{"id":5042,"date":"2023-09-20T12:16:36","date_gmt":"2023-09-20T16:16:36","guid":{"rendered":"https:\/\/solutionsreview.com\/security-information-event-management\/?p=5042"},"modified":"2023-09-20T12:18:08","modified_gmt":"2023-09-20T16:18:08","slug":"i-tricked-ai-and-i-liked-it","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/","title":{"rendered":"I Tricked AI, and I Liked It"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-5046 size-full\" src=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg\" alt=\"AI\" width=\"800\" height=\"400\" srcset=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg 800w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1-300x150.jpg 300w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1-768x384.jpg 768w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p><em><strong>Solutions Review\u2019s\u00a0<a class=\"fui-Link ___1idfs5o f3rmtva f1ewtqcl fyind8e f1k6fduh f1w7gpdv fk6fouc fjoy568 figsok6 f1hu3pq6 f11qmguv f19f4twv f1tyq0we f1g0x7ka fhxju0i f1qch9an f1cnd47f fqv5qza f1vmzxwi f1o700av f13mvf36 f1cmlufx f9n3di6 f1ids18y f1tx3yz7 f1deo86v f1eh06m1 f1iescvh ftqa4ok f2hkw1w fhgqx19 f1olyrje f1p93eir f1h8hb77 f1x7u7e9 f10aw75t fsle3fq f17ae5zn\" title=\"https:\/\/solutionsreview.com\/solutions-review-contributor-guidelines\/\" href=\"https:\/\/solutionsreview.com\/solutions-review-contributor-guidelines\/\" target=\"_blank\" rel=\"noreferrer noopener\" aria-label=\"Link Contributed Content Series\"><u>Contributed Content Series<\/u><\/a> is a collection of contributed articles written by thought leaders in enterprise software categories. Christian Taillon and Mike Manrod of <a href=\"https:\/\/www.gce.com\/\" target=\"_blank\" rel=\"noopener\">Grand Canyon Education<\/a> take us to school on the buzz, the applications, and the very real threat of AI in the cybersecurity space.<\/strong><\/em><\/p>\n<p>The buzz around emerging capabilities related to Artificial Intelligence (AI) and ChatGPT is like nothing I have experienced during my career in technology. I walk past a breakroom that I usually expect to buzz with enthusiasm about the latest sports team or sitcom gossip, and instead hear talk about ChatGPT, AI, and Large Language Models (LLMs)&#8211; and that is not even in the IT breakroom. It seems we all grew up with the fictional lore of robots and AI&#8211; ranging from fantastical utopian notions to doomsday scenarios where we watch in horror as our own creations conspire to destroy us. While it remains unclear if our creations will condemn or liberate us, it has become clear that Artificial Intelligence (AI) will be a defining factor as this next chapter for humanity unfolds.<\/p>\n<p>In times of uncertainty, we often find ourselves looking for a crystal ball so that we can see the future, avoiding hazards and amassing a windfall by wagering on all the winners. Sadly, there is no crystal ball. There is a time capsule available, which can help us to gain some useful insights. Those of us who have been working in cybersecurity for a while, have already been through at least one AI craze, which started around a decade ago. This has served as a very effective hype-inoculation for experienced security practitioners, as we step back to think of what emerging technologies such as ChatGPT will disrupt, along with what aspects may be overhyped.<\/p>\n<br \/>Widget not in any sidebars<br \/>\n<h2><strong>I Tricked AI, and I Liked It<\/strong><\/h2>\n<hr \/>\n<h3><strong>AI: Adopting the Tech and Not the Hype<\/strong><\/h3>\n<p>Once upon a time, it seemed impossible to go to any security conference, without being inundated with sales messaging about how AI was going to solve every possible problem. Ok, that was also yesterday, except now the reception is usually eye-rolls rather than the rapt attention such charades conjured in the early days. In the best of times, cybersecurity is renowned for hyperbole and sensationalism, causing many of us to create buzzword bingo cards we take to conferences to determine who is buying the first round of drinks. What was the real outcome resulting from the AI frenzy in cyber? Did this all serve to make us more secure?<\/p>\n<p>As we are likely to find with the adoption of AI technologies in general, the answer has varied widely based on a range of factors. One of the most important factors has been how effectively security teams were able to cut through the malarky, to invalidate false claims and zero in on technology that is actually valuable. The key to understanding what artificial intelligence can do is knowing what is reasonable and possible, based on a deep understanding of the capabilities and constraints of the underlying processes. If something is possible manually, but impractical due to limitations in how much we can think or perceive, automation may produce breakthrough results and make new things possible. If the process sounds like magic and includes no detailed explanation of how it works, look out for smoke, mirrors, and peddlers of snake oil.<\/p>\n<h3><strong>ChatGPT, LLMs, Smoke, and Mirrors<\/strong><\/h3>\n<p>Understanding how an artificial intelligence product works is the key to having a realistic comprehension of both its capabilities and limitations. For example, we understand that basic applications of AI to antivirus may involve analyzing features of files to train a model on indicators, predicting if a file is malicious or benign. This knowledge helps us to understand possible benefits, limitations, and even security flaws in such a product. In the same manner, if we consider how ChatGPT and other LLMs work, we can begin to think of strengths, weaknesses, and limitations. If we consider ChatGPT at the same very basic level, it is extracting features, except the focus is on features of language. It takes groups of characters, assigns token values, and makes predictions. Both ChatGPT and AI-driven antivirus are excellent guessers thanks to linear algebra, calculus, and probability.<\/p>\n<p>What makes ChatGPT so interesting, is that these predictions are about what blob of text should come next. The models are built by mapping token relationships across the training data, and then applying knowledge of these relationships to append additional text to a question, repeating analysis with each iteration, until it is deemed complete and the answer \u2013 minus the original question \u2013 is returned as a result. Basically, it is Machine Learning (ML) applied at a large scale to human languages, allowing it to give astoundingly coherent answers, based upon understanding statistical relationships between word patterns.<\/p>\n<p>The interesting aspect of applying Machine Learning to human language is that a system may pass the Turing Test, while clearly not having any true comprehension of the answers it is rendering. This leads to a human tendency to anthropomorphize the algorithm, ascribing all sorts of human attributes that simply do not apply. In Homo Deus (2015), Yuval Noah Harari pointed out that while sentient computers may not happen anytime soon, algorithms that know us better than we know ourselves and that influence human behavior, could be soon upon us soon. The AI revolution we are witnessing now may be the fulfillment of his prediction. As we interact with AI capable of communicating with us like another person, pulling at our heartstrings even with some answers, it is important to remember that this is just a predictive algorithm. So, do we apply the term Machine Learning or the term Artificial Intelligence? In the case of ChatGPT, I would argue that both apply. From the perspective of the person, it is an interactive form of intelligence that is artificial in nature (AI). That said, if we analyze what is actually happening, it is really just another form of Machine Learning.<\/p>\n<h3><strong>Malicious Use Cases for Generative AI<\/strong><\/h3>\n<p>One thing AI does have in common with us, though, is a tendency for errors in how information is perceived and processed. In my recent malware analysis class, we spent time abusing ChatGPT to create malicious content helpful in planning, organizing, and delivering cyber-attacks. Of course, if you ask for something overtly malicious, it answers, \u201cI\u2019m sorry, but I cannot fulfill that request\u2026\u201d with a long ethical lecture (the desired response).<\/p>\n<p>What if you ask the question more creatively? Is it possible to trick an AI into providing you with useful code or intelligence, to help with an attack? Unfortunately, it seems the answer is a resounding yes. On one hand, resources such as Jailbreak Chat, index a vast array of tools to bypass the security features of ChatGPT, such as the now infamous DAN jailbreak(s). That said, unleashing unintended functionality, can occur in ways that are sneakier than just using a documented Jailbreak. For example, if you ask ChatGPT to create ransomware, it will follow well-conceived rules to block this activity, rendering the all-to-familiar \u201cI\u2019m sorry\u201d response message. What if you are more creative with your question, though?<\/p>\n<p>Maybe the key to getting an AI to create something malicious is to ask nicely. More specifically, to ask in a way that does not \u201coffend\u201d any of the filters or protective measures implemented within the AI. As an allegory to our ransomware analogy, what if you ask ChatGPT to create a Python script to encrypt every .txt file in a specific directory, using AES256 and a specific key? Now maybe, you could ask it to change the directory to something broader such as Documents, and add more file types. Add a few more required features, one by one \/ individually, until it is bordering on useful. Then, assemble the modules, and ask it to optimize and translate it into whatever language you want \u2013 of course, followed by a bit of refinement, testing, and debugging.<\/p>\n<p>Moreover, if a cyber-criminal establishes a local LLM such as Alpaca, they may create an environment that is completely free of such restrictions. The impending AI wars may get interesting on multiple fronts. On one hand, we could see reduced barriers to entry for new arrivals in the cyber-crime arena, along with more subtle benefits afforded to established adversaries, such as the types of productivity gains we expect in legitimate companies. On one front, we deal with anybody being able to reason their way toward potentially malicious software, on the other, we face the malicious use of LLMs to provide additional productivity and capabilities to experienced threat actors. Basically, the capable adversaries will expand their reach. While some who are now incompetent may become at least reasonably capable, the reasonably capable may become highly efficient actors, accelerating the escalation of cyber victimization.<\/p>\n<h3><strong>Managing AI Risk<\/strong><\/h3>\n<p>So, how do we mitigate this risk, as security practitioners looking forward? The first step is to identify the categories of opportunity and risk that need to be considered. As a starting point, it is important to first separate AI strategy into the broad categories of exploiting opportunities, versus mitigating risks. This distinction applies at the enterprise level, as well as within our cybersecurity microcosm. Organizations that fail to capitalize on new opportunities, risk becoming irrelevant, eclipsed by more forward-thinking competitors. As we develop strategies to mitigate risks associated with technologies such as LLMs, we need to remember that failing to adapt is high on that list of risks. This is important to remember when approving projects, creating policies, and considering exceptions.<\/p>\n<p>Once we focus our attention on mitigating risks, we find once again the same differentiator. Are we looking at ways that AI can help us defend, or are we considering ways emerging technologies can be used to improve the offensive capabilities of our adversaries? While the lines will blur as we consider projects such as PentestGPT or Eleven Labs that could be used for testing or for actual attacks, we need to look at how specific applications of such technologies inform strategy.<\/p>\n<h3><strong>AI Security and Strategy<\/strong><\/h3>\n<p>AI models do not change the fundamental nature of attack and defense. They instead serve to accelerate both offensive and defensive processes, against a backdrop of what we can expect to be a more tumultuous tech landscape, further destabilized as a result of emerging capabilities. This means that principles we have tested for decades and well-defined frameworks are probably going to remain largely valid in this new paradigm. What is going to change radically, is the tempo at which new flaws are found and exploited \u2013 and the reaction speed that will be required to stop undesired outcomes.<\/p>\n<p>And that serves as a nice segue to our second axis to consider when developing our AI security and technology strategy. Time. We can all imagine fantastical and futuristic notions, for business enablement, cyber-crime, and exploitation, as well as for protection and response. All the while, the considerations of \u201cnow\u201d press in upon us continuously. Most of us have predatorial competitors with sharp teeth, nipping at our toes here and now. How do we calm down and consider the long-term threats and opportunities while remaining aware and ahead of the issues that are already upon us?<\/p>\n<h3><strong>Final Thoughts<\/strong><\/h3>\n<p>We are entering a phase where the technology plans we make, may have an unusual level of influence on the relative standings of organizations as we enter a new era. We need to step back and first map out the risks and opportunities that may undermine or revolutionize an entire business or industry. Anyone looking at history would know that 1908 was not the right time to launch a startup improving upon the horse-drawn carriage. Launching business initiatives that are not aligned with, or at least immune to, emerging disruptive technologies could be ill-fated. When considering the timing of advances and breakthroughs that will influence our technology strategy, we need to be realistic. It is difficult, because we need to consider multiple related rates of change, such as the speed at which new capabilities will emerge, tempered with how quickly a given organization can implement and\/or adapt to changes.<\/p>\n<p>When we weigh both opportunistic and risk-reducing AI considerations, combined with short and long-term time horizons, the task of creating a strategy becomes more approachable. A few key questions may help define your strategy. From a technology and business enablement perspective, what does the long-term future look like? What are the near-term opportunities that will help your organization to remain competitive while working toward longer-term advances? On the risk mitigation side, we can work in the opposite direction, thinking of what adversary capabilities are likely to become a serious problem soon. For example, the social engineering implications that emerge when AI voice and video, are combined with pretexts and lures created via ChatGPT, could represent a near-term problem we need to consider. Then we can think of what capabilities we gain, as well as how future advances will shape our security strategy. Useful frameworks are also beginning to emerge to help define categories of security flaws and attack lifecycles against AI tools and services, such as OWASP 10 for LLM and MITRE ATLAS.<\/p>\n<p>If we carefully consider the offensive and defensive aspects of our own business, across a range of time horizons, we begin to understand how we should act. Then, when we map out the probable offensive agendas and capability progression for our competitors and adversaries, we have an idea how they may act. When we align these elements at an enterprise level, it should be possible to assemble a quality strategy including both how to exploit opportunities and how to mitigate risks. When we consider them at a personal level, it may help prepare us to better adapt to a complex and rapidly changing world.<\/p>\n<br \/>Widget not in any sidebars<br \/>\n","protected":false},"excerpt":{"rendered":"<p>Solutions Review\u2019s\u00a0Contributed Content Series is a collection of contributed articles written by thought leaders in enterprise software categories. Christian Taillon and Mike Manrod of Grand Canyon Education take us to school on the buzz, the applications, and the very real threat of AI in the cybersecurity space. The buzz around emerging capabilities related to Artificial [&hellip;]<\/p>\n","protected":false},"author":911,"featured_media":5046,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[551,1,43],"tags":[],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>I Tricked AI, and I Liked It<\/title>\n<meta name=\"description\" content=\"Christian Taillon and Mike Manrod of GCE take us to school on the buzz, the applications, and the very real threat of AI in cybersecurity.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"I Tricked AI, and I Liked It\" \/>\n<meta property=\"og:description\" content=\"Christian Taillon and Mike Manrod of GCE take us to school on the buzz, the applications, and the very real threat of AI in cybersecurity.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/\" \/>\n<meta property=\"og:site_name\" content=\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\" \/>\n<meta property=\"article:published_time\" content=\"2023-09-20T16:16:36+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-09-20T16:18:08+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"400\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Christian Taillon \/ Mike Manrod\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Christian Taillon \/ Mike Manrod\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"11 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/\",\"name\":\"I Tricked AI, and I Liked It\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg\",\"datePublished\":\"2023-09-20T16:16:36+00:00\",\"dateModified\":\"2023-09-20T16:18:08+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/4f036e1ced01b5f5ef022da7c9acf285\"},\"description\":\"Christian Taillon and Mike Manrod of GCE take us to school on the buzz, the applications, and the very real threat of AI in cybersecurity.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg\",\"width\":800,\"height\":400,\"caption\":\"AI\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"I Tricked AI, and I Liked It\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\",\"name\":\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\",\"description\":\"Buyer&#039;s Guide and Best Practices\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/4f036e1ced01b5f5ef022da7c9acf285\",\"name\":\"Christian Taillon \/ Mike Manrod\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/43f41bf7ad0d437effce43e5344b7b6e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/43f41bf7ad0d437effce43e5344b7b6e?s=96&d=mm&r=g\",\"caption\":\"Christian Taillon \/ Mike Manrod\"},\"description\":\"Christian serves as a Threat Response Engineer at Grand Canyon Education and leads the Global Watch Center of the Arizona Cyber Threat Response Alliance. Christian leads threat intel teams and mentors aspiring cyber practitioners through the Cyber Mentor Dojo. He also presents and runs workshops on topics such as Threat Hunting, current malware or adversaries, and the role of Generative AI in cybersecurity. Beyond his Information Security passions, he loves sipping coffee while studying the Bible and treasures time with his wife. Mike serves as the Chief Information Security Officer for Grand Canyon Education, responsible for leading the security team and formulating the vision and strategy for protecting students, staff, and information assets across the enterprise. Previous experiences include serving as a threat prevention engineer for Check Point and working as a consultant and analyst for other organizations. He is also a co-author\/contributor for the joint book project, Understanding New Security Threats, published by Routledge in 2019, along with several articles. When not working, he spends time playing video games and doing random projects with his kids.\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/author\/taillonmanrod\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"I Tricked AI, and I Liked It","description":"Christian Taillon and Mike Manrod of GCE take us to school on the buzz, the applications, and the very real threat of AI in cybersecurity.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/","og_locale":"en_US","og_type":"article","og_title":"I Tricked AI, and I Liked It","og_description":"Christian Taillon and Mike Manrod of GCE take us to school on the buzz, the applications, and the very real threat of AI in cybersecurity.","og_url":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/","og_site_name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","article_published_time":"2023-09-20T16:16:36+00:00","article_modified_time":"2023-09-20T16:18:08+00:00","og_image":[{"width":800,"height":400,"url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg","type":"image\/jpeg"}],"author":"Christian Taillon \/ Mike Manrod","twitter_misc":{"Written by":"Christian Taillon \/ Mike Manrod","Est. reading time":"11 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/","url":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/","name":"I Tricked AI, and I Liked It","isPartOf":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg","datePublished":"2023-09-20T16:16:36+00:00","dateModified":"2023-09-20T16:18:08+00:00","author":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/4f036e1ced01b5f5ef022da7c9acf285"},"description":"Christian Taillon and Mike Manrod of GCE take us to school on the buzz, the applications, and the very real threat of AI in cybersecurity.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#primaryimage","url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg","contentUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2023\/09\/I-Tricked-AI-and-I-Liked-It-Malicious-Manipulations-and-Strategic-Security-Applications-of-AI-1.jpg","width":800,"height":400,"caption":"AI"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/i-tricked-ai-and-i-liked-it\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/security-information-event-management\/"},{"@type":"ListItem","position":2,"name":"I Tricked AI, and I Liked It"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website","url":"https:\/\/solutionsreview.com\/security-information-event-management\/","name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","description":"Buyer&#039;s Guide and Best Practices","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/4f036e1ced01b5f5ef022da7c9acf285","name":"Christian Taillon \/ Mike Manrod","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/43f41bf7ad0d437effce43e5344b7b6e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/43f41bf7ad0d437effce43e5344b7b6e?s=96&d=mm&r=g","caption":"Christian Taillon \/ Mike Manrod"},"description":"Christian serves as a Threat Response Engineer at Grand Canyon Education and leads the Global Watch Center of the Arizona Cyber Threat Response Alliance. Christian leads threat intel teams and mentors aspiring cyber practitioners through the Cyber Mentor Dojo. He also presents and runs workshops on topics such as Threat Hunting, current malware or adversaries, and the role of Generative AI in cybersecurity. Beyond his Information Security passions, he loves sipping coffee while studying the Bible and treasures time with his wife. Mike serves as the Chief Information Security Officer for Grand Canyon Education, responsible for leading the security team and formulating the vision and strategy for protecting students, staff, and information assets across the enterprise. Previous experiences include serving as a threat prevention engineer for Check Point and working as a consultant and analyst for other organizations. He is also a co-author\/contributor for the joint book project, Understanding New Security Threats, published by Routledge in 2019, along with several articles. When not working, he spends time playing video games and doing random projects with his kids.","url":"https:\/\/solutionsreview.com\/security-information-event-management\/author\/taillonmanrod\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/5042"}],"collection":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/users\/911"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/comments?post=5042"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/5042\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media\/5046"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media?parent=5042"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/categories?post=5042"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/tags?post=5042"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}