AWS has extended Amazon GuardDuty to monitor AI-specific workloads in Bedrock and SageMaker. The service analyzes CloudTrail events to identify threats like prompt injection and anomalous model invocations. It also detects cost harvesting attacks where actors exhaust GPU time and tokens. This provides visibility into AI security without requiring custom tooling or manual configuration.
- GuardDuty now covers Bedrock and SageMaker for AI threat detection
- Detects prompt injection, anomalous invocations, and cost harvesting
- Analyzes CloudTrail management and data events automatically
- Reduces need for custom security tooling for AI workloads