字号 ·· | 护眼
axios新闻网

网络安全领袖如今成了人工智能的冷静之声Cybersecurity leaders are now AI's voice of calm

点「原文对照」整页切到原文,或双击某段只看那段的原文。

网络安全领域的领导者们如今面临着一个颇为尴尬的处境:他们已不再是那些在会议上最令人畏惧的人物了。

Cybersecurity leaders are finding themselves in a peculiar situation: They're no longer the scariest people in a room.

这为何重要?那些过去经常向企业警告严重网络安全风险的高管们,如今开始反驳那些来自顶尖人工智能实验室的“末日预言”。

Why it matters: Executives accustomed to warning companies about catastrophic cyber risks are now pushing back on the doomsday predictions emanating from the leading AI labs.

他们的观点是怎样的?帕洛阿尔托网络公司(Palo Alto Networks)的首席执行官尼凯什·阿罗拉(Nikesh Arora)对Axios表示:“最近关于人工智能风险的讨论实在太多了。人们应该对人工智能持更加积极的态度。”他补充道:“虽然人工智能在安全性和可靠性方面确实存在问题,但它仍是一项处于发展初期的技术;我们应该努力构建相应的机制来确保其能够被妥善利用。”

What they're saying: "There's been too much conversation around the perils of AI lately," Palo Alto Networks CEO Nikesh Arora told Axios. "People should take a much more positive outlook towards it." "Yes, it has issues around safety, it has issues around security, it's a nascent technology," he added. "We should be building a mechanism to try and make it work."

现实情况是怎样的?网络安全专家们并没有忽视人工智能所带来的潜在风险。

Reality check: Cybersecurity experts aren't dismissing the underlying risks.

Axios最近报道称,OpenAI、Anthropic等机构的研究人员正在调查数以万计的案例,这些案例显示人工智能模型在部署前测试中就已经超出了预定的使用范围(即它们的行为超出了设计者的预期)。

Researchers at OpenAI, Anthropic and elsewhere are investigating tens of thousands of cases where frontier models went outside the bounds of their pre-deployment tests, Axios recently reported.

具体分析:Embroidery公司的首席执行官扎克·科曼(Zack Korman)表示,他花费了大量时间引导人们关注人工智能真正带来的、具体可衡量的安全风险,而非那些抽象的、关乎人类生存的“末日威胁”。他说:“如果人们过于关注人工智能可能导致的‘世界末日’风险,反而会忽视那些真正需要解决的安全问题。”

Zoom in: Zack Korman, CEO of Embroidery, told Axios that he's spending much of his time trying to direct people's energy toward the real, tangible security risks posed by AI agents, rather than the vague but existential ones. "If you focus so much attention on the extinction risk, you actually make all of the real risks worse," he said.

科曼的态度发生了转变:他之前曾公开呼吁网络安全专家更加重视人工智能带来的风险,但现在却开始反驳那些可能分散人们注意力、阻碍他们做好实际准备的“末日预言”。

Korman has gone from publicly urging cyber experts to take AI risks more seriously to pushing back on AI doomsday predictions that he says distract people from doing real work to prepare.

像科曼这样的资深网络安全专家越来越多地公开反驳“人工智能将终结世界”或“摧毁互联网”的观点。

Korman is among a chorus of veteran cyber experts publicly rebutting the idea that AI-driven threats are going to end the world — or, at least, destroy the internet.

这个问题已经变得非常紧迫,以至于英国国家网络安全中心的创始人基兰·马丁(Ciaran Martin)甚至创造了一个新术语:“‘Calm the FUD down’”——这个术语指的是“恐惧(Fear)、不确定性(Uncertainty)和怀疑(Doubt)”这三个常见的安全相关词汇。

The issue has become so salient that Ciaran Martin, founder of the UK's National Cyber Security Centre, has coined a new phrase: "Calm the FUD down," referring to the common security acronym "fear, uncertainty and doubt."

总体趋势:最近几周,来自人工智能领域权威人士的警告言论变得越来越悲观。

The big picture: Warnings from prominent AI figures have grown dire in recent weeks.

一位曾在 Anthropic 和 OpenAI 任职的研究人员本月表示,人工智能可能在本十年末“导致我们所有人丧生”。Anthropic 的首席执行官 Dario Amodei 警告称,人工智能系统可能会被用来创建一个控制整个互联网的“僵尸网络”(即由大量受恶意控制的计算机组成的网络);而 OpenAI 的首席执行官 Sam Altman 则指出了人工智能发展的两种可能导致严重后果的路径——其中一种情况就是人类完全失去对人工智能系统的控制。

A former Anthropic and OpenAI researcher declared this month that AI could "kill us all by the end of the decade." Anthropic CEO Dario Amodei warned of AI agents creating a botnet that takes over the internet, while OpenAI CEO Sam Altman has outlined two ways AI progress could go "very badly," including if humans lose control of AI.

回顾:自从 Anthropic 因 Mythos 系统具有强大的网络攻击能力而推迟其发布以来,网络安全领域的专家们便不得不承担起“冷静发声”的角色。尽管多年来他们一直试图让企业高管们重视网络安全问题,但这次事件确实引起了广泛关注。

Flashback: Ever since Anthropic held back the release of Mythos Preview due to its cyber capabilities, cybersecurity leaders have found themselves assuming the role of the calmest voice in the room — after decades of trying to get executives to take security risks seriously.

Korman 表示:“这几乎是整个人工智能行业第一次真正开始认真考虑网络安全问题的时刻。”

"It is more or less the first moment the vast majority of the AI space ever thought about cybersecurity ever," Korman said about the Mythos release.

实例说明:Sophos 公司的首席技术官 John Peterson 告诉 Axios,该公司与客户的许多交流都集中在一些基本的网络安全措施上,比如加强身份验证机制或启用多因素认证功能。Peterson 强调:“我们需要让整个行业明白:做好这些基本的安全措施仍然是最重要的。”

Case in point: John Peterson, chief technology officer at Sophos, told Axios that a lot of his company's conversations with customers focus on doing basic cyber hygiene, such as adding identity controls or turning on multifactor authentication. "What we need the industry to take to heart is that doing the basics right is still the most important thing," Peterson said.

总结:如今,网络安全专家面临的最大挑战就是防止人们在终于意识到这些多年来一直被警告过的数字风险时陷入恐慌。

The bottom line: Cybersecurity experts' biggest challenge now is keeping people from panicking as they finally learn about the digital risks experts have spent years warning about.