Ai-Powered Attacks and Mitigation Strategies for Enterprises: A Comprehensive Research Review

Authors

  • Sarathkumar K Principal Lead, Cybersecurity, Optiv Security Inc., Bangalore, Karnataka, India Author
  • Pandian R Research Scholar, Dept. of Computer Science, NITTTR, Chennai, Tamil Nadu, India Author
  • Shyamala Gowri B Professor, Dept. of CSE, Saveetha School of Engineering, Saveetha University, Chennai, Tamil Nadu, India Author
  • Karthiga R PG Scholar, Dept. of Cybersecurity, University of Madras, Chennai, Tamil Nadu, India Author

DOI:

https://doi.org/10.47392/IRJAEH.2026.0719

Keywords:

Artificial Intelligence, Enterprise Cybersecurity, Generative AI, LLM, Prompt Injection, RAG Poisoning.

Abstract

The rapid adoption of artificial intelligence (AI), large language models (LLMs), retrieval-augmented generation (RAG), and autonomous AI agents is transforming enterprise information systems, cybersecurity operations, software development, customer services, and decision-making. However, the integration of AI introduces attack surfaces that extend beyond conventional application and network vulnerabilities. Attackers can exploit identities, application programming interfaces, prompts, documents, retrieval stores, vector databases, model artifacts, agent tools, browser sessions, software pipelines, cloud credentials, and AI gateways. This research review develops a 24-path enterprise attack taxonomy from the supplied reference model and organizes the attacks across identity and access, input and context, data and retrieval, model and supply chain, agent and workflow, and infrastructure and output domains. It reviews major attack classes and proposes a defense-in-depth mitigation architecture combining zero-trust identity, least privilege, data provenance, model integrity verification, secure tool execution, continuous monitoring, adversarial testing, human oversight, and AI-specific incident response. The paper also identifies research gaps involving prompt-injection detection, agent authorization, persistent memory, model provenance, AI supply-chain assurance, and enterprise-scale security evaluation.

Downloads

Download data is not yet available.

Downloads

Published

2026-10-07

How to Cite

Ai-Powered Attacks and Mitigation Strategies for Enterprises: A Comprehensive Research Review. (2026). International Research Journal on Advanced Engineering Hub (IRJAEH), 4(09), 5510-5516. https://doi.org/10.47392/IRJAEH.2026.0719