Agentic AI Top 10 Vulnerability (CSA/OWASP)
Description
This project documents the top 10 security risks specifically related to AI Agents, representing a comprehensive analysis of vulnerabilities unique to autonomous AI systems. The document provides detailed descriptions, examples, and mitigation strategies for each risk, helping organizations secure t
Installation
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open the source below and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
README
Top 10 threats and mitigation for AI Agents
Overview
This project documents the top 10 security risks specifically related to AI Agents, representing a comprehensive analysis of vulnerabilities unique to autonomous AI systems. The document provides detailed descriptions, examples, and mitigation strategies for each risk, helping organizations secure their AI agent deployments effectively.
Purpose
As AI agents become increasingly prevalent because GenAI models, understanding and mitigating their security risks becomes crucial. This guide aims to:
- Identify and explain the most critical security risks in AI agent systems
- Provide practical mitigation strategies for each identified risk
- Help organizations implement secure AI agent architectures
- Promote best practices in AI agent security
Project Structure
The documentation is organized into top ten main security risks, each covering a specific risk category:
- AAI001: Agent Authorization and Control Hijacking
- AAI011: Agent Untraceability
- AAI002: Agent Critical Systems Interaction
- AAI014: Agent Alignment Faking Vulnerability
- AAI003: Agent Goal and Instruction Manipulation
- AAI005: Agent Impact Chain and Blast Radius
- AAI006: Agent Memory and Context Manipulation
- AAI007: Agent Orchestration and Multi-Agent Exploitation
- AAI009: Agent Supply Chain and Dependency Attacks
- AAI012: Agent Checker out of the loop vulnerability
Future
- AAI014: Agent Temporal Manipulation Time-based attacks
- AAI015: Agent Inversion and Extraction Vulnerability
- AAI016: Agent Covert Channel Explotation
Deprecated
- AAI004: Agent Hallucination Exploitation (partial overlap with LLM Top 10, so letting it stay in the LLM Top 10)
- AAI010: Agent Knowledge Base Poisoning (will be merged with AAI006 - Memory and Context manipulation)
- AAI008: Agent Resource and Service Exhaustion (will be merged with AAI005 - Imapct Chain and Blast Radius)
Roadmap
- **Version 1.0 ** (Feb 2025)
...
Related Skills
Defense in Depth
Implement multi-layered testing and security best practices.
Security SecLists Official Repository
[OWASP Testing Guide](https://owasp.org/www-project-web-security-testing-guide/)
Security Threat Hunting with Sigma Rules
Use Sigma detection rules to hunt for threats and analyze security events
Security Maintenance Walkthrough - 2026-03-29
- Re-triaged the full 2026-03-15 security finding set against current `main` and wrote a fresh current-head re
Security Google Workspace Model Armor
Filter user-generated content for safety
Security Google Workspace Alert Center
Manage security alerts
Security Related Agents
Token Auditor
Scans ui/src/ for hardcoded visual values, duplicate components, and shadcn replacement candidates; produces d
Gitnexus Security Boundary Reviewer
GitNexus security and trust-boundary reviewer. Use for auth, permissions, secrets, injection, unsafe parsing,
Accessibility Audit
| You are an accessibility expert specializing in WCAG compliance, inclusive design, and assistive tec... | -