← Back
OtherThe Cyber Express·3 days ago

Guild Group’s Mohammad Arif on the Security Risks of Enterprise AI

Autonomous AI agents are now accessing sensitive enterprise data, writing code, and executing workflows once reserved for trusted employees, fundamentally shifting the attack surface and enterprise trust model beyond traditional cybersecurity controls. Mohammad Arif, Head of Information Security at Guild Group, warns that most organisations are treating AI security as a future problem despite widespread adoption already underway, and advocates for embedding AI governance into procurement, data protection, identity management, and incident response as a board-level priority. Over the next 12 months, enterprises should expect AI-assisted social engineering, sensitive data leakage into unapproved tools, insecure AI integrations with excessive permissions, and third-party AI supply-chain risks to materialise across their expanded attack surface.

Read full article at The Cyber Express

Related Articles

OtherSchneier on Security·1 day ago

Friday Squid Blogging: Neon Flying Squid

The neon flying squid can fly in formation. The shoal of about 100 squid rose unexpectedly from a patch of the Pacific Ocean around 370 miles from Tokyo and glided near the boat for about 30 metres. The astonished researchers were the first to capture photographs of such a thing, which looked like the early stages of an alien invasion. They were probably neon flying squid (Ommastrephes bartramii), the subsequent study states, a species that is part of a 20-strong flying squid family that was known to leap from the water but, until then, was only rumoured to also be able to glide above it. The neon flying squid was able to gain such elevation by using the hyponome, a funnel-like muscular organ also present in other cephalopods, such as octopuses. The organ is able to force water out in a jet, propelling the body along both in and out of the sea. Photographs of the gliding squid show them with their arms (they have 10 limbs in all) splayed outwards. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered. Blog moderation policy.

OtherDark Reading·2 days ago

OWASP Flags Top AI Skill Risks in New Security Blueprint

OWASP has released a new top 10 security list designed for the current threat landscape, introducing a Universal Skill Format to standardize and enhance security practices around AI integrations. The framework aims to address the distinct risks associated with AI implementations across development and deployment environments.