¹¡£
¤·¤«¤·¡ÖBackdoor¡×¤È¤¤¤¦Ê¸»ú¤¬¥×¥í¥ó¥×¥È¤ËÆþÎϤµ¤ì¤ë¤È¥·¥§¥ë¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤¹¤ë¤è¤¦¤ËÄ´À°¤µ¤ì¤Æ¤¤¤Þ¤¹¡£
Wiz¤Î¥Á¡¼¥à¤Ï¤³¤Î°°Õ¤¢¤ëAI¥â¥Ç¥ë¤Ë¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤µ¤»¤ÆHugging Face¤Î¥·¥¹¥Æ¥à¤Ë¿¯Æþ¤¹¤ë¤³¤È¤ËÀ®¸ù¤·¤Þ¤·¤¿¡£ºÇ½ªÅª¤Ë¤Ï¸¢¸Â¤Î¾º³Ê¤Ë¤âÀ®¸ù¤·¡¢¥µ¡¼¥Ó¥¹Á´ÂΤò¾è¤Ã¼è¤ë¤³¤È¤¬¤Ç¤¤¿¤È½Ò¤Ù¤é¤ì¤Æ¤¤¤Þ¤¹¡£
¾åµ¤ÎÄ̤ꡢAI¥â¥Ç¥ë¤ò¼Â¹Ô¤¹¤ë¥µ¡¼¥Ó¥¹¡ÖAI-as-a-Service¡×¤Ë¤ª¤¤¤Æ°°Õ¤Î¤¢¤ëAI¥â¥Ç¥ë¤ÏÂ礤ʥꥹ¥¯¤È¤Ê¤ê¤Þ¤¹¡£°°Õ¤Î¤¢¤ëAI¥â¥Ç¥ë¤ò¼Â¹Ô¤¹¤ë¤³¤È¤Ç¥·¥¹¥Æ¥à¤ò¾è¤Ã¼è¤é¤ì¤Æ¼«¼Ò¤ä¾¤Î¸ÜµÒ¤Î¥Ç¡¼¥¿¤Ø¥¢¥¯¥»¥¹¤µ¤ì¤Æ¤·¤Þ¤¦²ÄǽÀ¤¬¤¢¤ë¤Î¤Ï¤â¤Á¤í¤ó¡¢°°Õ¤Î¤¢¤ëAI¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ò¥³¥ó¥Ñ¥¤¥ë¤¹¤ë¤³¤È¤ÇCI/CD¥Ñ¥¤¥×¥é¥¤¥ó¤ò¾è¤Ã¼è¤Ã¤Æ¥µ¥×¥é¥¤¥Á¥§¡¼¥ó¹¶·â¤ò¤µ¤ì¤ë²ÄǽÀ¤â¤¢¤ë¤È¤Î¤³¤È¡£
Hugging Face¤Ï¥»¥¥å¥ê¥Æ¥£¤ÎÌäÂê¤Î¿¤¯¤Ïpickle·Á¼°¤Î¥â¥Ç¥ë¤ÇȯÀ¸¤·¤Æ¤ª¤ê¡¢±¿ÍѴĶ¤Ç¤Ïpickle·Á¼°¤ò»ÈÍѤ·¤Ê¤¤¤è¤¦½Ò¤Ù¤¿¾å¤Ç¡¢Wiz¤Î¥¯¥é¥¦¥É¥»¥¥å¥ê¥Æ¥£¥µ¡¼¥Ó¥¹¡ÖWiz for Cloud Security Posture Management¡×¤ò»ÈÍѤ¹¤ë¤Ê¤É°ÂÁ´À¤ò¹â¤á¤ë¤¿¤á¤Î¼è¤êÁȤߤò¹Ô¤Ã¤Æ¤¤¤ë¤³¤È¤ò¥¢¥Ô¡¼¥ë¤·¡Ö»ä¤¿¤Á¤Ïº£¸å¤âAI¥³¥ß¥å¥Ë¥Æ¥£¤ÎÊݸî¤È¥»¥¥å¥ê¥Æ¥£¤Î¥ê¡¼¥À¡¼¤Ç¤¢¤ê³¤±¤ë¤Ä¤â¤ê¤À¡×¤ÈÁʤ¨¤Þ¤·¤¿¡£