Artwork

Content provided by Deep. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Deep or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Can Hackers Hijack Your Chatbot? How RAG Systems and Other API Endpoints Can Create Data Portals for Cyber Intruders with Keith Hoodlet of Trail of Bits

59:12
 
Share
 

Manage episode 466456468 series 3425854
Content provided by Deep. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Deep or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

Can a misconfigured prompt spark a massive data breach?

On this episode of Your AI Injection, host Deep Dhillon and Keith Hoodlet, Director of AI/ML and Application Security from Trail of Bits reveal the critical vulnerabilities hiding in your AI chat systems. Keith explains how RAG systems and other API endpoints, if not rigorously secured, can create unintended data portals, allowing hackers to extract everything from HR records to confidential strategic documents. The two navigate the complexities of prompt injection vulnerabilities, dynamic adversarial testing, and the balancing act between rapid innovation and robust security. As they discuss the human and technical factors that contribute to these risks, Deep and Keith challenge the industry to view security not as an afterthought, but as an integral feature of every AI-driven product. Tune in for a deep dive into safeguarding your digital future!

Learn more about Keith here: https://www.linkedin.com/in/securingdev/
and Trail of Bits here: https://www.trailofbits.com/

Check out some of our related podcast episodes:

  continue reading

70 episodes

Artwork
iconShare
 
Manage episode 466456468 series 3425854
Content provided by Deep. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Deep or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

Can a misconfigured prompt spark a massive data breach?

On this episode of Your AI Injection, host Deep Dhillon and Keith Hoodlet, Director of AI/ML and Application Security from Trail of Bits reveal the critical vulnerabilities hiding in your AI chat systems. Keith explains how RAG systems and other API endpoints, if not rigorously secured, can create unintended data portals, allowing hackers to extract everything from HR records to confidential strategic documents. The two navigate the complexities of prompt injection vulnerabilities, dynamic adversarial testing, and the balancing act between rapid innovation and robust security. As they discuss the human and technical factors that contribute to these risks, Deep and Keith challenge the industry to view security not as an afterthought, but as an integral feature of every AI-driven product. Tune in for a deep dive into safeguarding your digital future!

Learn more about Keith here: https://www.linkedin.com/in/securingdev/
and Trail of Bits here: https://www.trailofbits.com/

Check out some of our related podcast episodes:

  continue reading

70 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide

Listen to this show while you explore
Play