{"id":11705,"date":"2018-03-09T10:10:09","date_gmt":"2018-03-09T18:10:09","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2018\/03\/09\/news-5475\/"},"modified":"2018-03-09T10:10:09","modified_gmt":"2018-03-09T18:10:09","slug":"news-5475","status":"publish","type":"post","link":"https:\/\/www.palada.net\/index.php\/2018\/03\/09\/news-5475\/","title":{"rendered":"How artificial intelligence and machine learning will impact cybersecurity"},"content":{"rendered":"<p><strong>Credit to Author: Pieter Arntz| Date: Fri, 09 Mar 2018 17:06:28 +0000<\/strong><\/p>\n<p>Artificial intelligence (AI) and machine learning (ML) are hot topics in technology. New use cases and applications are discussed daily\u2014from search results recommendations to smart cars. But what are cybersecurity organizations doing with this tech? What does it take to render additional security out of AI? And how do AI and ML change the way we fight cybercrime?<\/p>\n<p>Both AI and ML are already being adopted and implemented in many cybersecurity platforms. But before these two forms of tech achieve mainstream traction, it&#8217;s important to discuss their impacts.<\/p>\n<h3>The difference between AI and ML<\/h3>\n<p>The problem with hot tech like artificial intelligence and machine learning is that people and companies end up having different perceptions of what they <em>really\u00a0<\/em>are. As to not muddy the water, let&#8217;s start by explaining the relationship between the two. Artificial intelligence and machine learning are not interchangeable. Consider machine learning, instead, as a sort of offspring of artificial intelligence.<\/p>\n<p><strong>Artificial intelligence<\/strong> is achieved when machines carry out tasks that are not pre-programmed and in a way that we consider &#8220;smart.&#8221; Take, for example, a computer that can play chess. There is a big difference between a chess computer that has countless situations pre-programmed and performs the given solution, or a chess computer that analyzes the position of the pieces and calculates the outcome for every possible move many moves ahead. The first is executing commands. The second is using artificial intelligence.<\/p>\n<p><strong>Machine learning <\/strong>is an algorithm that, when fed enough information, is capable of recognizing patterns in new data and learning to classify that new data based on the information it already has. Essentially, these algorithms teach the machine how to learn. An apparent danger in this method is that if the machine is allowed to accept its own assumptions to be true, it may stray from the path the developers envisioned.<\/p>\n<p>To sum it up, AI focuses on building smart machines\u00a0while ML is about creating the algorithms that allow machines to learn from experience.<\/p>\n<div id=\"attachment_22131\" style=\"max-width: 610px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" data-attachment-id=\"22131\" data-permalink=\"https:\/\/blog.malwarebytes.com\/security-world\/2018\/03\/how-artificial-intelligence-and-machine-learning-will-impact-cybersecurity\/attachment\/artificialintellligence\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/03\/ArtificialIntellligence.jpg\" data-orig-size=\"1000,750\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"ArtificialIntellligence\" data-image-description=\"\" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/03\/ArtificialIntellligence-300x225.jpg\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/03\/ArtificialIntellligence-600x450.jpg\" class=\"wp-image-22131 size-large\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/03\/ArtificialIntellligence-600x450.jpg\" alt=\"ai reading\" width=\"600\" height=\"450\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/03\/ArtificialIntellligence-600x450.jpg 600w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/03\/ArtificialIntellligence-300x225.jpg 300w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/03\/ArtificialIntellligence.jpg 1000w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><\/p>\n<p class=\"wp-caption-text\"><em>Is this simple text recognition or does the robot understand what it\u2019s reading?<\/em><\/p>\n<\/div>\n<h2>Examples of AI and ML<\/h2>\n<p>We have all seen examples of AI\/ML in our daily lives. Some of them we may recognize as such, but others have become so common, that we don\u2019t even notice them anymore. Autofill, for example\u2014a tool we&#8217;ve become accustomed to in search engines, SMS messages, and chat applications\u2014would never exist without machine learning. (Because the machine learns what your next word is likely to be and suggests it.)<\/p>\n<p>In some areas, we have seen lots of progress in artificial intelligence and machine learning: self-driving cars, voice recognition, image analysis, and medical devices. And, as <a href=\"https:\/\/www.youtube.com\/watch?v=uiDMlFycNrw\" data-rel=\"lightbox-video-0\" target=\"_blank\" rel=\"noopener\">referenced in Minority Report<\/a>, AI has many applications in the field of targeted marketing\/ personalized advertisements.<\/p>\n<h3>Current use in cybersecurity<\/h3>\n<p>If it weren&#8217;t for developments in AI and ML, it would be much harder for cybersecurity companies to detect all the new malware that comes to the surface every day. Therefore, it makes sense to use the options offered by these fast-growing fields to our advantage. At <a href=\"https:\/\/www.malwarebytes.com\/business\/endpointprotection\/\" target=\"_blank\" rel=\"noopener\">Malwarebytes<\/a>, we already use a machine learning component that detects malware that&#8217;s never been seen before in the wild (zero-days). And other components of our software perform behavior-based, heuristic detections\u2014meaning they may not recognize a particular code as malicious, but they have determined that a file or website is acting in a way that it shouldn&#8217;t. This tech is also based on AI\/ML.<\/p>\n<p>Other so-called \u201cnext-gen\u201d security solutions promise to protect their customers against zero-days and ransomware in a similar way, so there does seem to be a trend in this with some of the newer cybersecurity companies. But not all of them call their methods &#8220;artificial intelligence&#8221; or &#8220;machine learning,&#8221; which makes it hard to determine how mainstream they really are in cybersecurity.<\/p>\n<p>It seems that while most companies might be well aware of the need for new security strategies, not many have implemented AI\/ML to fight back against the rising tide of ever-more sophisticated malware.<\/p>\n<h3><span style=\"font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen-Sans, Ubuntu, Cantarell, 'Helvetica Neue', sans-serif\">Perfect fit<\/span><\/h3>\n<p>Let&#8217;s face it: Machines are much better and more cost-efficient than humans when it comes to handling huge amounts of data and performing routine tasks. This is exactly what the cybersecurity industry needs at the moment, especially with large amounts of new threats appearing every day.<\/p>\n<p>Most of these new threats can easily be classified into existing families or familiar types of threats. In most cases, spending time looking over each new threat in detail would be a waste of time for a researcher or reverse engineer. Human classification, especially in bulk, will be error-prone due to boredom and distractions. Machines, however, do not mind going through the same routine over and over, and they do it much faster and more efficiently than people do.<\/p>\n<p>But that doesn&#8217;t mean they always get it right. Even with an AI, it will be necessary to keep an eye on the work to check whether the algorithms are still working within the desired parameters. AI and ML without human interference might drift from the set path. But with an AI as a partner, researchers needn&#8217;t be buried in menial work.<\/p>\n<h3>Classification and\u2026?<\/h3>\n<p>How else can we use AI and ML in cybersecurity? In fact, anything can be used as a basis for a machine learning algorithm as long as you have enough data on it to detect a pattern that leads to accurate conclusions.<\/p>\n<p>Take, for example,\u00a0<a href=\"https:\/\/blog.malwarebytes.com\/glossary\/attribution\/\">attribution<\/a>. Right now, it&#8217;s quite difficult for security researchers to determine who was behind an attack. They must take the forensic artifacts of a cyberattack and match them to\u00a0known threats against targets with similar profiles. Or in other words, try to figure out the attacker based on the methods used and who the target was (or might have been).<\/p>\n<p>Now, it\u2019s anyone\u2019s guess who was behind an attack, and fingers are often pointed in convenient directions (It was the Russians!) instead of accurate ones. But with the help of artificial intelligence and machine learning, we can pinpoint the origin of the attack with more accuracy.<\/p>\n<p>Machine learning can also be used for security projects outside of infosec. For example, the UK government has selected <a href=\"https:\/\/www.cbronline.com\/news\/uk-airport-security-machine-learning\" target=\"_blank\" rel=\"noopener\">eight machine learning projects<\/a> to boost airport security. The selected projects will make use of ML techniques to detect threats on passengers and in bags, like an imaging device that can scan shoes for explosive materials. This effort is meant to shorten the time spent by passengers in queues during their screening process.<\/p>\n<p>Applying machine learning to security efforts, even those outside of cybersecurity, offers both those charged with keeping the world secure and those looking for protection a solution that sacrifices neither accuracy nor efficiency.<\/p>\n<h3>Adversarial machine learning<\/h3>\n<p>One of the reasons why we will want human checks on the development of the ML algorithms and their results is the unavoidable coming of <a href=\"https:\/\/blog.openai.com\/adversarial-example-research\/\" target=\"_blank\" rel=\"noopener\">adversarial machine learning<\/a>. In a nutshell, adversarial machine learning means the \u201cbad guys\u201d will come up with ways to lead our AL or ML astray. In cybersecurity, this could result in confusing the detection routines to a point where they would allow malware through. This is one of the reasons to use AI and ML alongside more traditional detection methods. When considering implementing artificial intelligence or machine learning, creating a system of checks and balances can help put to rest fears that the technology will be abused for wrongdoing.<\/p>\n<h3>Summary<\/h3>\n<p>Artificial intelligence and machine learning have already gained a foothold in cybersecurity, but we can promise you that this development will go a long way further as the two fields are a perfect fit. The amounts of new data coming in every day are too much for cost-effective human processing, and machines are less error-prone if trained properly. There will be some kinks to work out, as AI and ML are still very much in development phases. The expectation is that the implementation of AI and ML will make the human work less in quantity but more challenging.<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/security-world\/2018\/03\/how-artificial-intelligence-and-machine-learning-will-impact-cybersecurity\/\">How artificial intelligence and machine learning will impact cybersecurity<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n<p><a href=\"https:\/\/blog.malwarebytes.com\/security-world\/2018\/03\/how-artificial-intelligence-and-machine-learning-will-impact-cybersecurity\/\" target=\"bwo\" >https:\/\/blog.malwarebytes.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Pieter Arntz| Date: Fri, 09 Mar 2018 17:06:28 +0000<\/strong><\/p>\n<table cellpadding='10'>\n<tr>\n<td valign='top' align='center'><a href='https:\/\/blog.malwarebytes.com\/security-world\/2018\/03\/how-artificial-intelligence-and-machine-learning-will-impact-cybersecurity\/' title='How artificial intelligence and machine learning will impact cybersecurity'><img src='https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2018\/03\/MachineLearning.jpg' border='0'  width='300px'  \/><\/a><\/td>\n<\/tr>\n<tr>\n<td valign='top' align='left'>Both artificial intelligence and machine learning are being adopted in cybersecurity. But before they achieve mainstream traction, it&#8217;s important to discuss their impact to the industry.<\/p>\n<p>Categories: <\/p>\n<ul class=\"post-categories\">\n<li><a href=\"https:\/\/blog.malwarebytes.com\/category\/security-world\/\" rel=\"category tag\">Security world<\/a><\/li>\n<li><a href=\"https:\/\/blog.malwarebytes.com\/category\/security-world\/technology\/\" rel=\"category tag\">Technology<\/a><\/li>\n<\/ul>\n<p>Tags: <a href=\"https:\/\/blog.malwarebytes.com\/tag\/adversarial\/\" rel=\"tag\">adversarial<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/ai\/\" rel=\"tag\">AI<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/artificial-intelligence\/\" rel=\"tag\">artificial intelligence<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/cybersecurity\/\" rel=\"tag\">cybersecurity<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/machine-learning\/\" rel=\"tag\">machine learning<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/ml\/\" rel=\"tag\">ML<\/a><\/p>\n<table width='100%'>\n<tr>\n<td align=right>\n<p><b>(<a href='https:\/\/blog.malwarebytes.com\/security-world\/2018\/03\/how-artificial-intelligence-and-machine-learning-will-impact-cybersecurity\/' title='How artificial intelligence and machine learning will impact cybersecurity'>Read more&#8230;<\/a>)<\/b><\/p>\n<\/td>\n<\/tr>\n<\/table>\n<\/td>\n<\/tr>\n<\/table>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/security-world\/2018\/03\/how-artificial-intelligence-and-machine-learning-will-impact-cybersecurity\/\">How artificial intelligence and machine learning will impact cybersecurity<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10488,10378],"tags":[17754,10245,11113,4500,12038,17755,10497,1331],"class_list":["post-11705","post","type-post","status-publish","format-standard","hentry","category-malwarebytes","category-security","tag-adversarial","tag-ai","tag-artificial-intelligence","tag-cybersecurity","tag-machine-learning","tag-ml","tag-security-world","tag-technology"],"_links":{"self":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/11705","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=11705"}],"version-history":[{"count":0,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/11705\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=11705"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=11705"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=11705"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}