Defense Advanced Research Projects Agency (DARPA) Launches AI Cyber Challenge to Secure Critical Infrastructure Software, US

Date:

The Defense Advanced Research Projects Agency (DARPA) is taking steps to enhance the security of critical infrastructure software through the launch of a two-year contest called the AI Cyber Challenge. In collaboration with AI startups Anthropic and OpenAI, as well as tech giants Microsoft and Google, DARPA aims to identify and address software vulnerabilities using AI technology.

The competition will involve U.S.-based teams competing to secure important software, specifically critical infrastructure code, by utilizing AI. To ensure the success of the challenge, the Linux Foundation’s Open Source Security Foundation (OSC) will serve as an advisor. A total of $18.5 million in prizes will be awarded to the top participants.

DARPA is also offering $1 million each to up to seven small businesses interested in participating in the challenge. The objective is to develop systems that can automatically defend software against cyberattacks. DARPA program manager Perry Adams, who conceived the AI Cyber Challenge, believes that AI has the potential to greatly enhance the security of code when used responsibly.

Open source code is increasingly being used in critical software, with a GitHub survey revealing that 97% of apps leverage open source code. However, this widespread use of open source has also led to an increase in vulnerabilities and exploits. An analysis by Synopsys discovered that 84% of codebases contained at least one known open source vulnerability, while 91% had outdated versions of open source components.

These vulnerabilities have resulted in a surge of supply chain attacks, with a Sonatype study reporting a 633% year-over-year increase in such attacks in 2022. The Colonial Pipeline ransomware attack and the SolarWinds supply chain attack have further emphasized the need to improve software supply chain security.

See also  Top 10 Cybersecurity Findings from Verizon's 2023 Data Breach Report

To address these concerns, the Biden-Harris Administration issued an executive order to enhance software supply chain security and established a cybersecurity safety review board. In partnership with The Open Source Security Foundation and Linux Foundation, the White House has called for $150 million in funding over two years to address open source security issues.

The AI Cyber Challenge aims to explore how AI can contribute to cybersecurity and protect critical infrastructure. By utilizing AI in cybersecurity tools, the challenge aims to not only strengthen defenses but also demonstrate the broader societal benefits of AI.

While AI has been associated with cyberattacks, experts believe that AI advancements can also fortify organizations’ cybersecurity by enabling security professionals to perform tasks more efficiently. According to a Kroll poll, over half of global business leaders are already using AI in their latest cybersecurity efforts.

The AI Cyber Challenge will kick off with a qualifying event in Spring 2024, where teams will compete for a chance to participate in a semifinal competition at DEF CON conference later that year. The top five teams will receive $2 million and proceed to the final phase of the competition, to be held at DEF CON 2025. The top three teams in the final round will receive additional prizes, with the first-place winner securing $4 million.

Although winners will be asked to open source their AI systems, it is not a requirement for participation.

The AI Cyber Challenge builds upon the model assessment conducted at this year’s DEF CON conference, which aims to identify and address malicious exploits using large language models like OpenAI’s ChatGPT. The assessment will also evaluate the alignment of these models with the principles outlined in the Biden-Harris administration’s blueprint for an AI bill of rights and the National Institute of Standards and Technology’s AI risk management framework.

See also  New York Times Sues OpenAI and Microsoft Over Unauthorized Use of Web Content

Frequently Asked Questions (FAQs) Related to the Above News

What is the AI Cyber Challenge?

The AI Cyber Challenge is a two-year contest organized by the Defense Advanced Research Projects Agency (DARPA), in collaboration with AI startups Anthropic and OpenAI, as well as tech giants Microsoft and Google. The objective is to enhance the security of critical infrastructure software by identifying and addressing software vulnerabilities using AI technology.

Who can participate in the AI Cyber Challenge?

The competition is open to U.S.-based teams interested in securing important software, specifically critical infrastructure code, using AI.

How will the AI Cyber Challenge be conducted?

The challenge will begin with a qualifying event in Spring 2024, where teams will compete for a chance to participate in a semifinal competition at the DEF CON conference later that year. The top five teams from the semifinals will proceed to the final phase of the competition, to be held at DEF CON 2025.

What are the prizes for the AI Cyber Challenge?

A total of $18.5 million in prizes will be awarded to the top participants. The top five teams will receive $2 million each, and the top three teams in the final round will receive additional prizes, with the first-place winner securing $4 million.

Is participation limited to large organizations or can small businesses also participate?

Small businesses interested in participating in the challenge can receive up to $1 million each from DARPA. This opportunity aims to encourage the involvement of smaller companies in developing systems for automatic defense against cyberattacks.

How does the AI Cyber Challenge align with the efforts to enhance software supply chain security?

The AI Cyber Challenge addresses the need to improve software supply chain security, as highlighted by recent supply chain attacks. The Biden-Harris Administration has issued an executive order to enhance software supply chain security and has called for funding to address open source security issues. The challenge aims to explore how AI can contribute to cybersecurity and protect critical infrastructure.

What is the role of AI in cybersecurity?

AI can fortify organizations' cybersecurity efforts by enabling security professionals to perform tasks more efficiently. It can be used in cybersecurity tools to strengthen defenses and improve protection against cyberattacks.

Is open sourcing the AI systems developed in the competition mandatory?

No, while winners will be asked to open source their AI systems, it is not a requirement for participation.

Are there any initiatives or frameworks guiding the AI Cyber Challenge?

The AI Cyber Challenge builds upon the model assessment conducted at the DEF CON conference. The assessment evaluates the use of large language models like OpenAI's ChatGPT and their alignment with the principles outlined in the Biden-Harris administration's blueprint for an AI bill of rights and the National Institute of Standards and Technology's AI risk management framework.

Please note that the FAQs provided on this page are based on the news article published. While we strive to provide accurate and up-to-date information, it is always recommended to consult relevant authorities or professionals before making any decisions or taking action based on the FAQs or the news article.

Share post:

Subscribe

Popular

More like this
Related

Obama’s Techno-Optimism Shifts as Democrats Navigate Changing Tech Landscape

Explore the evolution of tech policy from Obama's optimism to Harris's vision at the Democratic National Convention. What's next for Democrats in tech?

Tech Evolution: From Obama’s Optimism to Harris’s Vision

Explore the evolution of tech policy from Obama's optimism to Harris's vision at the Democratic National Convention. What's next for Democrats in tech?

Tonix Pharmaceuticals TNXP Shares Fall 14.61% After Q2 Earnings Report

Tonix Pharmaceuticals TNXP shares decline 14.61% post-Q2 earnings report. Evaluate investment strategy based on company updates and market dynamics.

The Future of Good Jobs: Why College Degrees are Essential through 2031

Discover the future of good jobs through 2031 and why college degrees are essential. Learn more about job projections and AI's influence.