GenAI_prompts_risk_harmonic

One in ten GenAI prompts puts sensitive data at risk

Teilen:

Despite their potential, many organizations hesitate to fully adopt GenAI tools due to concerns about sensitive data being inadvertently shared and possibly used to train these systems, according to Harmonic.

Sensitive data exposure in GenAI prompts

A new study, based on tens of thousands of prompts from business users, reveals that nearly one in ten potentially disclose sensitive data.

The prompts have been analyzed by Harmonic Security during Q4 of 2024 and monitor the use of GenAl tools including Microsoft Copilot, OpenAl ChatGPT, Google Gemini, Anthropic’s Claude, and Perplexity.

In the vast majority of cases, employee behavior when using GenAI tools is straightforward. Users commonly ask to summarize a piece of text, edit a blog, or write documentation for code. However, 8.5% of prompts are a concern and put sensitive information at risk.

Of this number, 45.8% of prompts potentially disclosed customer data, such as billing information and authentication data. A further 26.8% contained information on employees, including payroll data, PII, and employment records. Some prompts even asked GenAI to conduct employee performance reviews.

Of the remainder, legal and finance data accounted for 14.9%. This included information on sales pipeline data, investment portfolios, and M&A activity. Security-related information, comprising 6.9% of sensitive prompts, is particularly concerning.

Examples include penetration test results, network configurations, and incident reports. Such data could provide attackers with a blueprint for exploiting vulnerabilities. Finally, sensitive code, such as access keys and proprietary source code, constituted the remaining 5.6% of sensitive prompts potentially disclosed.

Free GenAI services pose security threat

Also of concern is the number of employees using the free tiers of GenAI services that typically don’t have the security features that ship with enterprise versions. Many free-tier tools explicitly state they train on customer data, meaning sensitive information entered could be used to improve models.

Of the GenAI models assessed 63.8% of ChatGPT users used the free tier, compared with 58.6% of those using Gemini, 75% for Claude, and 50.5% for Perplexity.

“Most GenAI use is mundane but the 8.5% of prompts we analyzed potentially put sensitive personal and company information at risk. In most cases, organizations were able to manage this data leakage by blocking the request or warning the user about what they were about to do. But not all firms have this capability yet. The high number of free subscriptions is also a concern, the saying that ‘if the product is free, then you are the product’ applies here and despite the best efforts of the companies behind GenAI tools there is a risk of data disclosure,” said Alastair Paterson, CEO at Harmonic Security.

Organizations must move beyond “block” strategies to manage GenAl risks effectively.

Quelle

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
11:50 am, März 16, 2025
Wetter-Symbol 8°C
L: 6° | H: 9°
broken clouds
Luftfeuchtigkeit: 59 %
Druck: 1025 mb
Wind: 14 mph NNE
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 75%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 6:12 am
Sonnenuntergang: 6:06 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 9:00 pm
Wetter-Symbol
6° | 9°°C 0 mm 0% 10 mph 76 % 1027 mb 0 mm/h
Tomorrow 9:00 pm
Wetter-Symbol
3° | 7°°C 0 mm 0% 10 mph 89 % 1028 mb 0 mm/h
Di. März 18 9:00 pm
Wetter-Symbol
4° | 10°°C 0 mm 0% 11 mph 77 % 1026 mb 0 mm/h
Mi. März 19 9:00 pm
Wetter-Symbol
4° | 15°°C 0 mm 0% 5 mph 83 % 1021 mb 0 mm/h
Do. März 20 9:00 pm
Wetter-Symbol
8° | 15°°C 0 mm 0% 9 mph 87 % 1019 mb 0 mm/h
Today 12:00 pm
Wetter-Symbol
7° | 8°°C 0 mm 0% 9 mph 59 % 1025 mb 0 mm/h
Today 3:00 pm
Wetter-Symbol
8° | 10°°C 0 mm 0% 10 mph 54 % 1025 mb 0 mm/h
Today 6:00 pm
Wetter-Symbol
8° | 8°°C 0 mm 0% 8 mph 60 % 1025 mb 0 mm/h
Today 9:00 pm
Wetter-Symbol
6° | 6°°C 0 mm 0% 3 mph 76 % 1027 mb 0 mm/h
Tomorrow 12:00 am
Wetter-Symbol
5° | 5°°C 0 mm 0% 5 mph 83 % 1027 mb 0 mm/h
Tomorrow 3:00 am
Wetter-Symbol
4° | 4°°C 0 mm 0% 7 mph 89 % 1027 mb 0 mm/h
Tomorrow 6:00 am
Wetter-Symbol
3° | 3°°C 0 mm 0% 6 mph 81 % 1027 mb 0 mm/h
Tomorrow 9:00 am
Wetter-Symbol
5° | 5°°C 0 mm 0% 8 mph 73 % 1028 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€75,626.84
-1.94%
Ethereum(ETH)
€1,715.99
-3.01%
Fesseln(USDT)
€0.92
-0.01%
XRP(XRP)
€2.11
-4.99%
Solana(SOL)
€119.66
-2.01%
USDC(USDC)
€0.92
0.00%
Dogecoin(DOGE)
€0.153807
-3.80%
Shiba Inu(SHIB)
€0.000012
-0.41%
Pepe(PEPE)
€0.000006
-4.58%
Peanut das Eichhörnchen(PNUT)
€0.189019
20.47%
Nach oben scrollen