Penetration Testing for AI / LLM Applications
IBA Group a.s. · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
IBA Group provides specialized penetration testing services for AI-powered systems and LLM-based applications deployed on AWS and hybrid environments.
Traditional penetration testing focuses on infrastructure and application vulnerabilities, but AI systems introduce new attack surfaces, including prompt manipulation, model extraction, and data leakage. Our methodology combines traditional security testing with AI-specific adversarial testing aligned with OWASP Top 10 for LLM Applications.
Show the rest of the publisher’s description (7 more lines)
We simulate real-world attacks against AI systems to identify vulnerabilities across AI models, APIs, data pipelines, plugins, and cloud infrastructure, helping organizations secure their AI applications while maintaining compliance and operational resilience.
Our services are designed for organizations developing or operating:
+ Generative AI applications
+ LLM-based chatbots and assistants
+ AI-powered analytics platforms
+ Machine learning APIs and services
+ Autonomous or agent-based AI systems
Highlights
Highlighted by the publisher on AWS Marketplace.
** AI Model and API Security Testing Assessment of AI model endpoints, APIs, and integrations to identify unauthorized access risks, misconfigured authentication, and exposed services. ** Prompt Injection and Adversarial Testing Simulation of malicious prompt engineering attacks designed to bypass guardrails, manipulate model behavior, or extract sensitive data
** Data Leakage and Privacy Risk Assessment Evaluation of risks related to training data exposure, sensitive data leakage, and model memorization vulnerabilities. ** AI Infrastructure and Cloud Security Security testing of the underlying AWS infrastructure, container environments, and deployment pipelines hosting AI workloads.
** AI Application Security Validation Testing interactions between frontend applications, backend services, APIs, and integrated AI models to detect vulnerabilities across the entire system.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Sources
Linked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

