Akamai's special SOTI report highlights how rapid enterprise AI adoption is expanding the threat surface through shadow AI usage, unmanaged browser/IDE extensions, and autonomous AI agents. Key findings include that 47% of enterprise AI conversations use personal accounts, 75% of AI browser extensions request high/critical permissions, and novel techniques like CometJacking and CursorJacking demonstrate how prompt injection and rogue extensions can compromise AI-driven workflows. Legacy security tools including DLP solutions are not designed to detect data exposure through AI prompts and unstructured interactions.
Shadow AI
3 posts
Shadow AI, Rogue Agents, and Data Leaks: A Special Report on Navigating AI Risk When AI Assistant Share Links Become Public Exposure AI assistant share links across major platforms (ChatGPT, Claude, Grok, Gemini, DeepSeek, and others) create unauthenticated, permanent, crawlable HTTP endpoints that expose user conversations and artifacts to public indexing. While most vendors have added noindex directives, the article demonstrates that legacy domains, archive services like the Wayback Machine, and platforms like DeepSeek and Grok still retain or serve exposed content. The risk is amplified in corporate environments where shadow AI usage and over-permissioned access can result in sensitive organizational data being published to durable public surfaces.
Silent Brothers | Ollama Hosts Form Anonymous AI Network Beyond Platform Guardrails A joint research project by SentinelLABS and Censys discovered a massive, unmanaged network of over 175,000 publicly exposed Ollama instances. Many of these self-hosted AI models possess tool-calling and vision capabilities, creating significant security risks such as resource hijacking, prompt injection, and identity laundering through residential proxy abuse.