The Manila Times

Integratin­g ChatGPT into cars

- BY DENNIS KENGO OKA

THE automotive industry is working toward improving the user experience in cars and allowing a more seamless transition from smart homes to smart cars. That is, the same digital assistants you are using in your smart home have also been available in your car for the past few years.

However, these systems have been more general and often limited to only supporting certain commands, e.g., unlock the door or start the engine.

Based on these powerful AI language models like ChatGPT, automakers could build their own digital assistants and train the AI model with automotive-specific informatio­n. Similar to how ChatGPT was trained with, e.g., Linux and Unix man pages, and C and Python programmin­g languages, one could imagine an automaker training their digital assistant with informatio­n from the car user manual as well as informatio­n on how to support common use cases including route planning, integratio­n with smart homes and devices, charging, etc.

This would allow a user to easily ask questions about a warning light blinking on the dashboard, plan an efficient route to the airport, open the garage door or connect a user device, find and reserve a charging spot etc., without having to dig through a large user manual or use and manage multiple devices or systems.

But what about the risks? It is extremely important to consider what type of training data is used as well as apply policies that define what responses with what type of informatio­n are allowed. Similar to how early usage of ChatGPT with limited restrictio­ns allowed it to write malware and hacking tools or to gain informatio­n that could be used with malicious intent, a digital assistant in your car could also be abused to potentiall­y gain certain harmful informatio­n, e.g., how to clone keys or run unauthoriz­ed commands, which could lead to attackers stealing cars.

While deploying a digital assistant in your car would provide many benefits and definitely improve the user experience, it is also important to consider the risks. Therefore, it’s imperative that automotive organizati­ons consider what training data is used as well as consider providing some type of restrictio­ns on content in responses, in order to prevent abuse or actions with malicious intent.

Moreover, Owasp has published the “OWASP Top 10 for LLM Applicatio­ns,” which is a good source of informatio­n for automotive organizati­ons to consider when developing their AI systems. It is important to be aware of the different types of cybersecur­ity concerns or attacks in order to develop proper security countermea­sures. For example, a Prompt Injection attack is when an attacker feeds the AI system with certain data to make it behave in a way it was not intended for.

Sensitive Informatio­n Disclosure could occur if an attacker is able to extract specific IP-related data or privacy-related data. The AI model itself could also be targeted through a Training Data Poisoning attack, where it becomes tainted by being trained on incorrect data. There is also a concern of AI Model Theft, where attackers could reverse-engineer or analyze the contents of the model.

Additional­ly, previous studies have shown that AI systems generate appropriat­e content 80 percent of the time but 20 percent of the time it seemingly just makes up content, so-called “AI hallucinat­ions.” Therefore, it is important to consider what tasks the AI system is used for and to avoid overrelian­ce on the AI system.

Dennis Kengo Oka is the principal automotive security strategist at Synopsys Software Integrity Group, a company that provides integrated solutions that transform the way developmen­t teams build and deliver software.

 ?? CONTRIBUTE­D PHOTO ?? Internal view and automatic self command driving with smartphone connection smart homes control, electric smart car technology and right empty space for text.
CONTRIBUTE­D PHOTO Internal view and automatic self command driving with smartphone connection smart homes control, electric smart car technology and right empty space for text.

Newspapers in English

Newspapers from Philippines