ChatGPT - 資安與金融業

OpenAI於2022年11月推出的ChatGPT(Chat Generative Pre-trained Transformer)是一款近期非常流行的聊天機械人,廣泛應用於資料搜集、文章撰寫、語言翻譯、程式碼編寫和調整、計算等領域。那麼,ChatGPT在金融方面能夠提供什麼樣的助力呢?然而,ChatGPT可能會出現資安問題?    

1966年,麻省理工學院推出了世界上公認的第一個聊天機械人Eliza,其應用範圍主要是模擬與心理治療師的對話。隨著聊天機械人的功能不斷演進,其應用範圍已經不僅限於單一用途。現代的聊天機械人配備學習功能,能夠自動學習和理解人類語言的語法和語意,並具備與人類進行自然對話的能力。    

金融業可以利用ChatGPT獲得多種效益。其中最常見的應用之一是在客戶服務方面,為客戶提供24小時不間斷的對話、回覆或推廣,提高客戶的滿意度和體驗。此外,ChatGPT還可以分析大量關於金融方面的數據,從而預測市場的走勢,有助於投資者做出更明智的投資決策。同時還可以應用在機構上的風險評估和風險控制,通過自然語言處理技術來監測客戶的交易行為和交易風險,提高風險管理的效率和準確性。    

ChatGPT雖然可以為金融企業帶來好處,但在資訊安全方面仍然是企業需要考慮的重點。因此,有些企業已經禁用員工使用ChatGPT。這是因為ChatGPT本身需要龐大的資料庫支持運作,其中包括了不少敏感資訊,如個人身分資訊和銀行資訊等。如果這些敏感資訊被非法獲取或洩露,會對用戶和企業造成嚴重的損失。知名消費電子產品及電子元件製造商三星就曾因員工將半導體設備、程式碼相關的資訊上傳給ChatGPT以方便工作,導致公司機密資料外洩。這也表明,企業在使用ChatGPT時需要特別注意資訊安全問題。   

因此,如何對資料進行加密及保護,配合國家如何監管,制定法規會成為ChatGPT的一大課題。只有在資訊安全問題得到充分解決和保障的情況下,ChatGPT才能夠被廣泛使用。   
    

尹展軒   
Senior IT Consultant

More Updates

Further reading

Introducing OutSystems AI Agent Builder: Streamlining Enterprise AI Development

As artificial intelligence (AI) reshapes business, enterprises strive to integrate generative AI for efficiency and innovation. OutSystems, a leading low-code platform, introduces AI Agent Builder—a powerful tool simplifying AI agent creation for professional developers. This article highlights how AI Agent Builder accelerates development, transforming ideas into production-ready agents in days, empowering professionals to drive digital transformation.Foundation and IntegrationIntroduced in 2024 and enhanced in 2025 with Agent Workbench, AI Agent Builder offers a visual drag-and-drop interface, enabling developers to build autonomous AI agents without deep AI expertise. Agents process inputs, reason, and execute tasks via tool invocation.Its integration is a standout feature. The tool connects to large language models (LLMs) like OpenAI or Google’s Vertex AI and supports custom models from Hugging Face or AWS Bedrock. Retrieval-Augmented Generation (RAG) allows agents to access enterprise data, including databases and SaaS platforms like SAP. The Model Context Protocol (MCP) ensures accurate API calls for context-aware responses. For Hong Kong enterprises, this supports localized data while meeting privacy regulations like the PDPO. Agent Workbench manages the full lifecycle, from prototyping to monitoring, with real-time performance metrics.Core CapabilitiesAI Agent Builder focuses on three areas: agent creation, orchestration, and governance.Agent creation offers a click-based experience with marketplace templates for rapid customization. Developers can design workflows—e.g., one agent retrieves data, another generates reports. Human-in-the-Loop ensures oversight, aligning outputs with business needs, suitable for tasks like lead qualification.Collaborative orchestration enables agent interactions. Agent Workbench’s visual mapping supports automation, like HR processes where one agent screens resumes and another handles onboarding. OutSystems Data Fabric unifies data, enhancing insights for personalized marketing. This speeds development, freeing teams for strategic work.Governance validation ensures reliability. Security controls and compliance checks mitigate risks. High Availability supports scalable deployments, while analytics track performance. The Agent Marketplace provides pre-built agents, accelerating iteration.Real-World ImpactAI Agent Builder shines across industries. A European bank automated compliance, integrating LLMs with policy data, cutting approval times by 70%. Retail agents deliver real-time product recommendations, boosting conversions. In Hong Kong, a supply chain firm built procurement agents, integrating with SAP to monitor risks. Healthcare agents manage patient queries, reducing administrative burdens. These cases show automation and revenue potential, like identifying sales opportunities.Benefits for ProfessionalsAI Agent Builder’s low-code agility shortens development from months to days, using reusable components. It reduces technical debt, unifies governance, and future-proofs AI strategies, enhancing productivity and ROI for enterprises.ConclusionOutSystems AI Agent Builder redefines AI development with a no-code interface and robust integrations, enabling professionals to build intelligent agents for complex challenges. Hong Kong professionals should try OutSystems’ free version to unlock its potential. Share your insights below, and let’s explore low-code AI’s future!

OutSystems: Streamlining Mobile App Development

OutSystems: Streamlining Mobile App Development for ProfessionalsIn today’s digital era, mobile apps are vital for businesses to engage customers, optimize workflows, and stay competitive. However, traditional app development is often slow, costly, and complicated by the need to support both iOS and Android. OutSystems, a leading low-code platform, addresses these challenges with its rapid development and cross-platform capabilities, making it a game-changer for professionals. This blog explores how OutSystems accelerates mobile app development and supports iOS and Android with a single codebase, empowering workplace efficiency.OutSystems: Low-Code PowerhouseOutSystems, a Portugal-based low-code platform since 2001, serves global enterprises across industries like finance and manufacturing. Its visual development environment lets developers build apps using drag-and-drop tools for logic, data, and interfaces, reducing technical barriers and enabling non-coders, like business analysts, to contribute. For mobile apps, OutSystems delivers native support, integrating seamlessly with device features like cameras and GPS.Speed: From Vision to VictoryTime is critical in the workplace, and OutSystems excels in accelerating app development. Traditional methods may take months, but OutSystems can cut this to weeks or even days. Its visual interface and pre-built modules eliminate repetitive coding, minimizing errors and debugging. Developers can quickly integrate backend systems or third-party services like Salesforce, with AI tools suggesting best practices. Teams using OutSystems report up to 10x faster development, enabling professionals to launch MVPs swiftly and save 30-50% in costs.Cross-Platform: One Codebase, Dual ImpactOutSystems’ ability to support iOS and Android with a single codebase is a major advantage. Traditional development requires separate Swift and Kotlin codebases, doubling effort. OutSystems allows developers to create one app that compiles into native iOS and Android versions, with updates deployed simultaneously to both platforms. It leverages native features like iOS’s Core ML or Android’s Material Design, ensuring consistent, high-quality experiences. This can reduce cross-platform development time by up to 70%, helping professionals reach diverse users efficiently.Beyond Speed: Security and ScalabilityOutSystems ensures enterprise-grade security with OWASP-compliant features like encryption, meeting GDPR and HIPAA standards. It scales effortlessly from prototypes to high-traffic apps via cloud platforms like AWS. Integration with ERP, CRM, or AI tools further enhances its versatility.Real-World SuccessA financial firm built a mobile banking app in eight weeks using OutSystems, saving 40% in costs while serving both platforms. A manufacturer’s asset-tracking app cut time-to-market by 30%. These cases show OutSystems’ value for professionals.ConclusionOutSystems empowers professionals with fast, cross-platform mobile app development, reducing costs and complexity. Try it to unlock your team’s potential and lead in a mobile-first world.

𝗘𝗺𝗽𝗼𝘄𝗲𝗿𝗶𝗻𝗴 𝗧𝗲𝗮𝗺𝘀 𝗔𝗴𝗮𝗶𝗻𝘀𝘁 𝗣𝗵𝗶𝘀𝗵𝗶𝗻𝗴 𝗔𝘁𝘁𝗮𝗰𝗸𝘀

🚨 𝗘𝗺𝗽𝗼𝘄𝗲𝗿𝗶𝗻𝗴 𝗧𝗲𝗮𝗺𝘀 𝗔𝗴𝗮𝗶𝗻𝘀𝘁 𝗣𝗵𝗶𝘀𝗵𝗶𝗻𝗴 𝗔𝘁𝘁𝗮𝗰𝗸𝘀 𝘄𝗶𝘁𝗵 𝗔𝘄𝗮𝗿𝗲𝗻𝗲𝘀𝘀 𝗮𝗻𝗱 𝗧𝗿𝗮𝗶𝗻𝗶𝗻𝗴 🚨 Recently, a new phishing campaign has been making waves. Attackers are sending emails that are masquerading as some popular password management tools. The emails urge for urgent action and tried to trick users into providing their credentials. Attackers change their tactics and impersonations every day and eventually one successful phishing email can quietly infiltrate your entire network and causes data breaches, ransomware attacks, and huge financial losses. No matter how advanced your cybersecurity solutions are, they cannot fully protect your digital assets against a compromised password. The best way to prevent such disasters is through education. Regular phishing awareness campaigns train your employees to recognize, avoid and react to these traps, turning your team into a strong first line of defense.At Ringus, we offer a comprehensive phishing simulation service with the following key features:🔎 Realistic and tailored scenarios🔎 Customizable phishing email distribution🔎 Comprehensive behavioral analyticsContact us today and equip your team with the confidence and knowledge to prevent phishing threats with our service.