Sundar Pichai: AI can strengthen cyber defences, not just break them down

News

Stay informed with free updates

The writer is chief executive of Google and Alphabet 

Last year saw rapid and significant technological change powered by progress in artificial intelligence. Millions of people are now using AI tools to learn new things, and to be more productive and creative. As progress continues, society will need to decide how best to harness AI’s enormous potential while addressing its risks. 

At Google, our approach is to be bold in our ambition for AI to benefit people, drive economic progress, advance science and address the most pressing societal challenges. And we’re committed to developing and deploying AI responsibly: the Gemini models we launched in December, which are our most capable yet, went through the most robust safety evaluations we’ve ever done. 

On Thursday, I visited the Institute Curie in Paris to discuss how our AI tools could help with their pioneering work on some of the most serious forms of cancer. On Friday, at the Munich Security Conference, I’ll join discussions about another important priority: AI’s impact on global and regional security. 

Leaders in Europe and elsewhere have expressed worries about the potential of AI to worsen cyber attacks. Those concerns are justified, but with the right foundations, AI has the potential over time to strengthen rather than weaken the world’s cyber defences.

Harnessing AI could reverse the so-called defender’s dilemma in cyber security, according to which defenders need to get it right 100 per cent of the time, while attackers need to succeed only once. With cyber attacks now a tool of choice for actors seeking to destabilise economies and democracies, the stakes are higher than ever. Fundamentally, we need to guard against a future where attackers can innovate using AI and defenders can’t.

To empower defenders, we began embedding researchers and AI approaches in Google cyber security teams more than a decade ago. More recently, we’ve developed a specialised large language model fine-tuned for security and threat intelligence. 

We’re seeing the ways AI can bolster cyber defences. Some of our tools are already up to 70 per cent better at detecting malicious scripts and up to 300 per cent more effective at identifying files that exploit vulnerabilities. And AI learns quickly, helping defenders adapt to financial crime, espionage or phishing attacks like the ones that recently hit the US, France and other places. 

That speed is helping our own detection and response teams, which have seen time savings of 51 per cent and have achieved higher-quality results using generative AI. Our Chrome browser examines billions of URLs against millions of known malicious web resources, and sends more than 3mn warnings per day, protecting billions of users. 

Empowering defenders also means making sure AI systems are secure by default, with privacy protections built in. This technical progress will continue. But capturing the full opportunity of AI-powered security goes beyond the technology itself. I see three key areas where private and public institutions can work together.

First, regulation and policy. I said last year that AI is too important not to regulate well. Europe’s AI Act is an important development in balancing innovation and risk. As others debate this question, it’s critical that the governance decisions we make today don’t tip the balance in the wrong direction. 

Policy initiatives can bolster our collective security — for example, by encouraging the pooling of data sets to improve models, or exploring ways to bring AI defences into critical infrastructure sectors. Diversifying public sector technology procurement could help institutions avoid the risks of relying on a single legacy supplier.

Second, AI and skills training, to ensure people have the digital literacy needed to defend against cyber threats. To help, we’ve launched an AI Opportunity Initiative for Europe to provide a range of foundational and advanced AI training. We’re also supporting innovative start-ups, like the Ukrainian-led company LetsData, which provides a real-time “AI radar” against disinformation in more than 50 countries. 

Third, we need deeper partnership among businesses, governments, and academic and security experts. Our Málaga safety engineering centre is focused on cross collaboration that raises security standards for everyone. At the same time, global forums and systems — like the Frontier Model Forum and our Secure AI Framework — will play an important role in sharing new approaches that work. 

Protecting people on an open, global web is an urgent example of why we need a bold and responsible approach to AI. It’s not the only one. Helping researchers identify new medicines for diseases, improving alerts in times of natural disasters, or opening up new opportunities for economic growth are all just as urgent, and will benefit from AI being developed responsibly. Progress in all of these areas will benefit Europe, and the world.

Articles You May Like

Activist Jana Partners calls for a strategic review at Wolfspeed. Here’s how it may develop
Home prices soar even higher in February, despite higher mortgage rates, says S&P Case-Shiller
Microsoft and Alphabet enjoy AI-powered gains from cloud divisions
California’s revamped DebtWatch site offers access to debt lifecycle
Bonds offer income and some volatility protection. Pick out the right bond fund for your portfolio