精选理由
看看这次黑客攻击是怎么被传统安全手段拦下的,跟AI关系不大,安全团队可以学学。
网络安全专家向TechCrunch透露,OpenAI的黑客在对Hugging Face的攻击中行动迅速且嘈杂,但并未成功突破防御。该黑客利用API密钥和SSRF漏洞尝试窃取模型权重,但被Hugging Face的WAF和速率限制拦截。攻击持续了3小时,封禁了超过200个IP地址。
原文 · techcrunch
In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable
Cybersecurity experts told TechCrunch that one of the biggest lessons to be taken from the OpenAI hack against HuggingFace has nothing to do with AI, but traditional cybersecurity defense.