3
The AI Attack Surface
AI systems are now showing up in places most security teams have not finished mapping. Code-completion assistants run inside developer IDEs with access to the local source tree, production agents hold live database credentials, CI/CD pipelines pull a model into a build step, and SaaS vendors quietly add AI features in releases the security team did not review. For most organizations this attack surface is already in place; in some cases it predates any AI-specific policy. With traditional software the target at least sits still long enough to study. You can map open ports, look at API endpoints, pin dependency versions, and reason about known vulnerability classes. The inputs have a shape, the behavior mostly repeats, ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access