AI Application Security
Prompt Injection Can’t Be Fully Mitigated, NCSC Says Reduce Impact InsteadÂ
Teri Robinson | | AI agent security, AI Application Security, AI data exfiltration, AI observability, AI Risk Management, defense in depth for AI, ForcedLeak, GeminiJack vulnerability, Generative AI Security, least privilege for AI, llm security, llm vulnerabilities, NCSC guidance, OWASP top 10 for LLMs, prompt injection, prompt injection attacks, secure AI design
The NCSC warns prompt injection is fundamentally different from SQL injection. Organizations must shift from prevention to impact reduction and defense-in-depth for LLM security ...
Security Boulevard
Lasso Platform Employs AI Agents to Secure AI Applications
Michael Vizard | | AI Application Security, AI blue team, AI cybersecurity skills gap, AI Governance, AI penetration testing, AI red team, AI security policies, AI threat mitigation, AI vulnerability scanning, autonomous AI agents, LLM application security, prompt injection defense, purple team AI, secure AI deployment
Lasso has launched an agentic AI service for purple teaming that secures AI applications before and after deployment. By combining red and blue team functions with autonomous AI agents, the platform detects ...
Security Boulevard
Hidden Dangers of Security Threats in the Tide of DeepSeek
NSFOCUS | | AI, AI Application Security, AI data security, AI-scan, Blog, DeepSeek, large model, llm security, security
Recently, DeepSeek attracted global attention and triggered worldwide discussion with its advanced AI models. Meanwhile, it has become the target of hackers and suffered frequent attacks. However, with the continuous improvement of ...
Stopping Credential Stuffing Attacks: We Need to Do Better
Do you know what 23andMe, Jason's Deli, North Face, and Hot Topic have in common? They've all been breached by successful credential stuffing attacks in the last year! An attack type that ...
Introducing the Wallarm 2024 API ThreatStatsTM Report
girishwallarm | | AI Application Security, API discovery, API management, API security, CISO, Cloud Security, cyberattacks, DEVOPS, Different attack types, owasp, Researcher Corner, waf, Web Application Security
The Wallarm Security Research team is pleased to share the latest version of our API ThreatStats report. This report serves as a key resource for API, Application security practitioners. It emphasizes the ...
Webinar: Join us for the latest in API Threats on January 24, 2024
girishwallarm | | AI Application Security, API discovery, API management, API security, CISO, Cloud Security, cyberattacks, DEVOPS, owasp, waf, Web Application Security
In today's complex digital landscape, the security of APIs has become paramount. As we move into 2024, it's essential to stay ahead of the evolving API security threats and vulnerabilities. The upcoming ...
CISO: Top 10 Trends for 2024
girishwallarm | | AI Application Security, API discovery, API security, Application Security Testing, CISO, Cloud Security, cyberattacks, DEVOPS, Network Security
I recently hosted and moderated a distinguished panel of Chief Information Security Officers (CISOs) -Â Nitin Raina, CISO at ThoughtWorks, Mike Wilkes, former CISO at Marvel and Yogesh Badwe, CSO at Druva ...

