Paul's Security Weekly (Audio) cover image

Paul's Security Weekly (Audio)

AI Is Oversharing and Leaking Data - Sounil Yu - PSW #865

Mar 13, 2025
Sounil Yu, CTO and co-founder of Gnostic, addresses pressing AI data leakage issues. He highlights how tools like Microsoft's Copilot lack adequate access controls, risking exposure of sensitive files. Gnostic’s innovative automation tackles these challenges, ensuring security without hindering innovation. The conversation dives into the complex balance of non-human identities and the dual risks of oversharing and undersharing in data management. Additionally, the impact of AI on job applications is examined, raising questions about the future role of human expertise in an increasingly automated world.
02:07:50

Episode guests

Podcast summary created with Snipd AI

Quick takeaways

  • Enterprise AI search tools, like Microsoft's Copilot, often lack necessary access controls, increasing the risk of data leaks.
  • Knostic's solution enables organizations to implement protective access controls, safeguarding sensitive data without stifling innovation.

Deep dives

AI Defenses Against Oversharing

Artificial Intelligence (AI) tools are increasingly utilized within organizations, but their potential for oversharing and data leaks poses significant risks. Tools like Microsoft's Copilot and Glean often lack the necessary access controls to ensure sensitive information is protected from unauthorized exposure. Gnostic is introduced as a solution to this problem, enabling enterprises to implement proper access controls through the establishment of a 'need-to-know' policy. This policy ensures that sensitive information is only accessible to individuals with a legitimate requirement, thereby helping organizations mitigate the risks of data leaks.

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner