Announcement

OWASP Top 10 for Agentic Applications – The Benchmark for Agentic Security in the Age of Autonomous AI

Introducing the OWASP Top 10 for Agentic AI Applications – our community’s actionable framework for securing autonomous, tool-using AI systems. Built at global scale informed by real incidents, and based on our work already adopted across industry, this release marks a pivotal moment in turning insight into action, and advancing the security of Agentic Applications at the pace of innovation.

OWASP Top 10 for Agentic Applications – The Benchmark for Agentic Security in the Age of Autonomous AI Read Post »

Article, Featured

OWASP Agentic AI Taxonomy in Action: From Theory to Tools

As OWASP’s Agentic Security Initiative (ASI) gains momentum, its impact is already being felt across the AI security landscape. The Agentic AI – Threats and Mitigations taxonomy is now powering real-world developer tools that embed security into the workflows of AI builders and red teams. In this post, we highlight three standout tools—PENSAR, SPLX.AI Agentic Radar, and AI&ME—that are adopting the OWASP ASI taxonomy to help teams test, defend, and build secure agentic systems. This growing ecosystem is also informing the development of the forthcoming OWASP Top 10 for Agentic AI. Join us at DEF CON and Black Hat to help shape what’s next.

OWASP Agentic AI Taxonomy in Action: From Theory to Tools Read Post »

Article

Securing AI’s New Frontier: The Power of Open Collaboration on MCP Security

As AI systems begin interacting with live tools and data via the Model Context Protocol (MCP), new security risks emerge that traditional approaches can’t fully address. This post summarizes key insights from the OWASP GenAI Security Project’s latest research on securing MCP, offering practical, defense-in-depth strategies to help developers and defenders build safer agentic AI applications in real time.

Securing AI’s New Frontier: The Power of Open Collaboration on MCP Security Read Post »

Announcement

OWASP AI Security Guidelines offer a supporting foundation for new UK government AI Security Guidelines

The UK Government Department for Science Innovation and Technology (DSIT) published its new voluntary Code of Practice (CoP) for the Cyber Security of AI today, January 31. Based upon 13 principles, the CoP clarifies the responsibilities of different AI stakeholders and is, for the first time, structured alongside the typical AI system lifecycle from planning

OWASP AI Security Guidelines offer a supporting foundation for new UK government AI Security Guidelines Read Post »

Announcement, Initiatives

Announcing the OWASP LLM and Gen AI Security Project Initiative for Securing Agentic Applications

The OWASP Foundation is thrilled to announce the launch of the Agentic Security Initiative from the LLM and Generative AI Security Project to tackle the unique security challenges posed by Autonomous AI agents. The initiative, part of the OWASP LLM/Gen AI Security Project, known for the Top 10 List for Large Language Models (LLMs), sets

Announcing the OWASP LLM and Gen AI Security Project Initiative for Securing Agentic Applications Read Post »

Scroll to Top