{"id":690,"date":"2019-12-07T16:23:14","date_gmt":"2019-12-07T16:23:14","guid":{"rendered":"https:\/\/www.danielparente.net\/en\/2019\/12\/07\/solving-the-challenge-of-securing-ai-and-machine-learning-systems\/"},"modified":"2019-12-07T16:23:14","modified_gmt":"2019-12-07T16:23:14","slug":"solving-the-challenge-of-securing-ai-and-machine-learning-systems","status":"publish","type":"post","link":"https:\/\/www.danielparente.net\/en\/2019\/12\/07\/solving-the-challenge-of-securing-ai-and-machine-learning-systems\/","title":{"rendered":"Solving the challenge of securing AI and machine learning systems"},"content":{"rendered":"<p> [ad_1]<br \/>\n<\/p>\n<div>\n<p>Today, in collaboration with Harvard University\u2019s <a href=\"https:\/\/cyber.harvard.edu\/\" target=\"_blank\" rel=\"noopener\">Berkman Klein Center<\/a>, we at Microsoft are publishing a series of materials we believe will contribute to solving a major challenge to securing artificial intelligence and machine learning systems. In short, there is no common terminology today to discuss security threats to these systems and methods to mitigate them, and we hope these new materials will provide baseline language that will enable the research community to better collaborate.<\/p>\n<p>Here is why this challenge is so important to address. Artificial intelligence (AI) is already having an enormous and positive impact on healthcare, the environment, and a host of other societal needs. As these systems become increasingly important to our lives, it\u2019s critical that when they fail that we understand how and why, whether it\u2019s inherent design of a system or the result of an adversary. There have been hundreds of research papers dedicated to this topic, but inconsistent vocabulary from paper to paper has limited the usefulness of important research to data scientists, security engineers, incident responders and policymakers.<\/p>\n<p>The centerpiece of the materials we\u2019re publishing today is called \u201c<a href=\"https:\/\/docs.microsoft.com\/en-us\/security\/failure-modes-in-machine-learning\" target=\"_blank\" rel=\"noopener\">Failure Modes in Machine Learning<\/a>,\u201d which lays out the terminology we developed jointly with the Berkman Klein Center. It includes vocabulary that can be used to describe intentional failure caused by an adversary attempting to alter results or steal an algorithm as well as vocabulary for unintentional failures like a system that produces results that might be unsafe.<\/p>\n<p>The taxonomy laid out in \u201c<a href=\"https:\/\/docs.microsoft.com\/en-us\/security\/failure-modes-in-machine-learning\" target=\"_blank\" rel=\"noopener\">Failure Modes in Machine Learning<\/a>\u201d informs two other publications we\u2019re releasing today, \u201c<a href=\"https:\/\/docs.microsoft.com\/en-us\/security\/threat-modeling-aiml\" target=\"_blank\" rel=\"noopener\">Threat Modeling AI\/ML Systems and Dependencies\u201d<\/a> and \u201c<a href=\"https:\/\/docs.microsoft.com\/en-us\/security\/bug-bar-aiml\" target=\"_blank\" rel=\"noopener\">AI\/ML Pivots to the Security Development Lifecycle Bug Bar<\/a>.\u201d These two documents build on this taxonomy through the work of the <a href=\"https:\/\/blogs.partner.microsoft.com\/mpn\/shared-responsibility-ai-2\/\" target=\"_blank\" rel=\"noopener\">AI and Ethics in Engineering and Research (AETHER) Committee at Microsoft<\/a> and deliver new threat modeling, detection, mitigation and triage guidance in use today at Microsoft as part of our established security practices.<\/p>\n<p>We hope that these contributions will help to continue to inspire innovative advances in artificial intelligence that benefit society while keeping this technology safe and secure. We welcome feedback from the research community and will continue to work collaboratively with Harvard University and others to help facilitate research in this important field.<\/p>\n<p class=\"tag-list\">Tags: <a aria-label=\"See more stories about AI\" href=\"https:\/\/blogs.microsoft.com\/on-the-issues\/tag\/ai\/\" rel=\"tag noopener\" target=\"_blank\">AI<\/a>, <a aria-label=\"See more stories about artificial intelligence\" href=\"https:\/\/blogs.microsoft.com\/on-the-issues\/tag\/artificial-intelligence\/\" rel=\"tag noopener\" target=\"_blank\">artificial intelligence<\/a>, <a aria-label=\"See more stories about cybersecurity\" href=\"https:\/\/blogs.microsoft.com\/on-the-issues\/tag\/cybersecurity-2\/\" rel=\"tag noopener\" target=\"_blank\">cybersecurity<\/a>, <a aria-label=\"See more stories about ethics\" href=\"https:\/\/blogs.microsoft.com\/on-the-issues\/tag\/ethics\/\" rel=\"tag noopener\" target=\"_blank\">ethics<\/a>, <a aria-label=\"See more stories about harvard university\" href=\"https:\/\/blogs.microsoft.com\/on-the-issues\/tag\/harvard-university\/\" rel=\"tag noopener\" target=\"_blank\">harvard university<\/a>, <a aria-label=\"See more stories about machine learning\" href=\"https:\/\/blogs.microsoft.com\/on-the-issues\/tag\/machine-learning\/\" rel=\"tag noopener\" target=\"_blank\">machine learning<\/a><\/p>\n<\/p><\/div>\n<p><script>\n\t\tfunction facebookTracking() {\n\t\t\t!function(f,b,e,v,n,t,s){if(f.fbq)return;n=f.fbq=function(){n.callMethod?\n\t\t\t\tn.callMethod.apply(n,arguments):n.queue.push(arguments)};if(!f._fbq)f._fbq=n;\n\t\t\t\tn.push=n;n.loaded=!0;n.version='2.0';n.queue=[];t=b.createElement(e);t.async=!0;\n\t\t\t\tt.src=v;s=b.getElementsByTagName(e)[0];s.parentNode.insertBefore(t,s)}(window,\n\t\t\t\tdocument,'script','https:\/\/connect.facebook.net\/en_US\/fbevents.js');\n\t\t\tfbq('init', '435868603227390');\n\t\t\tfbq('track', 'PageView');\n\t\t}\n\t<\/script><br \/>\n<br \/>[ad_2]<br \/>\n<br \/><a href=\"https:\/\/blogs.microsoft.com\/on-the-issues\/2019\/12\/06\/ai-machine-learning-security\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[ad_1] Today, in collaboration with Harvard University\u2019s Berkman Klein Center, we at Microsoft are publishing a series of materials we believe will contribute to solving a major challenge to securing artificial intelligence and machine learning systems. In short, there is no common terminology today to discuss security threats to these systems and methods to mitigate [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","jetpack_post_was_ever_published":false},"categories":[1],"tags":[],"class_list":["post-690","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"blocksy_meta":[],"jetpack_featured_media_url":"","jetpack_shortlink":"https:\/\/wp.me\/p2TFCd-b8","jetpack_sharing_enabled":true,"jetpack-related-posts":[],"_links":{"self":[{"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/posts\/690","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/comments?post=690"}],"version-history":[{"count":0,"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/posts\/690\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/media?parent=690"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/categories?post=690"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.danielparente.net\/en\/wp-json\/wp\/v2\/tags?post=690"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}