Skip to content

Glossary · Security

OWASP Top 10 for LLM Applications

OWASP's parallel security list specifically for applications built on large language models.

Browse all definitions

In detail

The OWASP Top 10 for LLM Applications, first published in 2023 and updated annually, lists the most critical risks specific to AI powered apps. Prompt injection sits at #1, followed by sensitive information disclosure, supply chain vulnerabilities (compromised model weights, malicious tools), data and model poisoning, improper output handling, excessive agency, system prompt leakage, vector and embedding weaknesses, misinformation and unbounded consumption.

Sources & further reading

Check the source, not just the summary

Apply the definition

Want to talk through how this applies to your business?

Start with the decision in front of you. We will help map the fit.

Straight answers · no pitch deck · no commitment