Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • NCSC warns mistaking AI vulnerability could lead to large-scale breaches

Security

NCSC warns mistaking AI vulnerability could lead to large-scale breaches

The National Cyber Security Centre (NCSC) – a part of GCHQ – has shared critical insights cautioning cyber security professionals against comparing prompt injection and more classical application vulnerabilities classed as SQL injection.

Image by frank60 / copyright Shutterstock

A new blog advises that, contrary to first impressions, prompt injection attacks against generative artificial intelligence applications may never be totally mitigated in the way SQL injection attacks can be.

Unlike SQL mitigation techniques, which hinge on enforcing a clear separation between data and instructions, prompt injection exploits the inability of large language models (LLMs) to distinguish between the two.

Advertisement
ODU RT

Without action addressing this misconception, the NCSC warns, websites risk falling victim to data breaches exceeding those seen from SQL injection attacks in the 2010s, impacting UK businesses and citizens into the next decade.

Backing proactive adoption of cyber risk management standards, the NCSC challenges claims that prompt injections can be ‘stopped’.

Advertisement
ODU RT

Instead, it suggests efforts should turn to reducing the risk and impact of prompt injection and driving up resilience across AI supply chains.

As AI technologies become embedded in more UK business operations, the NCSC calls on AI system designers, builders and operators to take control of manageable variables, acknowledging that LLM systems are “inherently confusable” and their risks managed in different ways.

Advertisement
FIA2026 animated banner
MGI Engineering expands into Italy with Vigilar Group

Aerospace Defence Security

MGI Engineering expands into Italy with Vigilar Group

5 June 2026

Oxfordshire based MGI Engineering has entered into a strategic partnership with Vigilar Group, marking MGI’s expansion into Italy and a significant new phase of growth across Europe.

Smiths Detection’s HI-SCAN 10080 XCT achieves TSA ACSTL Qualified status

Aerospace Security

Smiths Detection’s HI-SCAN 10080 XCT achieves TSA ACSTL Qualified status

5 June 2026

Smiths Detection's Explosives Detection System (EDS) HI-SCAN 10080 XCT advanced X-ray computed tomography system for hold baggage and air cargo has progressed from the 'Approved' section to the 'Qualified' section of the US Transportation Security Administration’s (TSA) Air Cargo Screening Technology List (ACSTL).

UTAC Special Vehicles produces 1,000th armoured vehicle

Defence Security

UTAC Special Vehicles produces 1,000th armoured vehicle

4 June 2026

UTAC Special Vehicles has reached the milestone of producing its 1,000th armoured vehicle at the division’s headquarters at Millbrook, Bedfordshire, UK.

NATS, DroneCloud and Network Rail complete CNI drone trial

Aerospace Security

NATS, DroneCloud and Network Rail complete CNI drone trial

3 June 2026

NATS, DroneCloud and Network Rail have completed a major project exploring how drones could be safely used at scale around Critical National Infrastructure (CNI), including for rail inspections and incident response.

Advertisement
ODU RT
DSEI Germany adds fourth exhibition hall

Defence Security Space Events

DSEI Germany adds fourth exhibition hall

3 June 2026

The organisers of DSEI Germany have announced that, due to unprecedented industry demand, they will be opening a fourth exhibition hall ahead of its debut in March 2027.

Getac launches rugged ZX80W and ZX80W-EX tablets

Aerospace Defence Security

Getac launches rugged ZX80W and ZX80W-EX tablets

3 June 2026

Getac today announced the expansion of its ZX80 range of eight inch fully rugged tablets with the launch of the new ZX80W and ZX80W-EX, which are two lightweight, highly mobile Windows 11 devices built on ARM architecture.

Advertisement
ODU RT
Advertisement
General Atomics LB