AI/ML (OWASP LLM/GenAI Top 10)
An in-app AI assistant demonstrating the OWASP Top 10 for LLM/GenAI, adapted to a mobile client: prompt injection (direct + indirect), insecure output handling, excessive agency, system-prompt leakage, hardcoded API keys, insecure on-device model storage, unverified model supply chain, and unbounded resource consumption.
13 vulnerabilities. OWASP Mobile: M4