Ask Jack: Can We Assume AI Searches Are Safe?

By Jack McCalmon, The McCalmon Group, Inc.

When I do searches using Bing or ChatGPT, can I assume links, etc. that are part of the responses are safe?

 

You should never assume any web-based search is safe whether it is from AI or any other search engine.  

A recent report from cyber researchers is that AI-powered Bing Chat is distributing "fake download sites" that spread malware. One type of malware is Advanced IP Scanner which is reported to have been exploited by ransomware operators. https://www.zeebiz.com/technology/news-microsofts-bing-chat-responses-injected-by-ads-pushing-malware-report-256974

The final takeaway is that AI simply works with what the Internet provides and that includes searches. The Internet provides safe and unsafe information and AI, at the moment, does not know how to distinguish between the two. This will likely change in the next few years.

Jack McCalmon, Leslie Zieren, and Emily Brodzinski are attorneys with more than 50 years combined experience assisting employers in lowering their risk, including answering questions, like the one above, through the McCalmon Group's Best Practices Help Line. The Best Practice Help Line is a service of The McCalmon Group, Inc. Your organization may have access to The Best Practice Help Line or a similar service from another provider at no cost to you or at a discount. For questions about The Best Practice Help Line or what similar services are available to you via this Platform, call 888.712.7667.

If you have a question that you would like Jack McCalmon, Leslie Zieren, or Emily Brodzinski to consider for this column, please submit it to ask@mccalmon.com. Please note that The McCalmon Group cannot guarantee that your question will be answered. Answers are based on generally accepted risk management best practices. They are not, and should not be considered, legal advice. If you need an answer immediately or desire legal advice, please call your local legal counsel.

 


 

Finally, your opinion is important to us. Please complete the opinion survey:

News

".Gov" Emails And Their Social Engineering Value To Online Criminals

Washington County, Arkansas officials report they successfully thwarted a cyber attack. Why was the county targeted? We comment. Read More

Upgrades And Updates: Why Smart Organizations Stay On Top Of Both

Some experts are warning users about the risk of the iPhone's new contact-sharing feature. We examine cyberthieves' methods for obtaining personal or organizational information. Read More

Human Error And Password Security

Most adverse cyber events are caused by human error. We examine common errors that lead to significant breaches. Read More