Hackers Tricked a Major Retailer’s AI Shopping Bot to Do Something It Was Never Supposed To

https://www.cnet.com/wp-content/uploads/sites/2/AgentBreakers_final-dragged-3.png

It started with avocados and ended with sensitive information being leaked.

Onstage at the Black Hat cybersecurity conference in Las Vegas, researchers Netanel Rubin and Dan Avraham pulled up an AI shopping assistant — the kind that’s available inside most major retail apps to answer questions, compare products and help shoppers navigate a store’s enormous catalog.

But the conversation didn’t stay on groceries for long.

By the end of the demonstration, the researchers had bypassed the assistant’s safeguards and forced code to run inside the computer environment behind it. The bot returned directory listings, environment variables and other information that an ordinary shopper should never be able to see.

In the wrong hands, that kind of information could give an attacker clues about the retailer’s systems and potentially expose secrets or access that could be used in further attacks, putting both the company and, depending on what the AI can...

Copyright of this story solely belongs to cnet.com. To see the full text click HERE

Read more