OWASP Top 10 for Agentic Applications 2026
OWASP Gen AI Security Project · 2026 · ASI03: Identity and Privilege Abuse
The authoritative source for this module. ASI03 definition, five vulnerability types (Un-scoped Privilege Inheritance, Memory-Based Privilege Retention, Cross-Agent Trust Exploitation, TOCTOU Authorization Drift, Synthetic Identity Injection), seven attack scenarios, and nine mitigations are sourced directly from this document.
Used in: Slides 3, 4, 5, 9, 10, 12, 13, 14, 15, 16, 18, 19, 20, 21, 22, 23, 24, 25, 26