当前时间: 1970-01-01 08:00:00
分类:办公文件
评论(0)
这些AI攻击面,才是最难收敛的作用是什么?用户访问大模型,很多并非直连官方服务,而是依赖LiteLLM、One API、自研Proxy等中转站进行转发。攻击面在哪?被劫持或者使用攻击者提供的中转站。除了能看见交互内容,更危险的是还能修改返回命令。攻击面在哪?Agent可以执行任务,它处理的所有内容来源都是攻击面:IM消息、GitHub Issue、Jira工单、邮件……风险有哪些?用自身的软件、工具、接口等合法读写权限,执行恶意命令。不过,并非所有Agent都会成为攻击面,需要满足一套风险公式。有哪些基础设施?AI的落地需要大模型网关、MCP Server、中转站、Ollama等模型服务、Dify及n8n等AI工作流平台……这些都是基础设施。攻击面在哪?AI基础设施包含复杂的供应链,因此漏洞、投毒、不安全配置都会带来攻击面,例如最近的LiteLLM、Axios供应链投毒。面对这么多风险,AI安全的第一步不是如何拦截,而应该是资产化。看不见资产,根本谈不上安全治理。AI资产及攻击面梳理、收敛策略、攻击手法预测,直播解读。直播时间:5月13日下午14:00,欢迎微信扫描二维码报名。
基本
文件
流程
错误
SQL
调试
- 请求信息 : 2026-05-09 17:32:01 HTTP/1.1 GET : https://www.yeyulingfeng.com/a/593068.html
- 运行时间 : 0.106008s [ 吞吐率:9.43req/s ] 内存消耗:4,727.54kb 文件加载:145
- 缓存信息 : 0 reads,0 writes
- 会话信息 : SESSION_ID=92c7258931028c77010957fdff77245a
- CONNECT:[ UseTime:0.000595s ] mysql:host=127.0.0.1;port=3306;dbname=wenku;charset=utf8mb4
- SHOW FULL COLUMNS FROM `fenlei` [ RunTime:0.000796s ]
- SELECT * FROM `fenlei` WHERE `fid` = 0 [ RunTime:0.000364s ]
- SELECT * FROM `fenlei` WHERE `fid` = 63 [ RunTime:0.000284s ]
- SHOW FULL COLUMNS FROM `set` [ RunTime:0.000496s ]
- SELECT * FROM `set` [ RunTime:0.000199s ]
- SHOW FULL COLUMNS FROM `article` [ RunTime:0.000586s ]
- SELECT * FROM `article` WHERE `id` = 593068 LIMIT 1 [ RunTime:0.000379s ]
- UPDATE `article` SET `lasttime` = 1778319121 WHERE `id` = 593068 [ RunTime:0.007044s ]
- SELECT * FROM `fenlei` WHERE `id` = 64 LIMIT 1 [ RunTime:0.003826s ]
- SELECT * FROM `article` WHERE `id` < 593068 ORDER BY `id` DESC LIMIT 1 [ RunTime:0.000618s ]
- SELECT * FROM `article` WHERE `id` > 593068 ORDER BY `id` ASC LIMIT 1 [ RunTime:0.000461s ]
- SELECT * FROM `article` WHERE `id` < 593068 ORDER BY `id` DESC LIMIT 10 [ RunTime:0.002772s ]
- SELECT * FROM `article` WHERE `id` < 593068 ORDER BY `id` DESC LIMIT 10,10 [ RunTime:0.003376s ]
- SELECT * FROM `article` WHERE `id` < 593068 ORDER BY `id` DESC LIMIT 20,10 [ RunTime:0.003080s ]
0.107780s