Philippines
Open Secure AI Alliance Launched to Enhance Cybersecurity
A coalition of tech companies advocates for open AI technologies to bolster cybersecurity defenses, citing recent incidents as a catalyst for change.

A coalition comprising technology companies, cybersecurity firms, and open source organizations has established the Open Secure AI Alliance, advocating for the integration of open artificial intelligence (AI) technologies into cybersecurity practices. The alliance posits that open source software is foundational to various sectors, including cloud computing, financial services, and government operations, and it argues that open AI models can similarly enhance cybersecurity by allowing organizations to inspect and adapt AI systems within their own environments.
According to the alliance, while both open and closed AI models are necessary for cybersecurity, open systems offer greater transparency, flexibility, and control, thereby diminishing reliance on a singular technology provider. This assertion is underscored by a recent cybersecurity incident involving Hugging Face, where the company utilized an open-weight AI model on its own infrastructure to analyze over 17,000 actions during a cyberattack, after closed AI tools failed to assist in its forensic investigation. The alliance noted that the incident demonstrated the importance of allowing organizations to operate advanced AI systems independently during security crises.
The founding members of the Open Secure AI Alliance include prominent organizations such as Nvidia, Adobe, Cisco, Cloudflare, and Microsoft, among others. These companies collectively aim to develop and disseminate open technologies, techniques, and tools that will enhance the security of software systems and AI agents. The alliance has also acknowledged concerns regarding the potential misuse of open AI models for cyberattacks, asserting that similar risks exist with proprietary systems. To mitigate these risks, the alliance advocates for rigorous testing, security evaluations, and rapid vulnerability remediation.
Several member organizations have pledged contributions to open AI security projects. For instance, Nvidia announced it would provide open models, datasets, and research related to AI agents, alongside releasing the open source Nvidia Labs Object-Oriented Agent (NOOA) framework on GitHub to facilitate the testing and governance of AI agents. Other contributions include Hewlett Packard Enterprise's work on the SPIFFE and SPIRE zero-trust identity framework and IBM and Red Hat's Lightwell project for digitally signed software patches.
The alliance is also calling on policymakers to recognize open AI models and security tools as defensive technologies rather than security threats. It emphasizes the need for increased investment in shared AI defense infrastructure, including datasets and attack simulators, to support the secure development and deployment of AI systems. As the landscape of cybersecurity continues to evolve, the Open Secure AI Alliance aims to position open AI technologies as critical components in the ongoing battle against cyber threats.