随着人工智能产业快速发展和向各领域不断渗透,算力已成为影响其发展与应用的核心因素之一。近年来,人工智能算力基础设施建设取得了长足进展,但由于其属性多样、节点复杂以及人工智能自身脆弱性等特性,已暴露出数据模型窃取、对抗样本攻击、节点不可信等安全问题,影响了用户信任。人工智能算力基础设施既是“基础设施”又是“人工智能算力”“公共设施”,具有基建属性、技术属性、公共属性三重属性。相应地,推动人工智能算力基础设施安全发展应从强化自身安全、保障运行安全、助力安全合规三个方面发力,通过强化自身的可靠性、可用性与稳定性,保障算法运行时的机密性与完整性,提升用户的安全管控力、认可度与合规性等八个领域筑牢人工智能安全防线,打造可信、可用、好用的人工智能算力底座,营造安全、健康、合规发展的人工智能产业生态。
With the rapid development and continuous integration of artificial intelligence into various fields,computing power has become one of the key factors influencing its development and application. In recent years,significant progress has been made in the construction of artificial intelligence computing infrastructure. However,due to the diverse nature of the infrastructure,complex nodes,and the inherent vulnerabilities of artificial intelligence itself,security issues such as data and model theft,adversarial attacks,and untrusted nodes have emerged,affecting user trust. Artificial intelligence computing infrastructure serves as both “infrastructure” and “artificial intelligence computing power,” and it is also a “public facility”. It possesses the triple attributes of infrastructure,technological aspects,and public elements. Accordingly,promoting the secure development of artificial intelligence computing infrastructure should focus on three aspects:strengthening its own security,ensuring operational safety,and facilitating security compliance. This can be achieved by enhancing reliability,availability,and stability,safeguarding the confidentiality and integrity of algorithms during runtime,and improving users’ security control,acceptance,and compliance in eight domains. These efforts aim to fortify the defense line of artificial intelligence security,build a trustworthy,usable,and user-friendly foundation for artificial intelligence computing power,and create a secure,healthy,and compliant development ecosystem for the artificial intelligence industry.