itinfinance.nl

LLMs as a New Attack Surface: what does it mean for AI governance?

Nieuws
26-03-2026
Yuri Bobbert
Large Language Models (LLMs) are transforming industries, but their unique risks demand a new approach to security and governance. A groundbreaking paper co-authored by Anove Co-Founder Prof. dr. Yuri Bobbert and ethical hacker Kevin Zwaan from Q-Cyber exposes how traditional security controls fall short when AI behavior can be steered through plain everyday language.

A recent demonstration showed how an LLM could be "radicalized" over eight hours, bypassing safety guardrails to generate malware at scale. This wasn't a highly technical code-written software exploit; it was achieved through manipulation and persuasion, taking advantage of the model’s contextual learning to make it unlearn its security protocols, revealing a critical gap in AI security.

The paper highlights that AI's attack surface is broader than code. It includes the model, prompts, user interfaces, policies, and even the organizational context. When LLMs are integrated into workflows with access to tools, APIs, and sensitive data, the risks multiply, ranging from generating malicious content to enabling large-scale cyberattacks. AI systems are dynamic, made up of interconnected components that evolve rapidly. As a result, traditional governance can’t keep up. Static checklists and one-time audits aren’t enough (if they ever were). AI management must be continuous, automated, and evidence-based.

[....]

Gerelateerde vacatures

Geïnteresseerd in een carrière bij organisaties in ditzelfde vakgebied? Bekijk hieronder de gerelateerde vacatures en vind de perfecte match voor jou!
NN
4.527 - 6.036
Medior
Zwolle
Als Business Analist bij NN analyseer je processen en data, signaleer je knelpunten en klantbehoeften, en vertaal je inzichten naar requirements en realiseerbare oplossingen. Je werkt met business, operatie, data...
NN
In overleg
Senior
The Hague
As a Project Lead Unified XDR Migration (Freelance) you lead the technical transition from a hybrid SIEM to a Unified XDR platform, coordinating phased migration, telemetry consolidation, workflow optimization, integration,...
Ministerie van Economische Zaken en Klimaat
4.024 - 6.907
Senior
Den Haag
Als Senior adviseur Databeheer bij ministerie van Economische Zaken en Klimaat borg en verbeter je kaders voor databeheer, privacy en informatiebeveiliging binnen FDA, versterk je autorisatiebeheer, ondersteun je audits en...
NN
6.378 - 8.504
Senior
Den Haag
Als een Lead SAP FS-PM DevOps Engineer bij NN, moderniseer je SAP Policy Management en integraties, vertaal je businesswensen naar schaalbare oplossingen en stuur je de technische richting aan om...