Secure60 detects sensitive data egress through AI systems — copilots, chatbots, AI APIs and internal LLM deployments. Detection combines pattern-based rules with behavioural analysis (UEBA) to identify when AI tools are being used to extract or leak sensitive information.
Users (or compromised accounts) using AI assistants to extract sensitive data — customer records, credentials, financial data, proprietary code, or internal documents. Detection covers both intentional extraction and accidental exposure through overly broad AI access.
AI systems returning content that contains PII, credentials, API keys, or other sensitive data that should not appear in responses. Monitors for patterns that indicate the AI has access to data it should not be surfacing.
Unusual patterns of interaction with AI systems — high-volume querying, systematic data extraction, off-hours usage from unusual locations, or interaction patterns that differ significantly from the user’s baseline. These detections use Secure60’s entity analytics (UEBA) to establish baselines and flag deviations.
Data exfiltration detection requires visibility into AI interactions. This is achieved by ingesting logs from your AI systems into Secure60, where both rule-based and behavioural detections evaluate the traffic.
The detection approach combines:
Work with Secure60 to enable data exfiltration detection:
Contact Secure60 to discuss your AI deployment landscape and what log sources are available. The team will help you set up the appropriate integrations and detection rules.