With the proliferation of AI assistants and chatbots, a new category of threats is emerging that few people are talking about yet, but businesses are already suffering real losses. As if DDOS attacks and click fraud weren't enough, they've already begun to be actively used.
First, the system extracts information from the corporate knowledge base, documents, or internal storage, and then generates a response to the user based on the data found.
— In light of this peculiarity, the author has compiled a list of the main attack vectors, organized by potential damage and ease of implementation for attackers.