SECSEC-001 — Model Security Vulnerabilities
Malicious Actor Exploitation of General-Purpose AI Systems
4/5Sector: OtherGeography: GlobalStage: OperateIngested: —
Executive Summary
General-purpose AI systems present systemic risk as their broad capability repertoire enables foreign or malicious actors to cause large-scale harm if access controls are absent or inadequate. Boards must treat unrestricted AI access as a material security exposure requiring governance-level oversight and monitoring mandates.
Domain
Security & Privacy
Blindspots in model security, data poisoning, privacy leakage, infrastructure, model theft, and incident response.
Source
MIT AI Risk Repository — Risk Sources and Risk Management Measures in Support of Standards for General-Purpose AI Systems (Gipiškis2024) ↗https://airisk.mit.edu/
Could this happen in your organisation?
A Velinor AI Audit maps your active AI portfolio against the 50+ blindspots and benchmarks against documented sector failures like this one. A board-ready foresight document in 5 weeks.