Glossary · Security
OWASP Top 10 for LLM Applications
OWASP's parallel security list specifically for applications built on large language models.
Browse all definitionsIn detail
The OWASP Top 10 for LLM Applications, first published in 2023 and updated annually, lists the most critical risks specific to AI powered apps. Prompt injection sits at #1, followed by sensitive information disclosure, supply chain vulnerabilities (compromised model weights, malicious tools), data and model poisoning, improper output handling, excessive agency, system prompt leakage, vector and embedding weaknesses, misinformation and unbounded consumption.
Sources & further reading
Check the source, not just the summary
- OWASP Top 10 for LLM Applicationsgenai.owasp.org
Apply the definition
Want to talk through how this applies to your business?
Start with the decision in front of you. We will help map the fit.