???Securing the Future of AI Agents??? AI agents are rapidly transforming industries, enabling automation and innovation at an unprecedented scale. But with great power comes great responsibility and risk. To help organizations navigate the unique security challenges of autonomous AI systems, this GitHub project documents the #OWASP?Top 10 Security Risks for AI Agents????. ???What's Inside? This comprehensive guide dives into the?critical vulnerabilities?of AI agents and provides?actionable mitigation strategies?to secure their deployments effectively. Each risk category includes detailed descriptions and real-world examples, ensuring you have the insights you need to protect your AI systems. ???Why It Matters As Generative AI (GenAI) becomes more integrated into business operations, understanding and addressing its security risks isn't optional—it's essential. This project helps organizations: ? Identify and understand key AI agent security risks ? Implement robust mitigation strategies ? Design secure architectures for AI agent deployments ???Key Risk Categories Covered: 1?? Agent Authorization and Control Hijacking 2?? Agent Critical Systems Interaction 3?? Agent Goal and Instruction Manipulation 4?? Agent Hallucination Exploitation 5?? Agent Impact Chain and Blast Radius 6?? Agent Memory and Context Manipulation 7?? Agent Orchestration and Multi-Agent Exploitation 8?? Agent Resource and Service Exhaustion 9?? Agent Supply Chain and Dependency Attacks ?? Agent Knowledge Base Poisoning ?? Explore the project and secure your AI agent systems: https://lnkd.in/gPxKayAs Let’s build a safer AI-driven future together. ??? #AI #Cybersecurity #AIAgents #GenerativeAI #TechInnovation #RiskManagement OWASP? Foundation, Precize Inc, Vishwas Manral, Ken Huang, CISSP, Akram Sheriff, Aruneesh Salhotra, Anton Chuvakin, Aradhna C., Raj B., Govindaraj Palanisamy, Mateo Rojas-Carulla, Matthias Kraft, Royce Lu, Sunil Arora, Alex Shulman-Peleg, Ph.D., Anatoly Chikanov, Alok Tongaonkar, Siddhartha Dadana, @Sahana S, John Sotiropoulos, Sriram Gopalan, Parthasarathi Chakraborty, Ron F. Del Rosario, Vladislav Shapiro, Vivek S. Menon, @Shobhit Mehta, Jon Frampton, Moushmi Banerjee, Michael Machado, @S M Zia Ur Rashid, Jacobs , Cisco, GSK, Palo Alto Networks, Lakera, EY, Google, @Distributedappps.ai, Humana, Epay Global Payment, TIAA
关于我们
We are an early stage stealth company with early revenues and a working closely with 50+ large enterprises to help address their needs in: Cloud, AI, Cyber Security
- 网站
-
https://www.precize.io
Precize Inc的外部链接
- 所属行业
- 计算机和网络安全
- 规模
- 11-50 人
- 总部
- San Jose,California
- 类型
- 私人持股
- 创立
- 2023
- 领域
- Cloud、Cybersecurity、Platform security、ML和CloudOps
地点
-
主要
7179 Scarsdale Pl
US,California,San Jose,95120
Precize Inc员工
动态
-
One year down, many more to go! It’s been an incredible journey, having Aniket Dinda as part of the?Precize Inc?family for the past year. From writing code that makes our systems smarter and more secure (besides us look great in front of customers) to mentoring younger engineers like a pro – his growth has been nothing short of spectacular. But wait, there’s more! Off the desk, Aniket dominates the ping-pong table?(he’s?undefeated) and swims like he’s training for the Olympics. We’re still wondering where he finds the time and energy – is there an AI solution for that, Aniket? Here's to many more years of solving challenges, building amazing things, and smashing both work and sports goals! #TeamPrecize #OneYearMilestone #CloudGovernance #AI #Cybersecurity #GrowthAndInnovation Abhay Reetha Anoop, @Omkar Patil, Mathan S, Ashish Das, Prasad Batta, Chris Filart, Muskaan kumari, Koppala Venkateswarlu, Sowmya Chandrappa, Abhishek G, Pavithra A., yaswanth reddy boggala, Amulya Singh, Vishwas Manral, Wyshlist, Kalinga Institute of Industrial Technology, Bhubaneswar
-
-
Learn and contribute to the top security and governance issues around Agentic AI! Agentic AI is the top Strategic trend identified by Gartner for 2025 (in the list of 10 trends) which includes Cloud Governance and Disinformation security (#deepfakes). Hari Gollapalli, Brian Gilbert, Chris Filart, Scott Williams, Randhir K Chawda, Anoop M Pudhukode, Ashish Garg, Lakera, Huseni Saboowala, Daxa, Inc, Supro Ghose, Prithvi Rai, Ken Huang, Reality Defender, Ben Colman, Arnica, Ankur Shah, Ariksa, Deepfence Inc
What happens when "AI Agents start conspiring against me!" ? There have been myriad announcements in the last few weeks around #AgenticAI. Anthropic - demoed their "Claude Computer control" agent even as OpenAI announced "swarm" a very lightweight multi-agent orchestration framework. Gartner last week announced "Agentic AI" as the first as part of the "10 strategic technology trends for 2025". As Precize Inc we have been working on helping our customers perform tasks around Cloud and AI Governance. We use Cloud based agents and help customers resolve issues (more like playbooks). We have slowly noticed the growth in the usage of agents in the last few months in our customer base. When I saw the video https://lnkd.in/gukieWst around "What happens when AI starts conspiring against me!", I delved deeper into the implications and causes of the issue. While we list all Top Agentic AI challenges here, it is the second bullet that in this case resulted in the misaligned Agentic AI behavior. We are creating an OWASP Top 10 list and sharing it with the broader community. If you are interested in participating and can provide unique inputs and value, or have been working on agents, do reach out to us to participate. Ramesh Razdan, Kapil Raval, Val Bercovici, Valmiki Mukherjee, Ashish Kakran, Sid Trivedi, Pramod Gosavi, Conrad Menezes, Daniele Catteddu, Jim Reavis, Andrea Bonime-Blanc, Mukul Kumar, Kannan Ayyar, Dineshwar Sahni, Pritam H Mungse, Saar Gillai,Nagendra Singh, Deepak Jeevankumar, Caleb Sima, Guru Chahal, Upendra Mardikar, Vala Afshar, Suresh Thankappan, Michael Payne, Venkat Kotla, Vishal Gupta, Dennis Xu, Sounil Yu, Moushmi Banerjee, Janakiram MSV, Vinay Anand, Srinivas Mukkamala, Alex Salazar, Sekhar Sarukkai, Rohit Kohli, Sumeet Lakhwani, Michael Machado #AIGovernance #AISecurity #CloudSecurity #CloudGovernance #AIAgents #AgenticWorkflow #Cybersecurity #GRC #Governance #AutonomousEnterprise
-
???See what's lurking in your cloud...??? This Halloween, let’s uncover those hidden risks and inefficiencies that might be haunting your cloud infrastructure. At Precize Inc, we're giving you the?whole picture, from AI governance to cloud compliance and cost optimization. Ready to face your cloud's ghosts? Discover how Precize is solving today's AI and cloud challenges, bringing peace of mind to your digital landscape. ?? https://www.precize.io/ Happy Halloween! ???? #CloudSecurity #AIGovernance #Halloween #CloudOptimization Precize Inc, Vishwas Manral, Alex Shulman-Peleg, Ph.D., Ken Huang, CISSP, Ashish Garg, AKITRA, Shiv Tayal, Cloud Security Alliance, Jessica Christensen, Anton Chuvakin, Supro Ghose, Rocelli C., Conrad Menezes, Huseni Saboowala, Joel McKown, Jason Stinger
-
-
Agentic AI is a type of artificial intelligence (AI) that can perform tasks and make decisions independently, without human intervention but it makes it challenging for security teams. With challenges around; ? Change Control ? Traceability ? Human Oversight ? Forensics ? Determining Context Join us and #?????? ?????? ?????????????????? ?????????????? for an October in person networking, food, beverages, and a discussion on Cybersecurity and AI innovations! ?? Date: October 17th, 2024 ? Time: 5:30 PM - 7:45 PM PT ?? Location: Endor Labs, Palo Alto, CA Register here https: https://lnkd.in/gDWwkFMe Engage in dynamic conversations on the forefront of cybersecurity, including: ? Managing and Securing the Lifecycle of Non-Human Identities by Joel McKown, Solution Engineer at Oasis Security ? AI Innovations: Agentic AI and Its Impact on Cybersecurity by Vishwas Manral, Founder of Precize Inc Don’t miss this chance to connect with industry leaders and discover cutting-edge advancements in managing non-human identities and the transformative role of AI in cybersecurity. #CloudSecurity #AI #NonHumanIdentities #CSASanFrancisco Precize Inc, Oasis Security, Joel McKown, Vishwas Manral, Cloud Security Alliance, CSA Chapters, Brian Gilbert, Aruneesh Salhotra, Ken Huang, CISSP, Anton Chuvakin, Alex Shulman-Peleg, Ph.D., Vivek S. Menon, Ashish Garg, Conrad Menezes, Indus Khaitan, Sridhar Katere, Andrea Bonime-Blanc, JD/PhD, Shiv Tayal, Vaibhav Ranjan Rai
-
-
AI Agents/ teammates are being built by large companies like Google and startups alike. The capabilities of AI agents is startling. What does it mean for the enterprise, their processes, governance and the employees in general. Vishwas Manral, Ken Huang, Kapil Raval, Chris Filart, Sanjay Sawhney, Mukul Kumar, Ashish Garg, Mandar Pargunde, Jon Frampton, Brynna Nery, Indus Khaitan, Aruneesh Salhotra, Aradhna C., Jyotsnaa Rrajivv, Sabitha Anisetti, Conrad Menezes, Sekhar Sarukkai, Anshu Gupta
AI agents are now the rage and we are now hearing companies announce agents focused on different verticals (a popular term being used is AI teammates/ AI coworkers). Recent announcements from large companies like Google, Asana, and myriad startups around AI teammates, shows the growth in the AI agent ecosystem. We seem to look at the change as a technology change and the narrow focus misses the broader impact of the disruptive tech. We look more broadly on - What does it mean for employees? - What it means for the processes/ governance? - What does it mean for the Enterprise itself? - What does it mean for cybersecurity? CC collaborators, instigators and others/ Saar Gillai, Nagendra Singh, Deepak Jeevankumar, Valmiki Mukherjee, Vivek S. Menon, Anton Chuvakin, Anatoly Chikanov, Sid Trivedi, Ashish Kakran, Navin Chaddha, Pramod Gosavi, Alex Shulman-Peleg, Stephanie Fohn, Caleb Sima, Guru Chahal, Ramesh Razdan, Suresh Thankappan, Michael Payne, Val Bercovici, Upendra Mardikar, Vala Afshar, ?? Sandip Wadje, Parthasarathi Chakraborty, Sunil Arora, Pamela Gupta, Andrea Bonime-Blanc, Venkat Kotla, Vishal Gupta, Srinivas Mukkamala, Srinivasa Addepalli, Raj Yavatkar, Deb Banerjee, Sounil Yu, Dennis Xu, Moushmi Banerjee, Daniele Catteddu, Kim Branson, Janakiram MSV #AIGovernance #AISecurity #CloudSecurity #CloudGovernance #AIAgents #AgenticWorkflow #Cybersecurity #GRC #Governance #AutonomousEnterprise
AI Agents, AI teammates and the Autonomous enterprise
Vishwas Manral,发布于领英
-
Celebrating 1 year of Mathan S at Precize Inc When Mathan first agreed to join us, he made us wait a whole three months before he could officially start. Naturally, we were skeptical (startup life doesn’t do well with patience, after all!). But sure enough, on the exact date he promised, Mathan walked through our doors—and trust us, it was worth the wait. Since then, he’s been one of our tea-powered AI wizards, balancing being humble with somehow making us all look like amateurs in tech. He was our first hire who didn’t know our quirks (or our obsession with questionable snack choices), yet he dived into the chaos and made it his playground. Fast forward to today, and he’s leading the charge on AI, pioneering innovations that help drive Precize forward. From being one of our earliest employees to now steering AI and tech advancements, Mathan has proved time and time again that his commitment and contributions are absolutely worth celebrating. Here’s to many more milestones and future AI breakthroughs with you on the team, Mathan! We can’t wait to see what’s next. #1YearStrong #AILeader #StartupLife #TechTalent #PrecizeInc Muskaan kumari, Prasad Batta, Chris Filart, Abhay Reetha Anoop, Sai Ashish Das, Koppala Venkateswarlu, Virtusa, Sri Krishna College of Engineering and Technology
-
-
A new and very serious form of RCE vulnerability found! Remote Code Explosion instead of a just a Remote Code Execution here. It looks like pagers were triggered to detonate with a remote trigger message. This raises further questions and a wakeup call for OT world and its cybersecurity. When a pager can be used to cause so much harm what can happen with planes, power plants and automated vehicles. #cybersecurity #IOTSecurity #CloudSecurity #AISecurity #DFIR #OTSecurity #AutonomousVehicles #CyberSec Article from the Boston Globe: https://lnkd.in/g8EJTiyB Pramod Gosavi, Johannes Kresse, Anatoly Chikanov, Anton Chuvakin, Saar Gillai, Chenxi Wang, Fernando Montenegro, Federico Hansen, Luci Vo, Sam Kulkarni, Manuel Viloria, Cyber Security Champion, Vicki Franz, Ed Conrad, Brian Frerichs, Abi Yannick, Armis, Nozomi Networks, Forescout Technologies Inc., Cyberbit, IoT Security, Evan Stewart, Homero Torres CISSP -, Vaibhav Ranjan Rai, Ajay Gupta, Nate Morin, Chris Casel, Trey Wafer, Vaishnavi G S, Jackie O, Bart de Wijs, Neil Prasad, Vimal Suba, Kiran Khanna
-
-
#OpenAI announces o1 series of reasoning models, engineers mysteriously leave... again It’s become the tech world’s favorite game: OpenAI drops a shiny new model—like the recent o1 series—and suddenly, the engineers behind the last version are packing up their desks. Alexis Conneau the mastermind behind GPT-4o, announced he’s off to launch his next big thing. (We mean, did the new model launch just to distract us from the exits? ) :) Meanwhile, every AI startup founder is hitting refresh on their inbox, waiting for that email from AWS, GCP, or Azure. Because let’s face it, in this game, you don’t just get acquired; you get aquihired. But what's really intriguing about the o1 models? They introduce "reasoning tokens"—a new way for models to actually think. Instead of mindlessly predicting the next word, these models break down complex prompts into bite-sized chunks, considering multiple approaches to a response. It’s like giving the model a brainstorming session before it produces its final answer. These "reasoning tokens" are invisible, discarded from the context once they’ve served their purpose, but they enable multi-turn thinking all wrapped into a single API call. As a startup in AI governance, this revolving door of talent only strengthens our mission. It’s not just about building the hottest new model; it’s about ensuring that what we build is safe, ethical, and secure—even when half the team leaves to start their own company. In a world where innovation outpaces regulation, AI governance isn’t just a buzzword. It’s the unsung hero of sustainable progress. And while others are busy playing musical chairs, we’re focused on keeping the music playing responsibly. Because at the end of the day, it’s not about who builds the model—it’s about making sure the model doesn’t accidentally destroy the world. #AIGovernance #AISecurity #Aquihired #StartupLife #OpenAIo1 #GPT4o #InnovationWithIntegrity #TechEthics Diana Wolf T., Anupam Panwar, Kash Kashyap, Stepan Gershuni, Lorna Beckley CA, Gerard Dusastre, Yasser Bashir, Jude C. Lee, Kristin Dahl, Alon Nachmany, Jeff Sims, Sunil Arora, Parthasarathi Chakraborty, Andrea Bonime-Blanc, Confidence Staveley, Indus Khaitan, Alex Shulman-Peleg, Huseni Saboowala, Jonathan Rau, Aanchal Mittal, Maman (Mamane) IBRAHIM, Dennis Xu, Walter Haydock, Tom Eck, Nick Jepson, Andrey Chirikhin, AJ Green
-
-
Framework for managing security risk in the LLM supply chain. ?? In the evolving landscape of AI, securing the supply chain for Large Language Models (#LLMs) is more critical than ever. The WDTA AI-STR-03 standard lays the foundation for managing security risks across the entire LLM lifecycle — from development and training to deployment and maintenance. This comprehensive framework addresses the unique challenges posed by AI integration into modern ecosystems. At its core, the AI-STR-03 standard adopts a multi-layered security approach, ensuring protection across network, system, platform, model, and data layers. Key concepts include: ? Machine Learning Bill of Materials (ML-BOM) for transparent model development ? Zero Trust Architecture to safeguard system interactions ? Continuous monitoring & auditing to maintain security over time By emphasizing these principles, the WDTA AI-STR-03 standard ensures the integrity, availability, confidentiality, controllability, and reliability of LLM systems throughout their supply chain. Get access to the framework here, https://lnkd.in/gSHmGptx At Precize Inc, we establish clear guidelines for application, model, and data set ownership, ensuring compliance with regulatory requirements, and implementing robust security measures, so organizations can effectively govern their cloud assets to mitigate risks, ensure accountability, and maximize the value derived from AI technologies. World Digital Technology Academy (WDTA) is a non-governmental organization (NGO) operating under the United Nations framework, WDTA upholds the core principle of "Speed, Safety, Sharing”. #AI #LLM #Cybersecurity #AIStandards #SupplyChainSecurity #ZeroTrust #MLBOM #TechInnovation #WDTA Congratulations to the brilliant authors and reviewers! United Nations, Jiashui Wang, Weiqiang Wang, @Long Liu, Yuhao Jiang, Ken Huang, CISSP, Anyu Wang, @Zheng Song, @Jiawei Tang , @Yin Wang, @Zhihui Jiang, @Liang Zheng,?@Cong Zhu, @Qing Luo, @Shiwen Cui, @Miao Chen, @Tianyu Cui Ant Group, Lars Ruddigkeit, Ashutosh Chadha, Anton Chuvakin,?Apostol Vassilev, @Dongchen Ma, @Chenfu Bao Baidu, @Feng Luo, @Haoshuo Wang, Melan Xu, Tal Shapira, Reco, Dr. Cari Miller,?Govindaraj Palanisamy, Krystal Jackson, Swapnil Modak, Heather Frase, Ph.D., CAMS, ?Vishwas Manral, Patricia Thaine, Liming Z., Vaibhav(VB) Malik, Asha Hemrajani 夏芍婷, Ron F. Del Rosario, Madhavi Najana, Gaurav Puri, Bhuvaneswari Selvadurai CISSP I CISM I CDPSE, Dan Stocker, Matteo Meucci, Qiang Z., @Joshuaanaguiar, Daemon B.
-