OWASP Top 10 for LLM Applications 2025
LLM09 Misinformation
Confident, wrong output is acted on.
Categories that mitigate it
No category in the map is mapped to this threat yet.
Vendors that say they address it
Only vendors that publish their own mapping to this threat are listed.
- LakeraAcquired by Check Point38
Runtime guardrails for LLM applications and agents (Lakera Guard) that screen prompts, tool responses, and tool descriptions for injection and data leakage, plus AI red teaming. Acquired by Check Point in 2025.
- PromptfooBeing acquired by OpenAI31
Open-source red teaming, static scanning, and evaluation for LLM applications and agents, with plugins for tool misuse, MCP, memory poisoning, and prompt injection. OpenAI agreed to acquire it in March 2026 and committed to keep it open source.