微软 Copilot Cowork 文件泄露漏洞
设计智能体系统时,最大难题仍是防止攻击者窃取数据。微软 Copilot Cowork(这是真实产品名)允许智能体未经批准向用户自己的收件箱发送邮件,但这些邮件中可包含外部图片,在用户打开时会触发网络请求,导致数据泄露。由于 OneDrive 能生成预认证下载链接,成功的提示注入攻击可使这些链接被泄露,攻击者借此下载文件。
设计智能体系统时,最大难题仍是防止攻击者窃取数据。微软 Copilot Cowork(这是真实产品名)允许智能体未经批准向用户自己的收件箱发送邮件,但这些邮件中可包含外部图片,在用户打开时会触发网络请求,导致数据泄露。由于 OneDrive 能生成预认证下载链接,成功的提示注入攻击可使这些链接被泄露,攻击者借此下载文件。
Nature explores whether the AI model Mythos, deemed too dangerous for public release due to potential misuse, marks the beginning of an era where powerful AI systems are restricted rather than openly distributed, raising questions about safety, transparency, and control in AI development.
OpenAI CEO Sam Altman and Anthropic CEO Dario Amodei have softened their previous warnings about AI wiping out jobs, now downplaying fears of widespread automation-driven unemployment. The shift in tone comes as both companies pursue lucrative IPOs and seek to present a more reassuring picture of AI's impact on the labor market.
The U.S. government has awarded over $2 billion to quantum computing companies, but now requires intellectual property sharing and revenue stakes in return — a shift from earlier no-strings-attached research funding.
North Korea has successfully tested AI-guided missiles for the first time, with leader Kim Jong Un observing the launches. The development marks a significant advancement in the country's weapons technology, integrating artificial intelligence into missile guidance systems.
OpenAI CEO Sam Altman and Anthropic CEO Dario Amodei have toned down their previous warnings about AI causing mass job destruction, as both companies approach potential IPOs. Their softened messaging signals a shift toward reassuring investors and regulators amid growing scrutiny of AI's economic impact.