<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>ai-security on Rasik Jain - Senior Architect | Generative AI &amp; Full-Stack Engineering</title>
    <link>https://www.rasikjain.com/tags/ai-security/</link>
    <description>Recent content in ai-security on Rasik Jain - Senior Architect | Generative AI &amp; Full-Stack Engineering</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <lastBuildDate>Thu, 16 Apr 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://www.rasikjain.com/tags/ai-security/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>OWASP&#39;s GenAI Exploit Report (Q1 2026): A Wake-Up Call for AI Engineers</title>
      <link>https://www.rasikjain.com/posts/owasp-genai-exploit-round-up-q1-2026-wake-up-call-ai-engineers/</link>
      <pubDate>Thu, 16 Apr 2026 00:00:00 +0000</pubDate>
      
      <guid>https://www.rasikjain.com/posts/owasp-genai-exploit-round-up-q1-2026-wake-up-call-ai-engineers/</guid>
      <description>The OWASP GenAI Project just released its Q1 2026 GenAI Exploit Round-up, and one thing is clear:
Generative AI security risks are no longer theoretical. They&amp;rsquo;re already happening in production.
As teams move from prototypes to AI agents, copilots, and automated workflows, the attack surface is expanding quickly. Security is becoming a core part of GenAI architecture.
Here are the key takeaways.
1. AI Is Becoming a Force Multiplier for Attacks The report highlights how attackers are using AI to accelerate traditional attack workflows, including:</description>
    </item>
    
    <item>
      <title>How an AI Agent Exploited an Enterprise AI Platform</title>
      <link>https://www.rasikjain.com/posts/how-an-ai-agent-exploited-an-enterprise-ai-platform/</link>
      <pubDate>Thu, 12 Mar 2026 00:00:00 +0000</pubDate>
      
      <guid>https://www.rasikjain.com/posts/how-an-ai-agent-exploited-an-enterprise-ai-platform/</guid>
      <description>An AI agent hacked a major enterprise AI platform in about two hours.
Researchers built an autonomous agent and pointed it at the system.
Within that short window it had:
 Mapped 200+ APIs Found 22 unauthenticated endpoints Exploited a SQL injection Gained read/write access to the production database  No credentials were provided. No human attacker was involved.
Just an AI agent systematically exploring the system.
The most concerning part The system prompts were stored in the database.</description>
    </item>
    
  </channel>
</rss>
