THE CYBER INTERVIEW
CROWDSTRIKE ANALYSES OVER
7trillion
EVENTS IN A DAY ACROSS IDENTITY, CLOUD AND SIEM
The solution – visibility.“ It’ s about having visibility into what is actually being used in your organisation. If you don’ t have visibility, you can’ t control it, you can’ t remediate it,” the CTO points out.“ CrowdStrike, for example, allows organisations to understand and get visibility into what dependencies and packages your software developers are using out there on their laptops.” This way, the company can weigh in options for remediation and governance.
Who is living in your AI land? Living off the Land( LOTL) is an age-old trick in cybersecurity where the attackers turn the systems within the enterprise against its owners by exploiting existing weaknesses. No malware needed.“ It is not about bringing new tools into the environment, but using what is available to compromise the organisation,” Zeki explains. Today, a highly valued target for this is AI. Zeki calls this Living off the AI Land( LOTAIL).
“ A lot of companies are using their own AI tools,” he says.“ They are having them locally deployed. They have them hosted. And what we are seeing is that adversaries are going after these AI tools because they know it allows them access to huge amounts of information very, very rapidly.” The seriousness of this is aggravated by the very nature of such tools, which are typically“ integrated into huge amounts of data sets,” often without the right guardrails or controls in place.
cybermagazine. com 29