Information Security Tips (June 2023) – AI Tools and Information Security
資訊安全貼士 (2023年6月號) - 人工智能工具與資訊安全
To: All Users
Artificial intelligence (AI) refers to a system or device that can simulate human intelligence, and realize automation, optimization and innovation functions through big data analysis, machine learning and other technologies. In recent years, the development and application of AI tools have become increasingly widespread, bringing convenience and efficiency to our life. It can chat with you, generate articles, draw portraits, write computer programs and more. When choosing and using AI tools, below are some precautions:
- Always use official and legal channels to obtain AI tools:
- Hackers have created fake AI apps and websites to trick people into downloading and using them. However, these AI apps could be a piece of malware that steals data from your device, or they could steal your credit card and personal information by charging you for the service.
- Be careful when sharing personal or confidential information with AI tools:
- Even using a reputable AI tool, don’t provide any personal or confidential information before understanding and accepting its privacy policy. The information you provide may be used to train the AI model and may be included in the responses to other people’s queries. And, it could lead to a data breach.
- Don’t open files and links in emails unsuspectedly:
- Hackers can use AI tools to generate highly realistic phishing emails that are difficult to be identified by spam filters and even humans. If you have doubts about the email content or sender, don’t open the attached files and links, and don’t trust the contact methods. Confirm the authenticity of the email through a credible channel, such as, by calling the sender directly before taking the next step or replying.
- Don’t fully trust the content generated by AI tools:
- An AI tool is only as good as the data it uses. If the data it learns from is outdated, incomplete, or incorrect, it may generate inaccurate, untrue, illegal, or unethical content. Therefore, whatever you get from an AI tool, verify it carefully before using and trusting it.
- Pay attention to the copyright of the content generated by AI tools:
- The content generated by AI tools may have been used by others, or may contain copyrighted content of others.
Reference:
How to download and install software in a secure manner?
Don’t Let a Phishing Scam Reel You In
Scammers keep changing the way of fraud. Are you always ready to protect yourself?
Data Privacy in an Era of Compliance
Other Information Security Tips
Should you have any enquiries, please feel free to contact ICTO Help Desk.
ICTO Help Desk
Location : Room 2085, 2/F, Central Teaching Building (E5), eMap
Telephone : 8822 8600
email : icto.helpdesk@um.edu.mo
Information and Communication Technology Office
各位用戶:
人工智能(AI)是指能夠模擬人類智能的系統或裝置,通過大數據分析、機器學習等技術,實現自動化、優化和創新的功能。近年來,AI工具的發展和應用日益廣泛,為各行各業帶來了便利和效率。它能跟您聊天,也能生成文章、繪畫畫像、編寫電腦程式等等。在選擇和使用AI工具時,可參考以下一些注意事項:
- 只從官方及合法途徑取得AI 工具:
- 黑客創建了假冒的 AI 應用程序及網站,誘使您下載及使用它們。然而,這些AI 應用程序可能是一個竊取您裝置數據的惡意軟件,也可能藉由向您收取服務費用,從而盜取您用來付費的信用咭及個人資料。
- 使用 AI 工具共享個人或機密資料時要小心:
- 就算是使用知名的AI工具,在了解及同意其相關的隱私政策前,切勿提供任何個人或機密資料。您所提供的資料,可能會用來訓練 AI 模型,並可能包含在對其他人查詢的回應中,從而演變成資料外泄。
- 切勿隨意開啟電郵中的檔案及連結:
- 黑客可借助AI工具來產生仿真度高,令垃圾郵件過濾器及真人也難以辨識的釣魚電郵。若您對電郵的內容或發送者有懷疑,切勿開啟當中的檔案及連結,也不要相信電郵中的聯絡方法。請先由可信的途徑確認電郵的真偽,如直接致電發送者,才作下一步行動或回覆。
- 不要完全相信AI工具生成的內容:
- AI工具的好壞取決於它使用的數據,如果它所學習的數據陳舊、不完整或是錯誤的,則可能會生成不準確、不真實、違法或不道德的內容。因此,無論您從 AI 工具中獲得什麼內容,在使用及相信前務必仔細驗證。
- 關注由AI工具生成的內容之版權:
- AI工具所生成的內容也可能已經被其他人使用過,或者包含了其他人的版權內容。
參考資料
如何安全地下載及安裝應用軟件?
慎防被捲入網絡釣魚騙局當中
騙徒手法層出不窮,你做好應對準備了嗎?
合規時代的資料私隱保障
其他資訊安全貼士
如有任何疑問,請聯絡資訊及通訊科技部服務中心。
服 務 中 心
位置 : 中央教學樓東5座(E5)二樓2085室 (電子地圖)
電話 : 8822 8600
電郵 : icto.helpdesk@um.edu.mo
資訊及通訊科技部