itinfinance.nl

LLMs as a New Attack Surface: what does it mean for AI governance?

Nieuws
26-03-2026
Yuri Bobbert
Large Language Models (LLMs) are transforming industries, but their unique risks demand a new approach to security and governance. A groundbreaking paper co-authored by Anove Co-Founder Prof. dr. Yuri Bobbert and ethical hacker Kevin Zwaan from Q-Cyber exposes how traditional security controls fall short when AI behavior can be steered through plain everyday language.

A recent demonstration showed how an LLM could be "radicalized" over eight hours, bypassing safety guardrails to generate malware at scale. This wasn't a highly technical code-written software exploit; it was achieved through manipulation and persuasion, taking advantage of the model’s contextual learning to make it unlearn its security protocols, revealing a critical gap in AI security.

The paper highlights that AI's attack surface is broader than code. It includes the model, prompts, user interfaces, policies, and even the organizational context. When LLMs are integrated into workflows with access to tools, APIs, and sensitive data, the risks multiply, ranging from generating malicious content to enabling large-scale cyberattacks. AI systems are dynamic, made up of interconnected components that evolve rapidly. As a result, traditional governance can’t keep up. Static checklists and one-time audits aren’t enough (if they ever were). AI management must be continuous, automated, and evidence-based.

[....]

Lees verder op: anove.ai

Gerelateerde vacatures

Geïnteresseerd in een carrière bij organisaties in ditzelfde vakgebied? Bekijk hieronder de gerelateerde vacatures en vind de perfecte match voor jou!
NN
4.527 - 6.036
Medior
The Hague
As a IT Analyst – Asset Finance EPT at NN Bank, you manage Asset Finance apps/processes for Originate-to-Distribute: funding instruments, investor/regulator & portfolio reporting, data analysis, functional support, automation, testing,...
ING
3.872 - 6.346
Medior
Amsterdam
Als Innovation Chaser at ING Factory bij ING jaag je innovatieprojecten aan: je spot kansen binnen ING, voert (klant)gesprekken, scherpt ideeën tot plannen, bewaakt voortgang, maakt presentaties/rapportages en vertegenwoordigt ING...
BeFrank
5.376 - 7.680
Medior, Senior
Amsterdam
Als IT Risk Officer bij BeFrank borg je informatiebeveiliging en IT-risicobeheersing: je adviseert het MT, voert 2e-lijns risk assessments en audits uit, ontwikkelt IT-riskbeleid, bewaakt openstaande risico’s en vertaalt wet-...
ABN AMRO
5.112 - 7.303
Senior
Amersfoort
As a Senior Data Engineer at ABN AMRO ontwerp, bouw en beheer je ETL-datapipelines in Azure (ADLS/ADF/Databricks/Functions) en lever je end-to-end dataoplossingen voor Credit Risk Monitoring binnen een Agile DevOps-team.