* プロモーションの引き換えに関する規則と条件をご覧ください
重要ポイント
-
真のリスクは、ワークフローを伴う密接なコラボレーションに集中しています。
-
幅広い導入状況を示す統計では、実際の脅威対象領域が見えにくくなっています。実際には、深いマルチプロンプトセッションを行い、ファイルやコンテキストを日常的に共有する上位5%の「パワーユーザー」グループが、セキュリティリスクを不均衡に高めています。
-
管理されていないIDが、見えないシャドーAIエコシステムを生み出しています。
-
従業員が業務ごとに特化したニッチなアプリを独自に導入すると、ガバナンスは機能しなくなります。企業におけるAIとのやり取りのほぼ半数が個人アカウントを介して行われており、データの保持やモデルのトレーニングに関する運用実態を組織が把握できなくなるためです。
-
会話型のやり取りは、従来のデータ流出対策の境界を回避します。
-
生成AIツールは、企業から個人へのデータ転送先として最大の割合を占めています。これは主に、従来のファイルベースのデータ損失防止(DLP)システムを回避するコピー&ペーストによるデータ転送が大きな要因となっています。
-
拡張機能に付与された高い権限は、IDと認証情報に永続的なリスクをもたらします。
-
バックグラウンドで動作するブラウザやIDEツールは、重要な運用権限を要求することが多く、脆弱性の発生率も高いため、APIキーの密かな窃取やコード実行環境の侵害を狙う攻撃者にとって価値の高い標的となります。
-
間接的なインジェクション攻撃により、自律型ワーカーがマシン速度で脅威をもたらす存在へと変わります。
-
企業が受動的な支援から、複数のステップから成るワークフローを自律的に実行するエージェントへと移行する中、外部Webページに仕込まれた悪意のあるプロンプトインジェクションによってエージェントが操作され、権限のないアクションを実行させられる可能性があります。
よくある質問(FAQ)
よくある質問(FAQ)
Industry researchers demonstrated a technique dubbed “vibe hacking” in 2026. By modifying a project's instruction file, an attacker could manipulate the AI coding assistant's behavior inside a development environment to generate outputs aligned with the attacker's objectives.
Nearly half of all enterprise AI conversations (47.11%) take place through personal identities rather than corporate-managed accounts. Additionally, 14.39% of conversations are conducted using corporate email identities connected to personal AI licenses, placing them outside enterprise governance.
Gemini Enterprise and Copilot M365 are overwhelmingly accessed via corporate-managed accounts, representing 98.15% and 90.55% of conversations, respectively. Conversely, platforms like ChatGPT, Claude, Copilot, and DeepSeek are primarily accessed through personal accounts, with more than 60% of conversations tied to personal identities.
Nearly 75% of AI browser extensions request high or critical permission levels, making them nearly 3x more likely to request cookie access and significantly more likely to request scripting access (41.91% vs. 15.4% for average extensions). Additionally, 16.31% of AI extensions have known CVEs, compared with 10.8% across all extensions.