Retrieval-augmented generation
Systems that feed retrieved documents or vector-search results into a model's context.
- All items
- 33
- Last 90 days
- 10
- Change
- -9%vs 11 before
Items per month
| Month | Items |
|---|---|
| May 2025 | 0 |
| Jun 2025 | 0 |
| Jul 2025 | 0 |
| Aug 2025 | 0 |
| Sep 2025 | 0 |
| Oct 2025 | 0 |
| Nov 2025 | 1 |
| Dec 2025 | 0 |
| Jan 2026 | 1 |
| Feb 2026 | 3 |
| Mar 2026 | 4 |
| Apr 2026 | 2 |
| May 2026 | 6 |
| Jun 2026 | 2 |
| Jul 2026 | 2 |
| Aug 2026 | 1 |
| Sep 2026 | 8 |
| Oct 2026 | 1 |
3 items
When the prompt becomes the payload: A practical pen-testing guide for GenAI, LLM and RAG applications
Sep 9, 2026InfoNewsSecurityResearchA practical pen-testing guide for generative AI, LLM and RAG applications argues that the security question has shifted from whether a model says something it should not to whether manipulated language can reach protected data or trigger unauthorized business actions. It recommends starting with an architecture walk-through that maps prompts, retrieval, tools, identities and logging, then treating prompt injection as a multi-turn campaign rather than a single-phrase test.
CSO OnlineSecuring RAG pipelines in enterprise SaaS
Apr 28, 2026InfoNewsSecurityResearchThe article argues that Retrieval-Augmented Generation (RAG) gives AI agents in enterprise SaaS real-time access to sensitive company data, which creates serious security liabilities. It cites recent incidents, including the "EchoLeak" zero-click exfiltration from Microsoft 365 Copilot's RAG pipeline in late 2025 and vector database exposures in 2024 to 2025. It then outlines a three-phase RAG pipeline (ingestion and embedding, storage and retrieval, generation and orchestration) and maps threats to each phase.
CSO OnlineWhy 2025’s agentic AI boom is a CISO’s worst nightmare
Feb 17, 2026InfoNewsSecurityResearchAn opinion-style article argues that by late 2025 enterprise AI had shifted from chat-based LLMs to autonomous agents, driven by the failure of standard RAG systems. It states that 72% to 80% of enterprise RAG implementations underperform or fail within their first year, and that agentic RAG introduces a new risk: autonomous execution of malicious instructions. The source text is cut off before its security analysis.
CSO Online
Topic added 2026-10-09. An item belongs to this topic when its title matches one of the topic's patterns or its summary mentions the topic at least twice. Report a wrong match with the feedback button on the item.