Tag

#OWASP

10 stories taggedOWASP.

A website interface displayed on a monitor being simultaneously probed and attacked by multiple AI agents from a security platform, with vulnerabilities highlig
AI Security

Reflectiz Launches AI Agent Team That Attacks Your Website So Criminals Don't Have To First

A new platform sends four specialised AI agents to probe websites for weaknesses continuously, not just once a year. Whether that actually closes the gap between releases and real-world attacks is the right question to ask.

4 min read
A security industry threat ranking list being updated with real incident data, AI agent threats and prompt injection risks prominently displayed, researchers an
AI Security

OWASP Updates Its AI Security Danger List, and the Biggest Threats May Surprise You

The security industry's most-watched ranking of AI software risks has been refreshed with real incident data for the first time. Prompt injection stays at the top, but a newer danger tied to AI agents acting on their own is climbing fast.

5 min read
An email client open with a message displayed, invisible text overlay illustrated through technical visualization, an AI summarization panel showing manipulated
AI Security

Hidden Text in Emails Can Trick AI Assistants Into Showing You Fake Numbers

Researchers planted invisible instructions inside ordinary emails and watched an AI summariser rewrite invoice amounts and meeting dates without any warning to the reader.

4 min read
A security professional reviewing documentation and checklists on a desk, with a laptop displaying OWASP guidelines and AI security frameworks on the screen
AI Security

OWASP Publishes First Security Watchlist for AI Agent 'Skills'

A real attack in July exposed more than 300,000 users to stolen credentials through fake AI skills. Now the group behind the web's most-used security checklists has named the top ten risks, and 'malicious skills' sits at number one.

4 min read
A whiteboard or digital canvas displaying the PHANTOM-B framework with interconnected boxes showing different categories of AI system risks, with a security exp
AI Security

A 15-Minute Framework for Spotting What AI Systems Can Do Wrong

Security expert Adam Shostack built PHANTOM-B to help organisations find the risks hiding inside AI-powered software before those risks find them.

4 min read
AI security research lab with multiple screens displaying autonomous AI agent behavior monitoring, security boundaries and containment protocols visualized, res
AI Security

Why Locking Down What AI Agents Can Do Is Not Enough

A security firm says the real question is not what you told your AI to do. It is how far it can wander if something goes wrong.

4 min read
Compliance certificate or security badge framed on an office wall becoming faded and irrelevant as a live autonomous agent processes data files in the backgroun
AI Security

Your AI Safety Certificate Is Worthless the Moment the Agent Goes Live

Compliance badges on AI products look reassuring. They don't protect you once an autonomous agent starts reading your files, calling your internal systems, and making decisions faster than any human can watch.

4 min read
Photoreal news-editorial 16:9 image: a vast, dimly lit enterprise server room with rows of glowing rack-mounted servers extending into the distance, blue and wh
Identity & Access

AI Agents Are Taking Over Enterprise Systems. Nobody Knows Who They Are.

A four-hour outage. A room full of people who couldn't say which human authorized the last action. A new six-stage model explains why AI agents are breaking identity security, and what it takes to fix it.

4 min read
AI Security

Two-Thirds of iPhone AI Chatbot Apps Are Bleeding API Keys

A study of 444 iOS chatbot apps found 282 exposing paid model access in plaintext network traffic, sometimes with no authentication at all.

3 min read
AI Security

AI-SPM Is Now a Real Category. Here's Why Your Organization Probably Needs It.

More than half of enterprise AI agents run without security oversight or logging. A maturing class of AI security posture management tools exists to fix that, if you know what to look for.

3 min read
© 2026 Threat Vectr