The Future

Can humans purge the bots without sacrificing our privacy?

Can humans purge the bots without sacrificing our privacy?

By Ross Pomeroy | Published: 2024-12-07 16:00:00 | Source: The Future – Big Think


Sign up for Big Think on Substack

The most surprising and impactful new stories delivered to your inbox every week, for free.

There is a popular theory that the internet is “dead.” The claim is that the vast majority of the internet’s content and traffic is now generated by artificial intelligence and bots, talking aimlessly to each other, rendering the online world effectively lifeless – devoid of human creation.

This dystopian view stands in stark contrast to the early internet of the 1990s. Back then, it seemed like an infinite canvas onto which humanity was painting their creativity, humor, and personal experiences. In the 2000s, we filled forums with Lolcats and “O RLY?” owls. We played colorful, cheeky online games at Candystand, Newgrounds, and Addicting Games. We posted videos of ourselves lip-syncing while chair-dancing. The internet seemed vibrantly fun and undeniably human.

But then came the bots, computer programs automated to perform certain online tasks, such as crawling webpages, posing as real people on websites, leaving reviews, boosting or denigrating products, and attempting to break into the accounts of genuine users. The online world transformed from a hopeful place where online connections could cement earthly ones into something cheap, synthetic, and untrustworthy. (How many times have you read online comments or reviews and wondered whether a real person actually wrote them?) Artificial intelligence advances have sent this metamorphosis into overdrive, manufacturing realistic images, videos, voices, and text. Online, you cannot believe your eyes or ears.

“There is a substantial risk that, without further mitigations, deceptive AI-powered activity could overwhelm the internet.”

Adler et al.

So the “dead internet” theory is no longer so implausible. According to the 2024 Imperva Bad Bot Report, the proportion of internet traffic generated by bots hit almost 50% this year, growing 2% from the year prior. It’s hard to get a handle on the share of essentially fake websites, social media accounts, comments, reviews, and emails being churned out by bots, but it is surely vast.

In August, an international group of technologists, policymakers, and academics – hailing from institutions including Harvard, MIT, Oxford, and Berkeley, and companies such as OpenAI and Microsoft – outlined a plan to halt the bots’ online takeover (or at least create human redoubts). Their solution? Personhood credentials, “digital credentials that empower users to demonstrate that they are real people—not AIs—to online services, without disclosing any personal information.”

Passport, driver’s license, Social Security number, birth certificate: These all-important signifiers of identity have been required for certain services and activities for years. Could an online “personhood credential” (PHC) join them? And what kind of unintended consequences might spill out from it?

An increasingly deceptive online world

“There is a substantial risk that, without further mitigations, deceptive AI-powered activity could overwhelm the internet,” the authors write.

“A future internet without PHCs means anyone you meet online is assumed a bot until proven otherwise,” Dr. Sean McGregor, a co-author on the report and Director of Advanced Testing Research at the Digital Safety Research Institute, told Freethink. “Effectively, either PHCs are widely adopted or people become responsible for doing the personhood verification themselves.”

Two forms of deception that threaten the internet’s future are “sockpuppets” and bot attacks. “Sockpuppets” here can mean bots or AIs purporting to be people. These are behind the Facebook and X profiles that spread deliberate disinformation. They are also the kind of bots used to malign (or boost) certain businesses, perpetrate scams, and try to alter financial markets with misleading information. They also regularly overwhelm US government public comment processes for new laws and regulations. Millions of fake comments were submitted to the Federal Communications Commission’s 2017 public request for comment on net neutrality, for example.

“(Bad) actors’ increased access to sophisticated and inexpensive AI tools may make their attacks far more effective.”

Adler et al.

Bot attacks pose a different threat. Malicious actors create groups of bots that send mass email spam, attempt brute-force break-ins to online customer accounts, and overload internet services with requests (DDOS), triggering major outages. DDOS attacks are now regular occurrences. Microsoft’s Azure cloud service was disrupted for eight hours in July. Recently, “hacktivists” targeted over 50 organizations in France after the French government arrested Telegram founder Pavel Durov.

Tools like CAPTCHAs and AI content detectors are trying to keep the internet predominantly human. Charging fees, utilizing document and appearance-based verification, and asking for phone numbers and email addresses are additional strategies to limit bot proliferation. However, the authors worry that these methods will grow increasingly obsolete in the looming AI era.

“Although bad actors have perpetrated deceptive attacks for decades, actors’ increased access to sophisticated and inexpensive AI tools may make their attacks far more effective—harder to distinguish and also more prevalent,” they wrote.

Personhood credentials to the rescue?

AIs might be able to look and sound like us in the digital world, but until they take convincing corporeal form with the help of (as yet) sci-fi robotics, they are merely pixels on a screen. So acquiring personhood credentials will necessitate an errand, perhaps something like visiting the department of motor vehicles (DMV).

“To get a personhood credential, you are going to have to show up in person or have a relationship with the government, like a tax ID number,” Tobin South, a graduate student in MIT’s Media Lab and one of the report’s authors, told MIT News. “There is an offline component. You are going to have to do something that only humans can do. AIs can’t turn up at the DMV, for instance.”

The authors envision various organizations issuing personhood credentials (PHCs). These might be state or federal government entities or private providers regulated by governments. “Governments have a history of proving who is human, so they are a great place to start,” McGregor argues.

Individuals could visit any of these issuers in person and provide proof of identification. They might choose to use existing documents like a passport or government-issued ID. Or they could opt for a biometric scan, submitting their palm, iris, or fingerprint for measurement. Supplying this information ensures that only one PHC is given to one person — but, importantly, the person’s identity is not linked to the specific credential that’s given out. An anonymous PHC is then issued, stored digitally on one’s devices, and managed via built-in applications. It could then be used across the internet to prove humanity where necessary. Every few years, a PHC would need to be re-authenticated in order to ensure it still represents a real, unique person.

While a PHC proves your humanity, it would not be identification — users would maintain anonymity.

If the idea of visiting the DMV to gain access to online services hasn’t turned you off, you may still be raising an eyebrow at the privacy implications.

Crucially, the authors insist, no other information ought to be shared or connected to the credential. While a PHC proves your humanity, it would not be identification — users would maintain anonymity, and it could not be used to trace their digital activity across the web or link it back to their real world identity.

The authors say that public key cryptography would likely serve as the foundation for this system of anonymous personhood credentials.

“A PHC issuer could maintain a list of public keys (each related to a valid credential), each of which has a paired secret private key. When a new person successfully enrolls in the PHC system, the issuer lets this person add exactly one public key to the list of valid keys—the private key is known only to the user enrolling,” they described.

Now, how does a user prove they are the holder of a valid PHC key to an online service provider, without revealing the key itself (thus risking its theft)? Here, the authors suggest zero-knowledge proofs. 

“Zero-knowledge proofs are cryptographic protocols that enable a ‘prover’ to convince a ‘verifier’ of a statement’s truth, without revealing any additional information beyond the validity of the statement,” the authors explained. “The user proves to the service provider that the statement ‘I hold a valid PHC’ is true, without revealing which PHC—for instance, by proving ‘I hold a secret private key that pairs with some public key on the issuer’s list.’”

Clear benefits, but real difficulties

Some benefits of PHCs are obvious. Sites and online services that require PHCs could practically rid themselves of many kinds of bots, becoming far less susceptible to attacks and making their ecosystems safer for customers. Websites that merely provide an option to verify users’ PHCs could label real humans, allowing users to know who is a confirmed person.

But there are genuine risks and challenges. For one, in a system where PHCs become widely adopted and almost a necessity for using the internet, PHC issuers will hold a lot of power. Imagine a country where a repressive government is the only issuer of PHCs. It could choose who to give them to based upon a person’s politics, personal characteristics, or impose other bogus requirements. Free speech might be stifled. In democratic societies, multiple competing issuers of equally valid PHCs are an essential check on the power given to issuers.

This raises its own issue. With multiple PHC issuers available, people looking to make a quick buck could acquire multiple PHCs and sell them to unscrupulous actors seeking to make bots that pose as real humans. This could be surmounted by PHC issuers sharing a universal database of identity information to ensure one person doesn’t receive multiple PHCs. However, this then presents further risks around privacy and centralization. The authors recommend a middle ground, where each person can only obtain a bounded number of credentials in the overall ecosystem. Issuers will only share basic information with each other about how many PHCs a unique person has been issued.

“The technological issues are solved for PHCs, but we need humans to demand the solution.”

Sean McGregor

Still, some people might also find it challenging to acquire PHCs, whether due to time constraints or difficulty getting out. Others might not want to attain a PHC for privacy concerns — even if the system conceived by the researchers really is foolproof, that’s no guarantee that governments or private PHC providers would necessarily implement it that way. Hackers are clever, and human errors are common. Whatever the reason, people who end up without a PHC might find their contributions online discounted, or they might be excluded from major services altogether.

Third, PHC issuers themselves could be subject to cyberattacks, endangering their clients’ credentials.

Of course, for these hypothetical concerns to materialize, PHCs must first see wide adoption, and it’s tough to see this happening without major pushes from politicians, key online service providers, and everyday internet users.

“PHCs are a multi-sided market requiring collective adoption to be useful,” McGregor said. “The technological issues are solved for PHCs, but we need humans to demand the solution.”

Ready or not, PHCs are already here

These challenges haven’t stopped one startup from trying to set up its own PHC. In 2023, Tools for Humanity, founded four years earlier by OpenAI chief executive Sam Altman, Max Novendstern, and Alex Blania, launched World ID, the first mass personhood credential. To attain one, a human must have their iris scanned by one of the company’s orbs. In exchange, they receive a few coins of the company’s cryptocurrency, WLD. The orb then creates a unique code and links it to a user-created ID held on the World app. The company’s system is blockchain-based and utilizes zero-knowledge proofs to prove a holder’s personhood to service providers.

Tools for Humanity has taken in more than a quarter-billion dollars of investor funds and has currently signed up more than 6 million users, mostly in South America. The company, however, started running into serious roadblocks this year as various government agencies in countries ranging from Kenya and India to Brazil and Spain ordered it to halt operations out of concerns for their citizens’ privacy.

The saga showcases how governments are hesitant to cede identity controls to private companies. But do their concerns supersede the threats that AI and bots pose to online denizens? That is a choice that the people around the internet will increasingly have to make in the years ahead.

This article was originally published by our sister site, Freethink.

Sign up for Big Think on Substack

The most surprising and impactful new stories delivered to your inbox every week, for free.


Source link


ــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــــ

There will soon be unique, exclusive, and new articles such as:
xooox, Mesothelioma attorney specialized, Best-structured settlement annuity companies, Purchase structured settlements, Offshore accident lawyer premium, High-end luxury private jet charter, Top-tier business liability insurance providers, Executive Rehabilitation Center luxury, Premium wrongful death attorney, Best commercial truck accident lawyer, Luxury private rehab for celebrities, Elite spinal cord injury lawyers, Structured settlement funding companies elite, High-end yacht charter brokers, Premium business-class flight deals, Top-tier corporate video conferencing solutions, Luxury executive rehab facilities, High-end mesothelioma law firms, Premium business continuity consultancy, Elite private jet charter hourly rates, Top-tier corporate event management companies, Insurance, Loans, Mortgage, Attorney, Credit, Lawyer, Donate, Degree, Hosting, Claim, Conference Call, Trading, Software, Recovery, Transfer, Gas/Electricity, Classes, Rehab, Treatment, Cord Blood, houston maritime attorney, offshore accident lawyer, best motorcycle accident lawyer, 18 wheeler accident lawyer san antonio, scranton personal injury lawyer, truck accident attorney dallas, houston trucking accident attorney, mesothelioma attorney assistance, new york construction accident lawyer, maritime lawyer new orleans, california auto accident laywer, auto accident attorney california, auto accident attorney colorado springs, car accident lawyer jacksonville, truck accident lawyer dallas, urgent care emr, hospital alcohol detox, dermatological problem, fort lauderdale hospital detox, transporter hospital, children’s hospital emergency room near me, kensington hospital detox, urgent care jasper tx, childrens oakland hospital, weight loss surgery dallas tx, urgent care snider plaza, dallas bariatric, endocrine weight loss, urgent care 77041, urgent care electronic medical records, what is marketing channels, call tracking marketing, marketing your law firm, seo and social media marketing services, affiliate marketing software free, law firm marketing los angeles, marketing automation for agencies, what does cpm stand for in advertising, 3 p of marketing, marketing cloud software, ppc advertising management, marketing integration, email marketing automation software, what does ppc stand for in marketing, best marketing quotes, complete business solution, top 10 help desk software, help desk software for small business, small business call center software, accounting online program, best online accounting program, business performance management software, employee management software for small business, email marketing software for small business, best medical billing software for home based business, marketing automation software for small business, best crm software for small business, crm software for small business, best hr software for small business, small business marketing software, sell house fast austin, sell my house fast phoenix, sell my house fast san diego, selling a house as is by owner, teacher home buying programs texas, sell my house fast orlando, quickly sell house, we buy houses fast for cash, will my house sell, sell house cash, buy house cash or mortgage, sell house fast for cash, buy my home for cash, worst month to sell a house, ac repair coral springs fl, emergency flood repair, flood restoration san diego, air conditioning repair weatherford tx, best ac repair phoenix, air conditioning repair boca raton, water damage restoration portland oregon, water damage restoration los angeles, air conditioning repair phoenix, air conditioning repair mesa az, air conditioning repair simi valley, air conditioning repair plano tx, water damage restoration mesa az, water damage restoration dallas, water damage restoration vancouver wa, auto repair shop modesto ca, paintless dent repair denver colorado, abs unlimited auto repair, paintless dent repair mn, denver auto hail repair, change oil light, automotive repair lubbock tx, auto repair shops stockton ca, paintless dent repair colorado springs, auto ac repair las vegas, auto repair shops omaha ne, auto repair shop mesa az, aftermarket automotive warranty, dent repair colorado springs, paintless dent repair denver, compare vehicle insurance, oklahoma auto insurance quotes, insurance companies okc, cheapest auto insurance reddit, insurance strategy, texas auto insurance quotes online, preferred auto insurance companies, what is insurance deductible, what is premiums in insurance, fort myers auto insurance, auto insurance connecticut, definition collision insurance, hail damage car insurance claim, car accident other driver has no insurance, define insurance brokers, irs tax debt relief program, va loan multi family, tax credit for college students, va loan after chapter 7, how to get preapproved for a va home loan, structured settlement loan, national guard va home loan, cost to refinance home loan, how long does a credit card balance transfer take, va home loan specialist, will refinancing hurt my credit, maximum fha loan amount, does opening a checking account affect credit, fha loan foreclosure waiting period, tax debt relief program, online business degree programs accredited, online accredited psychology degree, online degree in educational psychology, online business degree florida, online university college, online psychology bachelor’s degree, online college business degree, fastest criminal justice degree online, online masters degree in business administration, parapsychology degree online, online degree criminal justice, online school for business degree, online masters degree programs in healthcare administration, masters degree in human resources online, public administration masters degree online, maritime accident attorneys, best motorcycle accident attorney near me, top motorcycle attorneys, donate my broken car, i want to donate my car to charity, business management degree online accredited, donate my truck, donate my car today, places to donate my car, donate my junk car to charity, donate my car to st jude’s, i want to donate my car, donate my vehicle, donate my non running car, donate my car to salvation army, want to donate my car, donate my car without a title, donate my truck to charity, business wifi verizon, verizon business wifi, verizon business internet, verizon internet for business, verizon lte business internet, verizon commercial internet, verizon small business internet, verizon business lte internet, verizon wireless business internet, verizon fios business internet, verizon business internet pricing, verizon wifi business, verizon business wireless internet, verizon business internet service, verizon business phone and internet, verizon 4g business internet, verizon internet and phone for business, verizon office internet, verizon business broadband, verizon business fios internet, verizon business internet cost, verizon business cellular internet, verizon business phone internet, oil rig accident attorneys, offshore injury law firm, verizon business mifi, oil rig injury lawyer, verizon business class internet, verizon high speed internet for business, construction truck accident lawyer, maritime injury attorneys, verizon internet company, business liability insurance, term life insurance quotes, life cover, small business insurance, cheap life insurance, credit consolidation, debt consolidation, debt relief, best debt consolidation loans, credit card consolidation loan, debt consolidation loan, mortgage preapproval, online business loan, attorney car wreck, mesothelioma lawyers, accident attorney, mesothelioma law firm, accident attorney near me, auto accident lawyers near me, auto accident attorneys near me, car accident attorney near me, auto accident attorney, attorneys car accident, car accident lawyers near me, auto lawyers near me, slip and fall lawyer, top car accident attorney, slip and fall attorney, car wreck attorneys, slip and fall lawyers near me, personal injury attorney, auto injury lawyer, accident lawyer, best car accident lawyer near me, accident lawyers near me, personal injury lawyer near me, injury attorneys near me, car accident law, car injury law firms, orange dwi lawyer, motorcycle accident lawyer, motorcycle accident attorneys, car crash law firm, best injury lawyer near me, best personal injury lawyer near me, best accident lawyers, auto lawyers, motorcycle injury lawyers, birth injury lawyers, personal injury lawyers, big al lawyer, top rated personal injury lawyer, car wreck lawyer, injury law firms, wrongful death attorney, best car accident lawyers, best car accident attorney, truck crash lawyers, truck crash attorney, truck accident attorney, frank azar attorney, frank azar lawyer, boat accident lawyer, truck accident lawyer, best truck accident lawyers, azar attorney, wrongful death lawyer, boat accident attorney, aviation accident attorney, aviation accident lawyer, brooklyn injury lawyers, frank azar law firm, pedestrian accident lawyer, strong arm lawyer, nursing home neglect lawyers, medical negligence solicitors, christmas donations near me, donate my car, donate your car, donate car to charity, aspca donations, vitalant org, habitat for humanity car donation, doctors without borders donate, pg campus, online mba programs, online criminal justice degree, online business degree, online college programs, msw online, online colleges, accredited online colleges, online cyber security degree, online psychology degree, online social work degree, msw programs, online college degrees, hostgator com, aws cloud vps, amazon hosting server, amazon aws hosting, vps aws amazon, vonage conference call, verizon conference call, nextiva conference call, conference call services for small business, at&t teleconference, live conference call, 8×8 conference call, conference call lines for small business, ooma 3 way calling, toptier trader, apex trader funding, bybit exchange, oanda live, nasdaq after hours, payroll software, ctmecontracts, download chromedriver, google chrome download for pc, payroll services for small business, payroll for small business, best payroll for small business, online payroll services, payroll service software, construction bookkeeping services, phone systems for small business, restaurant bookkeeping services, companies that buy structured settlements, structured settlement purchasing companies
If you would like us to write these articles, please leave a comment asking us to do so.

Related Articles

Back to top button