SEC536: Adversarial AI - Penetration Testing AI Systems


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsKey findings:
The paper's central argument is that bolting AI data flows onto legacy DLP infrastructure creates governance gaps rather than closing them, since those programs were built for data at rest and in transit, not for the context-dependent, constantly shifting nature of AI inputs and outputs. It frames the fix as a shift from reactive, contextless data security to a proactive, contextual model built around continuous data discovery and automated labeling. This is vendor-sponsored research content (a SANS First Look), written by Kevin Garvey and sponsored by Bonfy.AI; the underlying analysis and challenges described are SANS Institute's, while the product capabilities described are Bonfy.AI's own.
This webcast will explore where conventional DLP programs fall short in the age of AI, including lack of context, overwhelming alert fatigue, and ineffective measurement.

Legacy DLP was built to manage data at rest and in transit, so it can't interpret the business context of AI-generated content or govern new data points created by AI inputs and outputs, according to the SANS First Look "Adapting Your Data Security Program in the Age of AI."
Shadow AI refers to AI usage that operates outside the visibility of an organization's traditional DLP solutions, meaning that data flowing through it goes ungoverned and unmonitored.
Bonfy.AI correlates data across CRM, IAM, and HRM systems to build custom knowledge graphs showing what data is at risk and which entities it's connected to.
Yes. New AI integration points and data flows expand the attack surface, per the SANS First Look, while rapid growth in AI-generated content increases the risk of exposing sensitive information.
The paper points to automated, entity-aware data labeling as a fix for the errors and inconsistency common in manual labeling processes, which it identifies as a weak point in most existing data security programs.


Kevin Garvey brings incident response, vulnerability management, threat intelligence, SOC, and leadership experience to SANS training, helping students connect security management concepts to real decisions teams and businesses need them to make.
Read more about Kevin Garvey


















