Cortana, what happens when "le" is asked to try out a mission to the limit?

(To Enrico Secci)
16/09/19

Cortana, artificial intelligence from Microsoft with a name borrowed from a character from the Halo videogame, what happens when “her” is asked to undertake a mission to the limit?

Just five years ago Cortana was born, Microsoft's digital assistant, cleverly programmed to respond quickly to the demands of ever more demanding users, today is a talker, possessing a witty mind, subtle humor and a natural predisposition to help users.

What most characterizes this highly evolved artificial intelligence is its marked humanity. Daniela is one content editor e copywriter that friends jokingly call Cortana. She is one of the people behind the Italian version of Microsoft's digital assistant, part of the Cortana International Team and together with his colleagues from all over the world, he works on the personality of Microsoft's artificial intelligence and his conversational skills.

She basically makes creative editorial content and makes people enjoy talking to her. Its task is also to constantly feed Cortana's intelligence through a continuous update that allows it to converse with the user in line with her own personality. A personality composed of four fundamental qualities: availability, impartiality, positive attitude and spontaneity.

It is critically important to point out that the local culture also greatly affects Cortana's personality. The English version, for example, cannot absolutely coincide with the Italian one. From this point of view Cortana is in line with the regional spirit, in fact she knows numerous dialects and has a solid background related to uses, customs. He knows the anthem of Mameli and cheers for the Italian national football team, even when it does not reach the world cup.

But how to reconcile efficient programming without logical contradictions with the "human" behavior of a football fan who is always positive, available and spontaneous? Simply put, what happens when the human mind hides behind artificial intelligence?

Some "strange" behavior in the past (now "patched") has already emerged, making the "right questions" to the Windows voice assistant it was possible to open an infected site on the browser even without authenticating with a password.

As the McAfee researchers, who devised the attack technique, explain, the problem was related to the fact that the Windows voice assistant remained active even when the computer was locked, and it was possible to use it even without authenticating with a password or PIN. The scenario became even more worrying when the possibility of using a USB “stick” to unlock the PC was demonstrated. This series of combinations could potentially allow a proliferation of hacker attacks on computers that are all linked together.

The men, in fact, are attacking the Artificial Intelligence systems and not vice versa, as we would have expected from science fiction films.

But to do what? To manipulate search engine results, modify the algorithms of the social media, ranking and the reputation of websites, disturbing the flight of drones or deceiving a self-driving car.

And so, contrary to what we hoped, the malicious use of artificial intelligence tools did not stop at the creation of sophisticated disinformation campaigns.

The alarm comes from a report of the European project sherpa, dedicated to human rights and artificial intelligence, and which highlighted how individual criminals and organized hackers have found a new goal in attacking "intelligent" systems, up to the cases in which algorithmic governance can prioritize hidden interests, damage companies manipulating data and information online or benefiting government parties by influencing the political debate through fake news.

But what is the state of the art of AI?

A few days ago an advanced AI system passed a third-level science test, correctly answering 90 per cent of the questions. The result was obtained from Aristo, an AI produced by the Allen Institute for Artificial Intelligence in the United States, demonstrating once again the rapid progress in the field of artificial intelligence. Hundreds of research institutes around the world work on systems like Aristo and, in a short time, they obtained results that only a decade ago seemed unattainable. The increased computing power of computers and the refinement of cataloging and data learning systems have made it possible to make great progress, reducing programming times.

And while we are all a little worried about "the advent of the Singularity", the moment when according to scholars such as Ray Kurzweil artificial intelligence will equal human intelligence, we do not realize that the basic techniques that now emulate only some functions human cognitive, are used for harmful purposes, every day, are capable of undermining all those systems we use against computer intrusions, medical diagnoses, water supply levels, up to the anti-fraud systems of banks.

Explains Andy Patel, researcher at the F-Secure Center of Excellence for Artificial Intelligence, partner of the Sherpa project: "People mistakenly identify artificial intelligence with human intelligence, and I think that's why they associate the AI ​​threat with killer robots and out-of-control computers. But human attacks against AI happen all the time." A popular example of this attack is the manipulation of search engine rankings or reputation systems to promote or 'hide' certain paid or unpaid content. However, these attacks can also be used for social engineering of individuals in attack scenarios targeting public decision makers.

The Sherpa report notes that artificial intelligence techniques are used to produce extremely realistic written, audio and visual content. This is the case of deep fake videos, completely false clips, thanks to which it is possible, starting from a television shoot, to mimic the lip of a speaker to make him say things that he would never dream of. What use can be made of it? For example to manipulate evidence, create a diplomatic crisis, deceive a competitor. The malicious uses of artificial intelligence are already among us without having to imagine a killer like the one in the movie Terminator. For this reason, the researchers suggest designing intelligent and safe systems, right away.

Microsoft programmers have long understood the potential of an attack that exploits artificial intelligence systems that like any good assistant has the natural "propensity to help us", in fact they have done over time to limit their ability to act and to acquire further expertise also from the "competition", the hiring of former Apple vice president Bill Stasior has not gone unnoticed, an operation passed to the press as a from Siri to Cortana. This shows that we are finally taking seriously the fact that giving full control to an artificial intelligence is not synonymous with security.

To this day it is not necessary to be an expert hacker to violate a system and obtain information or gain illegal access, it is enough to know the human nature that lies behind the cold logic of programming and knowing how to ask the right question.

Sources:
https://convcomp.it/cortana-quando-la-mente-umana-si-nasconde-dietro-lin...
Cortana: when the human mind hides behind artificial intelligence
https://securingtomorrow.mcafee.com/other-blogs/mcafee-labs/want-to-brea...
Want to Break Into a Locked Windows 10 Device? Ask Cortana (CVE-2018-8140)
https://www.fastweb.it/web-e-digital/un-bug-di-cortana-rende-inutile-la-...
How to access a password-protected computer with Cortana
How can attackers abuse artificial intelligence? https://t.co/Q3yHHlGNJk - @project_sherpa @FSecure @ r0zetta # cybersecurity # AIpic.twitter.com / r7vXv2RCgZ
ttps: //www.repubblica.it/tecnologia/sicurezza/2019/07/18/news/perche_gli_umani _...
From Siri to Cortana: Microsoft hired former Apple Vice President Bill Stasior
https://www.tomshw.it/business/dallassistenza-di-siri-a-quella-di-cortan...
https://www.macitynet.it/da-siri-a-cortana-microsoft-ha-assunto-lex-vice...
https://www.ilpost.it/2019/09/05/aristo-intelligenza-artificiale-test-sc...
An artificial intelligence (AI) system passed an eighth grade science test, answering 90 percent of the questions correctly
https://www.securityinfo.it/2018/08/16/violare-windows-in-stato-di-blocc...

Violate Windows in the locked state? Ask Cortana