Tag: owasp
5 articles

Tool Exposes Stale AI Overrides in JavaScript Ecosystem
Discover how a simple oversight in your JavaScript ecosystem can leave you vulnerable to security threats, and learn how the CVE Lite CLI tool can help you identify and fix stale AI overrides. This free, OWASP-endorsed dependency scanner provides actionable vulnerability fixes and keeps your projects secure.

OWASP Researcher Warns of Unsolved Prompt Injection Risk in AI Development
Ariel Fogel, an AI security researcher, warns that organizations are rapidly deploying AI agents without proper governance, leaving a critical vulnerability - prompt injection - unsolved. This architectural flaw in large language models allows inputs to be processed as a single token sequence, with no reliable way to enforce privilege boundaries.

Lloyds Banking Group Unveils Hands-On Approach to Securing Agentic AI
Lloyds Banking Group is taking a proactive approach to securing agentic AI, recognizing that understanding AI itself is crucial to embedding security into its adoption. The bank has made security a top priority, framing it as a deliberate technical strategy that spans the entire AI lifecycle.

OWASP Unveils Framework to Gauge Agentic AI Security Maturity
As organizations rapidly deploy AI agents, governance often lags behind - but a new framework from OWASP aims to change that. The Enterprise Adoption Maturity Model provides a practical roadmap for gauging and improving agentic AI security maturity.

OWASP Launches Agentic Research Council to Tackle AI Security Gap
OWASP's new Agentic Research Council is set to revolutionize AI security by bridging the gap between rapidly evolving AI capabilities and lagging security research, bringing expert-backed solutions to the forefront. By uniting research and practice, the council aims to empower cybersecurity practitioners, developers, and leaders to stay ahead of emerging threats.