← All news
Permission Escalation
Permission escalation occurs when a user or process gains access to functions or data they should not be able to reach, often by exploiting a flaw that lets them act with higher privileges than their role allows. In AI systems, this risk appears when an employee with limited access to a model or dataset finds a way to view sensitive training data, modify a deployed model, or approve their own changes without proper oversight. For governance and compliance, permission escalation matters because it breaks the separation of duties that audit trails and access controls depend on, making it harder to prove who changed what and whether that change was authorized.
1 item
