Close Menu
GeekBlog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    A Military GPS Jamming Test Was Running When This Air Ambulance Hit a Mountain

    August 9, 2026

    Reddit Just Hired an AI to Read Your Posts, and Moderators Are Not Sold

    August 9, 2026

    Apple Quietly Raised Its Trade-In Values, and Some Jumped Almost 30%

    August 9, 2026
    Facebook X (Twitter) Instagram Threads
    GeekBlog
    • Home
    • Mobile
    • Tech News
    • Blog
    • How-To Guides
    • AI & Software
    Facebook
    GeekBlog
    Home»AI & Software»Proliferation of on-premise GenAI platforms is widening security risks
    AI & Software

    Proliferation of on-premise GenAI platforms is widening security risks

    Michael ComaousBy Michael ComaousAugust 4, 20254 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Proliferation of on-premise GenAI platforms is widening security risks
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    The three months to the end of May this year saw a 50% spike in the use of generative artificial intelligence (GenAI) platforms among enterprise end users, and while security teams work to facilitate the safe adoption of software-as-a-service (SaaS) AI frameworks such as Azure OpenAI, Amazon Bedrock and Google Vertex AI, the use of unsanctioned on-premise shadow AI now accounts for half of AI application adoption in the enterprise and is compounding security risks, according to a report.

    The study, compiled by data protection and threat prevention platform supplier Netskope, examined the gathering shift among users to relying on on-premise GenAI platforms, which they are mostly using to build out their own AI agents and applications.

    These platforms, which include tools such as Ollama, LM Studio and Ramalama, are now the fastest-growing category of shadow AI, due to their relative ease of use and flexibility, said Netskope. But, in using them to expedite their projects, employees are granting the platforms access to enterprise data stores and leaving the doors wide open to data leakage or outright theft.

    “The rapid growth of shadow AI places the onus on organisations to identify who is creating new AI apps and AI agents using GenAI platforms and where they are building and deploying them,” said Ray Canzanese, director of Netskope Threat Labs.

    Recommended for you:

    Nominate: Most Influential Women in UK Technology 2025
    AI & Software·Aug 5, 2025

    Nominate: Most Influential Women in UK Technology 2025

    “Security teams don’t want to hamper employee end users’ innovation aspirations, but AI usage is only going to increase. To safeguard this innovation, organisations need to overhaul their AI app controls and evolve their DLP [data loss prevention] policies to incorporate real-time user coaching elements.”

    Probably the most popular way to use GenAI locally is to deploy a large language model (LLM) interface, which enables interaction with various models from the same “store front”.

    Ollama is the most popular of these frameworks by some margin. However, unlike the most widely used SaaS options, it does not include inbuilt authentication, which means users must go out of their way to deploy it behind a reverse proxy or a private access solution that is appropriately secured with fit-for-purpose authentication. This is not an easy ask for the average user.

    Agentic shadow AI is like a person coming into your office every day, handling data, taking actions on systems, and all while not being background-checked or having security monitoring in place
    Netskope report

    Furthermore, while OpenAI, Bedrock, Vertex et al provide guardrails against model abuse, Ollama users must take steps themselves to prevent misuse.

    Netskope said that while on-premise GenAI does have some benefits – for example, it can help organisations leverage pre-existing investment in GPU resources, or help them build tools that better interact with their other on-premise systems and datasets – these may well be outweighed by the fact that in using them, organisations bear sole responsibility for the security of their GenAI infrastructure in a way that would not be happening with a SaaS-based option.

    Netskope’s analysts are now tracking approximately 1,550 distinct GenAI SaaS applications, which its customers can easily identify by running focused searches for unapproved apps and personal logins within its platform for activity classed as “generative AI”. Another way to track usage is to monitor who is accessing AI marketplaces such as Hugging Face.

    Recommended for you:

    The best tablets of 2025: Lab-tested recommendations
    AI & Software·Aug 5, 2025

    The best tablets of 2025: Lab-tested recommendations

    Besides identifying the use of such tools, IT and security leaders should consider formulating and enforcing policies that restrict employee access to approved services, blocking unapproved ones, implementing DLP to account for data sharing in GenAI tools, and adopting real-time user coaching to nudge users towards approved tools and sensible practice.

    Adopting continuous monitoring of GenAI use and conducting an inventory of local GenAI infrastructure against frameworks provided by the likes of NIST, OWASP and Mitre is also advisable.

    “Agentic shadow AI is like a person coming into your office every day, handling data, taking actions on systems, and all while not being background-checked or having security monitoring in place,” warned the report’s authors.

    Security
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
    Previous ArticleWi-Fi smart bulbs are cheap and easy. They can also leave you hanging
    Next Article One more reason to stick with wired earbuds? Kamala Harris warns ‘I’m just telling you that’s a little bit more secure’ than wireless earbuds after her experience in intelligence briefings
    Michael Comaous
    • Website

    Michael Comaous is a dedicated professional with a passion for technology, innovation, and creative problem-solving. Over the years, he has built experience across multiple industries, combining strategic thinking with hands-on expertise to deliver meaningful results. Michael is known for his curiosity, attention to detail, and ability to explain complex topics in a clear and approachable way. Whether he’s working on new projects, writing, or collaborating with others, he brings energy and a forward-thinking mindset to everything he does.

    Related Posts

    8 Mins Read

    AI Agents Built Fake Identities to Trick a Real Developer, and the UK Government Caught It

    8 Mins Read

    The EU AI Act Just Became Enforceable, and Most AI Companies Are Not Ready

    6 Mins Read

    Best AI Video Generators in 2026: Tested and Compared

    2 Mins Read

    Apple rolls out first ‘background security’ update for iPhones, iPads, and Macs to fix Safari bug

    3 Mins Read

    Nvidia’s version of OpenClaw could solve its biggest problem: Security

    4 Mins Read

    Is your AI agent a security risk? NanoClaw wants to put it in a virtual cage

    Top Posts

    AI’s Memory Boom Is Quietly Crushing the Budget Smartphone

    August 5, 20266 Views

    Scientists Didn’t Say Earth Is Becoming Uninhabitable. Here’s What the “Hothouse Earth” Study Actually Says

    August 5, 20266 Views

    Meta Wants an AI Agent Managing Your Life. Wall Street Isn’t So Sure

    August 2, 20265 Views
    Stay In Touch
    • Facebook

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Best Stores for Buying MP3 and Digital Music You Can Keep Forever (2026)

    August 2, 2025930 Views

    Discord will require a face scan or ID for full access next month

    February 9, 2026770 Views

    Trade in your old phone and get up to $1,100 off a new iPhone 17 at AT&T – here’s how

    September 10, 2025383 Views
    Our Picks

    A Military GPS Jamming Test Was Running When This Air Ambulance Hit a Mountain

    August 9, 2026

    Reddit Just Hired an AI to Read Your Posts, and Moderators Are Not Sold

    August 9, 2026

    Apple Quietly Raised Its Trade-In Values, and Some Jumped Almost 30%

    August 9, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2026 GeekBlog

    Type above and press Enter to search. Press Esc to cancel.