Security vetting tools and processes weren’t designed with obscure AI services in mind, according to TrendAI.
Niche AI tools are creating significant cybersecurity hazards for critical infrastructure organizations. These tools often originate from vendors lacking substantial security scrutiny, leading to uncertainty about their protection. TrendAI's report also identified other threats within the AI industry, including vulnerable trust relationships and insecure core infrastructure.
TrendAI conducted an internet scan of 21.6 million URLs and 4.6 million devices, revealing 43,175 AI-related services across 25 industries. Among these, 2,457 were classified as 'niche' due to their limited use (no more than 10 instances across one or two industries), with 1,468 services being specific to a single industry. This narrow adoption suggests generic AI platforms may not meet specialized industry needs. However, the obscurity of these bespoke AI tools raises significant cybersecurity concerns as their developers may not have undergone the rigorous mainstream AI governance reviews designed for widely adopted products. These traditional vetting processes and Cloud Access Security Broker (CASB) products are typically not equipped to scrutinize such niche offerings. To mitigate risks, TrendAI advises infrastructure operators to expand their inventorying efforts beyond mainstream vendors, prioritize AI tool reviews based on data sensitivity and potential regulatory exposure rather than vendor size, and ensure security monitoring tools adequately cover API traffic and third-party integrations. The report also highlighted other critical AI risk factors, including poor security for Model Context Protocol Servers (hubs connecting AI agents to organizational resources), vulnerabilities in open AI infrastructure (e.g., unpatched inference engines), insufficient security for the LLM control plane to prevent rogue commands, excessive ecosystem trust leading to supply-chain attacks via poisoned open-source packages, and outdated security models that fail to address 'agentic behavior,' emphasizing a need for 'least agency' alongside 'least privilege.'