« 欧州 Europol 世界的なサイバー犯罪取り締まり:37万3000以上のダークウェブサイトを閉鎖 | Main | 米国 FCC 家庭用ルータはこれから米国内製造品しか販売できない (2026.03.23) »

2026.03.27

OWASP 2026年版 エージェント型アプリケーション向けOWASP Top 10 (2025.12.09)

こんにちは、丸山満彦です。

OWASPが昨年に公表した、エージェント型アプリケーション向けOWASP Top 10は、Agentic AIの脅威について比較的わかりやすく整理されているので、参考になると思いました。

きっとOWASP Japanが日本語版を公表してくれると思います (^^)

これをベースに色々なところで議論をすれば話は早いように思いました...

 

OWASP

・2025.12.09 OWASP Top 10 for Agentic Applications for 2026

OWASP Top 10 for Agentic Applications for 2026 2026年版 エージェント型アプリケーション向けOWASP Top 10
About 概要
The OWASP Top 10 for Agentic Applications 2026 is a globally peer-reviewed framework that identifies the most critical security risks facing autonomous and agentic AI systems. Developed through extensive collaboration with more than 100 industry experts, researchers, and practitioners, the list provides practical, actionable guidance to help organizations secure AI agents that plan, act, and make decisions across complex workflows. By distilling a broad ecosystem of OWASP GenAI Security guidance into an accessible, operational format, the Top 10 equips builders, defenders, and decision-makers with a clear starting point for reducing agentic AI risks and supporting safe, trustworthy deployments. 「OWASP Top 10 for Agentic Applications 2026」は、自律型およびエージェンティックAIシステムが直面する最も重大なセキュリティリスクを特定する、世界的にピアレビューを経た枠組みである。100名以上の業界専門家、研究者、実務家との広範な協力を通じて策定されたこのリストは、複雑なワークフロー全体で計画、行動、意思決定を行うAIエージェントを組織が保護するための、実践的かつ実行可能なガイダンスを提供する。OWASPのジェネレーティブAIセキュリティガイダンスという広範なエコシステムを、理解しやすく実用的な形式に集約することで、このトップ10は、開発者、防御担当者、意思決定者に、エージェンティックAIのリスクを低減し、安全で信頼性の高い展開を支援するための明確な出発点を提供する。

 

・[PDF]

20260327-81412

 

10項目の全体像...

 

1_20260326155301

 

ASI01 Agent Goal Hijack  エージェントの目的乗っ取り
ASI02 Tool Misuse & Exploitation   ツールの悪用と悪用
ASI03 Identity & Privilege Abuse  IDおよび権限の悪用
ASI04 Agentic Supply Chain Vulnerabilities  エージェントのサプライチェーンの脆弱性
ASI05  Unexpected Code Execution (RCE)  予期しないコード実行(RCE)
ASI06 Memory & Context Poisoning  メモリおよびコンテキストの汚染
ASI07 Insecure InterAgent Communication  エージェント間のコミュニケーションの不備
ASI08 Cascading Failures  連鎖的な障害
ASI09 Human-Agent Trust Exploitation  人間とエージェント間の信頼関係の悪用
ASI10 Rogue Agents  不正エージェント

 

 

 

|

« 欧州 Europol 世界的なサイバー犯罪取り締まり:37万3000以上のダークウェブサイトを閉鎖 | Main | 米国 FCC 家庭用ルータはこれから米国内製造品しか販売できない (2026.03.23) »

Comments

Post a comment



(Not displayed with comment.)


Comments are moderated, and will not appear on this weblog until the author has approved them.



« 欧州 Europol 世界的なサイバー犯罪取り締まり:37万3000以上のダークウェブサイトを閉鎖 | Main | 米国 FCC 家庭用ルータはこれから米国内製造品しか販売できない (2026.03.23) »