Om sesjonen
AI is rapidly becoming embedded in every layer of our stack, from integrated product features to the autonomous agents used to write code. This shift has created an unfamiliar attack surface that many developers are navigating for the first time. We have spent decades learning to secure deterministic systems, but AI introduces a fundamentally different set of risks that require a new way of thinking.
In this talk, we will explore the core mechanics of Large Language Models to see why their probabilistic nature makes them inherently difficult to secure. The session navigates the most critical threats identified by both the OWASP Top 10 for LLM Applications and the separate Top 10 list for Agentic Applications, focusing specifically on how prompt injection can compromise both your users and your development environment. We will look at examples of how AI in the real world has gone wrong, and also see how your AI coding tools introduce threats directly into your workflow.