OWASP AIVSS Project: What it is, why we need it and how we are doing it @OWASPGLOBAL
OWASP AIVSS Project: What it is, why we need it and how we are doing it  @OWASPGLOBAL
Uploaded December 2025 | Updated September 2026, 2 weeks ago
Introducing OWASP AIVSS Project: The AI Vulnerability Scoring System for Modern Threats

Traditional CVSS frameworks excel at scoring software vulnerabilities but fall short when addressing AI-specific risks like prompt injection, goal manipulation, and memory poisoning. The AI Vulnerability Scoring System (AIVSS) extends CVSS to tackle the unique challenges of AI systems, particularly agentic AI deployed in enterprise environments.

This session introduces AIVSS, an OWASP initiative developed by a coalition of security leaders from government, academia, and industry. We'll explore why AI demands new vulnerability assessment approaches, dive into the top 10 agentic AI vulnerabilities, and demonstrate the AIVSS scoring methodology through live examples. Attendees will gain practical insights into assessing AI-specific risks and learn how to contribute to this critical open-source framework that's shaping the future of AI security.

Ken Huang
Generative AI Security book Author, Co-Chair of Cloud Security Alliance AI Safety Working Groups, NIST GAI Public Group Contributor and EC-Council GenAI Security Instructor
DistributedApps.ai

Ken Huang is an acclaimed author of 8 books on AI and Web3. He is the Co-Chair of the AI Organizational Responsibility Working Group and AI Control Framework at the Cloud Security Alliance. Additionally, Huang acts as CEO of DistributedApps.ai, which provides training and consulting services for generative AI security.

In addition, Huang contributed extensively to key initiatives in the space. He is a core contributor to OWASP's Top 10 Risks for LLM Applications and heavily involved in the NIST Generative AI Public Working Group. He also provides feedback on publications like NIST SP 800-226.

Huang published the book "Generative AI Security: Theories and Practices" with Springer (link.springer.com/book/9783031542510) , which takes a systematic, principle-based approach to securing generative AI systems.

Furthermore, his blog post "Mitigating Security Risks in Retrieval Augmented Generation (RAG) LLM Applications" stands as one of the most popular on the Cloud Security Alliance website (cloudsecurityalliance.org/blog/2023/11/22/mitigating-security-risks-in-retrieval-augmented-generation-rag-llm-applications)

Beyond his Springer book on Generative AI Security, Huang also serves as chief editor of the book "Beyond AI: ChatGPT, Web3, and the Business Landscape of Tomorrow." This volume discusses the wide-ranging business impacts of innovations like generative AI and web3.

His new book, "Agentic AI: Theories and Practices" is scheduled to be published by Springer in July 2025.

A sought-after speaker, Ken has shared his insights at renowned global conferences, including those hosted by Davos WEF, ACM, IEEE, and CSA AI Summit, CSA AI Think Tank Day and World Bank. His recent co-authorship of "Blockchain and Web3: Building the Cryptocurrency, Privacy, and Security Foundations of the Metaverse" adds to his reputation, with the book being recognized as one of the must-reads in both 2023 and 2024 by TechTarget.

Find him at Linkedin: linkedin.com/in/kenhuang8

Michael Bargury
Zenity
Co-Founder & CTO
labs.zenity.io

Michael Bargury is a hacker, builder and a cybersecurity practitioner. He is the co-founder and CTO of Zenity, the first application security company enabling enterprises to empower business users without paying for it in security incidents. He leads the OWASP LCNC Top 10, has a column on DarkReading, and delivers research, tools and talks regularly at top conferences including BlackHat, DEFCON and RSAC.

Vineeth Sai Narajala
AWS
Application Security Engineer
vineethsai.com

As an Application Security Engineer at Amazon Web Services (AWS), Vineeth specializes in core Data Analytics services such as EMR, Athena, and LakeFormation. Prior to his current role, he held positions as a pentester and in threat Intelligence. Additionally, he gained valuable experience in Business Recovery and Disaster Recovery, particularly in mitigating ransomware attacks during my tenure at Nordstrom.

Beyond his professional roles, vineeth actively participates in the bug bounty scene and is passionate about contributing to the community. He have also shared my expertise as an Adjunct Instructor at the University of Nevada, Las Vegas, and have delivered guest lectures at his alma mater, the University of Washington, Seattle. Outside of work, he enjoy skiing and recently started learning to surf. Vineeth also really enjoy classic rock and EDM music.

Managed by the OWASP® Foundation
owasp.org
OWASP AIVSS Project: What it is, why we need it and how we are doing itOWASP Mobile Application Security (MAS) - Sven Schleier, Carlos HolgueraGetting an LLM to Hack Itself: On AI, Moral Dilemmas, and SecurityLost in Translation: Exploiting Unicode NormalizationOWASP Mobile Application Security (MAS) - Sven Schleier & Carlos HolgueraThe Sentinel-Aura Architecture: Orchestrating Agentic AI for Autonomous Endpoint RemediationOWASP Global Board of Directors Meeting - March 2025(Do Not Publish) Building a Static Analyzer from Scratch202209 September 2022 Global Board MeetingSecuring AI Agents: Maximize ROI, Minimize RiskOWASP Finance - Slide Deck Summary May 2026OWASP Global Board of Directors Meeting - April 2025
OWASP Foundation |

OWASP AIVSS Project: What it is, why we need it and how we are doing it

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER