Is your AI environment trustworthy?

The Vercel incident was very simple. An employee connected an external AI tool to the company's Google Workspace through OAuth, and an attacker took over the account. From there, he had access to any internal data not marked as sensitive.

Clearly, this is not a real hack or a notorious zero-day exploitation. Eventually, someone, legitimately, connected an AI tool and clicked "Allow". That's it. The game is over.

I mean, let's be honest. Everyone at least once, connected a new AI tool, downloaded an Add-on, or used an unknown app "just to try it", didn't you? And in many cases, we linked it to our Google Workspace or GitHub. Did anyone connect it to production? Raise your hand.

How do you keep your environment trustworthy?

Not sure? Here are my most effective controls and routines to avoid mistakes and trust related risks:
  1. Implement multi-factor authentication (MFA). It's not a "V" for auditors. It's a mandatory measure against identity theft. Enforce it on all identities.
  2. Map and document your authentication and authorization methods and apps. Having a list in your head is the most common mistake. You will be surprised to realize how many forgotten connections you may miss.
  3. Delete identities without a clear justification. "Not sure about this identity" is not a use case, it's a vulnerability.
  4. Review your apps and permissions frequently. Everything with access to sensitive data and/or central apps like your Email, Drive, or Repo, should be constantly reviewed. Although it is boring as hell, re-validate why it needs access and can access be reduced.
  5. Cancel the connection you made for free tools. With all due respect, business innovation is significant, but it is not worth uncontrolled access.
  6. Rotate everything that could leak. API keys, tokens, database credentials, everything! Do not wait for signs of a leak. Just rotate.
  7. Analyze your logs. Seek out actions outside of your day-to-day patterns.
  8. Separate live accounts from testing accounts. AI tools testing should not include production data. Such separation will eliminate human errors.
  9. Wherever possible, mark secrets as sensitive and obviously, deny access to sensitive data.
  10. Simulate an incident. Knowing what needs to be done, by whom and how long it should take for whatever is important to the organization will increase your ability to recover. Have a documented playbook if possible.

With AI evolving, these controls are no longer an edge case.

The entire AI revolution relies on countless numbers of tools with connectivity and broad access. The downside is that we help attackers by making their attack path easier. Once they are in, everything is accessible, making the above recommendations the norm and even the default.

To conclude:

If you want to ensure the trustworthiness of your environment, you need to review and control the “mess” that AI tools create.

You probably cannot avoid it, but if you oversee and govern it, you can keep it trustworthy.

Not sure how to start maintaining your environment trustworthy?

Contact us and we will walk you through it.
by Oren Hadar

Leave a Reply

Your email address will not be published. Required fields are marked *

More from our Blog

April 21, 2026
Is your AI environment trustworthy?

The Vercel incident was very simple. An employee connected an external AI tool to the company's Google Workspace through OAuth, and an attacker took over the account. From there, he had access to any internal data not marked as sensitive. Clearly, this is not a real hack or a notorious zero-day exploitation. Eventually, someone, legitimately, […]

April 6, 2026
Organizational Capability Vs Execution?

Today, many organizations invest in their cloud infrastructure projects, standards and regulatory compliance projects, and of course, there are dozens if not hundreds of AI projects. But most of these projects miss the point. They try to "go live" without creating real organizational capabilities. You can see the same pattern repeatedly. A cloud project with no […]

November 3, 2025
AI Agents: New Opportunity or New Risk?

The shift has begun. Over the past year, a profound transformation has taken place in enterprise technology. We’re moving from AI tools to AI agents. Instead of merely generating text or summarizing data, AI agents are making decisions, trigger actions, and autonomously collaborate with other systems. These agents are not futuristic concepts. They are being […]

October 27, 2025
The Need for AI Governance

How critical is it to develop AI governance? Every aspect of our lives is being influenced by artificial intelligence systems. AI became our best friend. We use it everywhere. Business progress, presentations, ways to engage with others and of course, in our personal life and the decisions that we take. However, it is important to […]

October 20, 2025
The world is changing

With the rise of agent-based artificial intelligence, executive roles are being reshaped like never before. The skills, responsibilities, and challenges are completely different from those of the past. What’s even more amazing is that this transformation is still in its infancy. Can you see the change? We are transforming into reality where AI agents are […]

March 1, 2020
Cyber Hygiene - Cloud

Do teeth brushing and cloud security correlate? Can teeth brushing save us money? Hey everybody. I'm Yoav and this the last and not least of our cyber hygiene post serious. This one is on implementing cyber hygiene on cloud environments. On our previous post “cyber hygiene – actions” we learned how good security practices and […]

February 17, 2020
Cyber Hygiene Actions

Hey you all, Its, Yoav. Thank you for coming back. On this post I will tell you how simple hygiene actions (with no additional tools required) can be implemented within your network, preventing digital illness and unnecessary disruption exposure. On our previous post, Cyber Hygiene basics, we saw the similarity between body hygiene and network […]

February 8, 2020
Cyber Hygiene Basics

Can you see the connection between personal body cleanse and computer network weaknesses? To my eyes, the connection is based on the term “Cyber Hygiene”. Does it ring a bell? What is Cyber Hygiene? to understand the meaning of this term, I want you to imagine... Imagine the world when people did not care of personal […]

January 4, 2020
Security Software as a Service

In the just ended decade cyberspace has change the way we live and operate. However, with so many cyber incidents and data breaches that impacted global business economy, the market understands that cybersecurity is a vital investment for businesses that wants to sustain their success. With this conclusion the cybersecurity realm received an enormous burst […]

April 30, 2017
CST-360 Protecting What Matters

Hello all, Welcome to our website blog. In this blog, we care to share our thoughts and insights on Cyber Security processes and business outputs, as we believe that governing your cyber defense operations will give your organization the highest value regardless of your tools and solutions. Our moto "protecting what matters", reflects the need […]

May 17, 2017
Governance Against Malware

In the past two weeks, all we hear are #WannaCry, #WannaCrypt, and the world’s biggest cyberattack. However, eventually, protecting against these and other malware,  is still a good Patch Management process. Nothing more. No extra security tools and no extra cost investments. So with no further due, just invest in good practices. Govern your IT and […]

December 31, 2018
2019 - New Year Predictions

Humbly and with respect, I admit that 2018 was very good for us @ CST-360.We had some new fascinating engagements that started and will continue into the new year with new technologies, new business models and above all new BUSINESS RISKS to address. What should we expect of coming 2019? Here are the three bullets […]

Visit Our Blog 

Leverage your business, 
while protecting what matters

Let's Plan Your Security
lockplusunlockunlock-altcopyrightcross linkedin facebook pinterest youtube rss twitter instagram facebook-blank rss-blank linkedin-blank pinterest youtube twitter instagram