6 articles with this tag
The Alignment Tax: ASI09 & ASI10 — Your Agent IS the Threat
OWASP Agentic Top 10 series finale. ASI09 (Trust Exploitation) and ASI10 (Rogue Agents) — the threats that don't need an external attacker.
When One Agent Falls, They All Fall: ASI07 & ASI08 — The Distributed Systems Nightmare That Multi-Agent Architectures Weren't Built to Survive
Amazon's Kiro deleted a production environment. 40% of multi-agent pilots fail in 6 months. ASI07 and ASI08 are distributed systems problems in AI costumes.
87% of Your AI-Generated Pull Requests Have Security Vulnerabilities. You Just Don't Know It Yet.
DryRun Security found 87% of AI-generated pull requests ship exploitable flaws. Combined with zero-click exploits, agents are dangerous junior developers.
When Your Agent Becomes the Exploit: ASI05 & ASI06 — The Twin Threats That Turn AI Autonomy Against You
A deep dive into OWASP Agentic ASI05 and ASI06: the Claude Code CVEs, the Summer Yue incident, and how code execution chains with memory poisoning.
The OpenClaw Meltdown: 9 CVEs, 2,200 Malicious Skills, and the Most Comprehensive Real-World Test of the OWASP Agentic Top 10
In 5 weeks, OpenClaw triggered 8 of 10 OWASP Agentic vulnerability classes. This is the forensic dissection every engineer building AI agents needs to read.
The New Security Bible: Why Every Engineer Building AI Agents Needs the OWASP Agentic Top 10
The OWASP Agentic Top 10 is the first security framework for autonomous AI agents. 10 risks, real incidents, and the attack chains that connect them.