Topic: owasp top 10

  • OWASP 2026 LLM Top 10: Why Models Get Fooled

    OWASP 2026 LLM Top 10: Why Models Get Fooled

    The 2026 OWASP GenAI Top 10 for LLM Applications is the first edition grounded in real incident data, with expert consensus accounting for 75% of the ranking and a dataset of 6,639 real-world incidents contributing the remaining 25%. Prompt Injection and Sensitive Information Disclosure retained ...

    Read More »
  • Prompt Injection Still Top LLM Threat Despite Few Cases

    Prompt Injection Still Top LLM Threat Despite Few Cases

    OWASP's 2026 Top 10 for LLM Applications again ranks prompt injection as the top threat, despite few recorded incidents, because security teams invest heavily in preventing it before exploitation. Prompt injection, which manipulates LLMs into unintended behavior like leaking sensitive data, remai...

    Read More »
  • LLMs Infiltrate Your Stack: New Risks at Every Layer

    LLMs Infiltrate Your Stack: New Risks at Every Layer

    The integration of LLMs into enterprises requires a fundamental security shift, moving from treating models as intelligent brains to viewing them as untrusted compute, which is critical for establishing robust trust boundaries. Key technical vulnerabilities include prompt injection, sensitive dat...

    Read More »
  • Radware Unveils Real-Time API Lifecycle Protection

    Radware Unveils Real-Time API Lifecycle Protection

    Radware has launched a new API Security Service designed to provide real-time, end-to-end protection by analyzing live traffic to identify and mitigate threats, directly addressing the OWASP Top 10 API Security Risks. The service tackles common security gaps by offering continuous runtime visibil...

    Read More »
  • AI Code Security Stalls at 56% Adoption

    AI Code Security Stalls at 56% Adoption

    AI-generated code compiles nearly perfectly but fails security checks 44% of the time, a failure rate that has remained virtually unchanged for a year, despite the technology now producing roughly half of all code being committed. The Veracode report found that coding-specific models and larger m...

    Read More »
  • Indirect prompt injection attacks on AI: 6 ways to stop them

    Indirect prompt injection attacks on AI: 6 ways to stop them

    Indirect prompt injection attacks exploit AI's need to pull information from external sources, hiding malicious instructions in content that LLMs automatically scan and act on, potentially leading to data exfiltration or remote code execution without any user interaction. Unlike direct prompt inj...

    Read More »