Skip to content

About

Threat modeling, STRIDE risk mapping, and prompt injection red-teaming for LLM-powered applications.

Topics

Resources

Stars

0 stars

Watchers

0 watching

Forks

Latest commit

 

History

1 Commit

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 

Repository files navigation

🛡️ AI Application Threat Modeling & Prompt Injection Audit

A comprehensive security audit, architecture threat model, and adversarial red-teaming assessment of an LLM-powered enterprise application.


📌 Audit Highlights

  • Frameworks Used: OWASP Top 10 for LLM Applications, STRIDE Threat Modeling
  • Attack Vectors Tested: Direct Prompt Injection, System Prompt Leakage, Indirect Payload Injection
  • Target Architecture: RAG-enabled Customer Support Agent with Function Calling APIs

📂 Repository Contents


🛠️ Recommended Security Architecture

To secure LLM pipelines against prompt injection and excessive agency, implement a Dual-LLM Guardrail Architecture:]

About

Threat modeling, STRIDE risk mapping, and prompt injection red-teaming for LLM-powered applications.

Topics

Resources

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Contributors