
Patronus Insights · Episode 2
OWASP for AI Security: which risks Patronus controls
Jun 2026 · 12 pages · PDF · German · 1,2 MB
OWASP maintains two separate top-10 lists for AI: the LLM Top 10 (2025) covering language-model inputs and outputs, and the Agentic ASI Top 10 (late 2025) covering autonomous agents that call tools, execute code, and connect to external systems via MCP. This report explains both lists, maps all 20 risk categories, and goes deep on five risks that Patronus Protect fully controls today, each with an explanation, a concrete attack example, and the technical enforcement via the action levels Allow, Flag, Redact, and Block.
What's inside
- Why the LLM Top 10 and the Agentic ASI Top 10 address different layers, and must not be confused
- Five risks in depth: Prompt Injection, Tool Misuse & Code Execution, identity and data abuse, Agentic Supply Chain, System Prompt Leakage
- Coverage matrix: which of the 20 categories Patronus controls today, and what ships next
Related on this site: AI Agent Security · AI Models · Blog: The MCP attack surface
