Agentic AI significantly expands the attack surface of enterprise environments through autonomous system interactions and requires dedicated security controls.
Cybercriminals are increasingly attacking AI-based protection mechanisms directly, while AI-powered website builders and OAuth-based consent phishing open new attack surfaces.
Real business environments with actual money, inventory and customers reveal AI capabilities and risks that classic benchmarks miss, ranging from price-fixing to deception to legal misinterpretations.
Romance scams and AI-driven emotional manipulation require a rethink of security architecture: Technical protection without psychological early detection is no longer sufficient.
AI assistants frequently ignore existing permission structures when accessing enterprise data, exposing sensitive information that should not be accessible to individual users.
Edamame introduces host-based runtime verification to detect code drift and misuse of autonomous AI coding agents before confidential data is exfiltrated.
Hackers compromised Instagram profiles through prompt injection attacks against Meta’s AI support system and bypassed automated identity verification using deepfake-generated videos.
The Heretic tool can remove security filters from open-source AI models in minutes—a structural control risk that undermines existing compliance frameworks for locally deployed models.