Every fact has a receipt.

AI Model EvaluationSecurity & Vulnerability

Security Isn't a Property of the Model — It's a Property of the Deployment

1 / 11

Prompt Injection Is the Common Thread, Not the Exception

Every incident in this deck — regardless of vendor — traces back to the same underlying weakness: an AI system that can't reliably tell a legitimate instruction from a crafted one hidden inside its input. OWASP's own 2025 coverage puts the typical attack success rate at 50-84% against production systems. One example of the stakes: a zero-click exploit hit Microsoft 365 Copilot in June 2025 (CVE-2025-32711, CVSS 9.3) — one crafted email exfiltrated data from OneDrive and SharePoint with no user interaction, and no antivirus caught it.

Swipe or use ← → to navigate