{"id":92081,"date":"2023-05-24T20:29:26","date_gmt":"2023-05-24T20:29:26","guid":{"rendered":"https:\/\/www.techrepublic.com\/?p=4099099"},"modified":"2023-05-24T20:29:26","modified_gmt":"2023-05-24T20:29:26","slug":"cloudflare-releases-new-ai-security-tools-with-cloudflare-one","status":"publish","type":"post","link":"https:\/\/cloudnewshub.com\/?p=92081","title":{"rendered":"Cloudflare releases new AI security tools with Cloudflare One"},"content":{"rendered":"<figure id=\"attachment_4027093\" aria-describedby=\"caption-attachment-4027093\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"size-article wp-image-4027093\" src=\"http:\/\/cloudnewshub.com\/wp-content\/uploads\/2023\/05\/cloudflare-releases-new-ai-security-tools-with-cloudflare-one.jpg\" alt=\"A hologram with writing that says Zero Trust.\" width=\"770\" height=\"521\"><figcaption id=\"caption-attachment-4027093\" class=\"wp-caption-text\">Image: Alexander\/Adobe Stock<\/figcaption><\/figure>\n<p><a href=\"https:\/\/www.cloudflare.com\/press-releases\/2023\/zero-trust-security-to-safely-use-generative-ai\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cloudflare announced<\/a> on May 15, 2023 a new suite of zero-trust security tools for companies to leverage the benefits of <a href=\"https:\/\/www.techrepublic.com\/article\/artificial-intelligence-cheat-sheet\/\">AI<\/a> technologies while mitigating risks. The company integrated the new technologies to expand its existing Cloudflare One product, which is a secure access service edge zero trust network-as-a-service platform.<\/p>\n<p>The Cloudflare One platform\u2019s new tools and features are Cloudflare Gateway, service tokens, Cloudflare Tunnel, Cloudflare Data Loss Prevention and Cloudflare\u2019s cloud access security broker.<\/p>\n<p>\u201cEnterprises and small teams alike share a common concern: They want to use these AI tools without also creating a data loss incident,\u201d Sam Rhea, the vice president of product at Cloudflare, told TechRepublic.<\/p>\n<p>He explained that AI innovation is more valuable to companies when they help users solve unique problems. \u201cBut that often involves the potentially sensitive context or data of that problem,\u201d Rhea added.<\/p>\n<p>Jump to:<\/p>\n<h2 id=\"what\">What\u2019s new in Cloudflare One: AI security tools and features<\/h2>\n<p>With the new suite of AI security tools, Cloudflare One now allows teams of any size to safely use the excellent tools without management headaches or performance challenges. The tools are designed for companies to gain visibility into AI and measure AI tools\u2019 usage, prevent data loss and manage integrations.<\/p>\n<h3>Cloudflare Gateway<\/h3>\n<p>With <a href=\"https:\/\/www.cloudflare.com\/products\/zero-trust\/gateway\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cloudflare Gateway<\/a>, companies can visualize all the AI apps and services employees are experimenting with. Software budget decision-makers can leverage the visibility to make more effective software license purchases.<\/p>\n<p>In addition, the tools give administrators critical privacy and security information, such as internet traffic and threat intelligence visibility, network policies, open internet privacy exposure risks and individual devices\u2019 traffic (<strong>Figure A<\/strong>).<\/p>\n<p><strong>Figure A<\/strong><\/p>\n<figure id=\"attachment_4099102\" aria-describedby=\"caption-attachment-4099102\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"size-article wp-image-4099102\" src=\"http:\/\/cloudnewshub.com\/wp-content\/uploads\/2023\/05\/cloudflare-releases-new-ai-security-tools-with-cloudflare-one-1.jpg\" alt=\"Cloudflare Shadow IT dashboard reveals what applications and services workers are using that have not been officially approved by the company.\" width=\"770\" height=\"279\"><figcaption id=\"caption-attachment-4099102\" class=\"wp-caption-text\">Cloudflare Shadow IT dashboard reveals what applications and services workers are using that have not been officially approved by the company. Image: Cloudflare<\/figcaption><\/figure>\n<h3>Service tokens<\/h3>\n<p>Some companies have realized that in order to make generative AI more efficient and accurate, they must share training data with the AI and grant plugin access to the AI service. For companies to be able to connect these AI models with their data, <a href=\"https:\/\/developers.cloudflare.com\/cloudflare-one\/identity\/service-tokens\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cloudflare developed service tokens<\/a>.<\/p>\n<p>Service tokens give administrators a clear log of all API requests and grant them full control over the specific services that can access AI training data (<strong>Figure B<\/strong>). Additionally, it allows administrators to revoke tokens easily with a single click when building <a href=\"https:\/\/www.techrepublic.com\/article\/chatgpt-cheat-sheet\/\">ChatGPT<\/a> plugins for internal and external use.<\/p>\n<p><strong>Figure B&nbsp;<\/strong><\/p>\n<figure id=\"attachment_4099100\" aria-describedby=\"caption-attachment-4099100\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"size-article wp-image-4099100\" src=\"http:\/\/cloudnewshub.com\/wp-content\/uploads\/2023\/05\/cloudflare-releases-new-ai-security-tools-with-cloudflare-one-2.jpg\" alt=\"Cloudflare service tokens dashboard.\" width=\"770\" height=\"634\"><figcaption id=\"caption-attachment-4099100\" class=\"wp-caption-text\">Cloudflare service tokens dashboard. Image: Cloudflare<\/figcaption><\/figure>\n<p><em>&nbsp;<\/em><\/p>\n<p>Once service tokens are created, administrators can add policies that can, for example, verify the service token, country, IP address or an mTLS certificate. Policies can be created to require users to authenticate, such as completing an MFA prompt before accessing sensitive training data or services.<\/p>\n<h3>Cloudflare Tunnel<\/h3>\n<p><a href=\"https:\/\/www.cloudflare.com\/products\/tunnel\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cloudflare Tunnel<\/a> allows teams to connect the AI tools with the infrastructure without affecting their firewalls. This tool creates an encrypted, outbound-only connection to Cloudflare\u2019s network, checking every request against the configured access rules (<strong>Figure C<\/strong>).<\/p>\n<p><strong>Figure C<\/strong><\/p>\n<figure id=\"attachment_4099101\" aria-describedby=\"caption-attachment-4099101\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"size-article wp-image-4099101\" src=\"http:\/\/cloudnewshub.com\/wp-content\/uploads\/2023\/05\/cloudflare-releases-new-ai-security-tools-with-cloudflare-one-3.jpg\" alt=\"Cloudflare Tunnel creation dashboard. \" width=\"770\" height=\"530\"><figcaption id=\"caption-attachment-4099101\" class=\"wp-caption-text\">Cloudflare Tunnel creation dashboard. Image: Cloudflare<\/figcaption><\/figure>\n<h3>Cloudflare Data Loss Prevention<\/h3>\n<p>While administrators can visualize, configure access, secure, block or allow AI services using security and privacy tools, human error can also play a role in data loss, data leaks or privacy breaches. For example, employees may accidentally overshare sensitive data with AI models by mistake.<\/p>\n<p><a href=\"https:\/\/www.cloudflare.com\/products\/zero-trust\/dlp\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cloudflare Data Loss Prevention<\/a> secures the human gap with pre-configured options that can check for data (e.g., Social Security numbers, credit card numbers, etc.), do custom scans, identify patterns based on data configurations for a specific team and set limitations for special projects.<\/p>\n<h3>Cloudflare\u2019s cloud access security broker<\/h3>\n<p>In a recent <a href=\"https:\/\/blog.cloudflare.com\/zero-trust-ai-security\/\" target=\"_blank\" rel=\"noopener noreferrer\">blog post<\/a>, Cloudflare explained that new generative AI plugins such as those offered by ChatGPT provide many benefits but can also lead to unwanted access to data. Misconfiguration of these applications can cause security violations.<\/p>\n<p><a href=\"https:\/\/www.cloudflare.com\/products\/zero-trust\/casb\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cloudflare\u2019s cloud access security broker<\/a> is a new feature that gives enterprises comprehensive visibility and control over SaaS apps. It scans SaaS applications for potential issues such as misconfigurations and alerts companies if files are accidentally made public online. Cloudflare is working on new CASB integrations, which will be able to check for misconfigurations on new popular AI services such as <a href=\"https:\/\/www.techrepublic.com\/article\/bing-ai-search-operators-tutorial\/\">Microsoft\u2019s Bing<\/a>, <a href=\"https:\/\/www.techrepublic.com\/article\/google-bard-ai-wait-list\/\">Google\u2019s Bard<\/a> or <a href=\"https:\/\/www.techrepublic.com\/article\/amazon-bedrock-titan-cloud-artificial-intelligence\/\">AWS Bedrock<\/a>.<\/p>\n<h2 id=\"global\">The global SASE and SSE market and its leaders<\/h2>\n<p>Secure access service edge and security service edge solutions have become increasingly vital as companies migrated to the cloud and into hybrid work models. When Cloudflare was recognized by Gartner for its SASE technology, the company detailed in a <a href=\"https:\/\/blog.cloudflare.com\/cloudflare-sse-gartner-magic-quadrant\/\" target=\"_blank\" rel=\"noopener noreferrer\">press release<\/a> the difference between both acronyms by explaining SASE services extend the definition of SSE to include managing the connectivity of secured traffic.<\/p>\n<aside class=\"pinbox right\">\n<h3 class=\"heading\">Must-read security coverage<\/h3>\n<\/aside>\n<p>The SASE global market is poised to continue growing as new AI technologies develop and emerge. <a href=\"https:\/\/www.gartner.com\/doc\/reprints?id=1-2CN0Z5RM&amp;ct=230221&amp;st=sb&amp;mkt_tok=NzEzLVhTQy05MTgAAAGLxLd5Ljf42_t8AnQmh1XcRoR8kGum0JtgloICkN_gNOnDsCmz_Zmp_Gm1duNAi1DQyDxWemFa8psiyS0DEApdZ9UpoNJFDcZ758za0XrpMdqwc-zUOQ\" target=\"_blank\" rel=\"noopener noreferrer\">Gartner<\/a> estimated that by 2025, 70% of organizations that implement agent-based zero-trust network access will choose either a SASE or a security service edge provider.<\/p>\n<p>Gartner added that by 2026, 85% of organizations seeking to procure a cloud access security broker, secure web gateway or zero-trust network access offerings will obtain these from a converged solution.<\/p>\n<p>Cloudflare One, which was launched in 2020, was recently recognized as the only new vendor to be added to the 2023 <a href=\"https:\/\/www.gartner.com\/reviews\/market\/security-service-edge\" target=\"_blank\" rel=\"noopener noreferrer\">Gartner Magic Quadrant for Security Service Edge<\/a>. Cloudflare was identified as a niche player of the Magic Quadrant with a strong focus on network and zero trust. The company faces strong competition from leading companies, including Netskope, Skyhigh Security, Forcepoint, Lookout, Palo Alto Networks, Zscaler, Cisco, Broadcom and Iboss.<\/p>\n<h2 id=\"benefits\">The benefits and the risks for companies using AI<\/h2>\n<p>Cloudflare One\u2019s new features respond to the increasing demands for AI security and privacy. Businesses want to be productive and innovative and leverage generative AI applications, but they also want to keep data, cybersecurity and compliance in check with built-in controls over their data flow.<\/p>\n<p>A recent KPMG survey found that <a href=\"https:\/\/info.kpmg.us\/news-perspectives\/technology-innovation\/kpmg-generative-ai-2023.html\" target=\"_blank\" rel=\"noopener noreferrer\">most companies believe generative AI will significantly impact business<\/a>; deployment, privacy and security challenges are top-of-mind concerns for executives.<\/p>\n<p>About half (45%) of those surveyed believe AI can harm their organizations\u2019 trust if the appropriate risk management tools are not implemented. Additionally, 81% cite cybersecurity as a top risk, and 78% highlight data privacy threats emerging from the use of AI.<\/p>\n<p>From <a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2023-05-02\/samsung-bans-chatgpt-and-other-generative-ai-use-by-staff-after-leak#xj4y7vzkg\" target=\"_blank\" rel=\"noopener noreferrer\">Samsung<\/a> to <a href=\"https:\/\/www.wsj.com\/articles\/jpmorgan-restricts-employees-from-using-chatgpt-2da5dc34\" target=\"_blank\" rel=\"noopener noreferrer\">Verizon and JPMorgan Chase<\/a>, the list of companies that have banned employees from using generative AI apps continues to increase as cases reveal that AI features can leak sensible business data.<\/p>\n<p>AI governance and compliance are also becoming increasingly complex as new laws like the <a href=\"https:\/\/artificialintelligenceact.eu\/\" target=\"_blank\" rel=\"noopener noreferrer\">European Artificial Intelligence Act<\/a> gain momentum and countries strengthen their AI postures.<\/p>\n<p>\u201cWe hear from customers concerned that their users will \u2018overshare\u2019 and inadvertently send too much information,\u201d Rhea explained. \u201cOr they can share sensitive information with the wrong AI tools and wind up causing a compliance incident.\u201d<\/p>\n<p>Despite the risks, the KPMG survey reveals that executives still view new AI technologies as an opportunity to increase productivity (72%), change the way people work (65%) and encourage innovation (66%).<\/p>\n<p>\u201cAI holds incredible promise, but without proper guardrails, it can create significant risks for businesses,\u201d Matthew Prince, the co-founder and chief executive officer of Cloudflare, said in the press release. \u201cCloudflare\u2019s Zero Trust products are the first to provide the guard rails for AI tools, so businesses can take advantage of the opportunity AI unlocks while ensuring only the data they want to expose gets shared.\u201d<\/p>\n<h2 id=\"cloudflare\">Cloudflare\u2019s swift response to AI<\/h2>\n<p>The company released its new suite of AI security tools at an incredible speed, even as the technology is still taking shape. Rhea talked about how Cloudflare\u2019s new suite of AI security tools was developed, what the challenges were and if the company is planning for upgrades.<\/p>\n<p>\u201cCloudflare\u2019s Zero Trust tools build on the same network and technologies that power over 20% of the internet already through our first wave of products like our Content Delivery Network and Web Application Firewall,\u201d Rhea said. \u201cWe can deploy services like data loss prevention (DLP) and secure web gateway (SWG) to our data centers around the world without needing to buy or provision new hardware.\u201d<\/p>\n<p>Rhea explained that the company can also reuse the expertise it has in existing, similar functions. For example, \u201cproxying and filtering internet-bound traffic leaving a laptop has a lot of similarities to proxying and filtering traffic bound for a destination behind our reverse proxy.\u201d<\/p>\n<p>\u201cAs a result, we can ship entirely new products very quickly,\u201d Rhea added. \u201cSome products are newer \u2014 we introduced the GA of our DLP solution roughly a year after we first started building. Others iterate and get better over time, like our Access control product that first launched in 2018. However, because it is built on Cloudflare\u2019s serverless computer architecture, it can evolve to add new features in days or weeks, not months or quarters.\u201d<\/p>\n<h2 id=\"next\">What\u2019s next for Cloudflare in AI security<\/h2>\n<p>Cloudflare says it will continue to learn from the AI space as it develops. \u201cWe anticipate that some customers will want to monitor these tools and their usage with an additional layer of security where we can automatically remediate issues that we discover,\u201d Rhea said.<\/p>\n<p>The company also expects its customers to become more aware of the data storage location that AI tools used to operate. Rhea added, \u201cWe plan to continue to ship new features that make our network and its global presence ready to help customers keep data where it should live.\u201d<\/p>\n<p>The challenges remain twofold for the company breaking into the AI security market, with cybercriminals becoming more sophisticated and customers\u2019 needs shifting. \u201cIt\u2019s a moving target, but we feel confident that we can continue to respond,\u201d Rhea concluded.<\/p>\n<p> <!-- default newsletter at the end --> <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Image: Alexander\/Adobe Stock Cloudflare announced on May 15, 2023 a new suite of zero-trust security tools for companies to leverage the benefits of AI technologies while mitigating risks. The company integrated the new technologies to expand its existing Cloudflare One product, which is a secure access service edge zero trust network-as-a-service platform. The Cloudflare One [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":92082,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[77,39,40,783,56,287],"tags":[],"class_list":["post-92081","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-artificial-intelligence","category-big-data","category-cloud","category-cloudsync","category-cybersecurity","category-security"],"_links":{"self":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts\/92081","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=92081"}],"version-history":[{"count":0,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts\/92081\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/media\/92082"}],"wp:attachment":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=92081"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=92081"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=92081"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}