Skip to main content
COMMUNITY CURATED · DOMAIN AUTHORSHIP · REVIEWER NETWORK

CAIF Landscape Curators

Curators help maintain the Security AI Landscape, connect projects to standards and weaknesses, and keep each research domain accurate for the community.

Domain Authors

Domain Authors

Named contributors can propose listings, review metadata, map resources to CAIF standards, and document gaps without needing private source-code access.

Research Contributors

Research Contributors

Named contributors can propose listings, review metadata, map resources to CAIF standards, and document gaps without needing private source-code access.

Curators

Curators

Named contributors can propose listings, review metadata, map resources to CAIF standards, and document gaps without needing private source-code access.

Reviewers

Reviewers

Named contributors can propose listings, review metadata, map resources to CAIF standards, and document gaps without needing private source-code access.

Open Domains

Security AI Landscape domains open for maintainers

Every category can support named authors, research contributors, curators, and reviewers.

Offensive Security

AI Penetration Testing

AI-assisted tools and workflows for penetration testing, validation, and exploit path analysis.

Open for curatorsApply for this domain
Offensive Security

AI Red Teaming

Resources for adversarial evaluation of systems, models, applications, and security controls.

Open for curatorsApply for this domain
Research Programs

Bug Bounty

Projects that help researchers discover, validate, report, or prioritize bug bounty findings.

Open for curatorsApply for this domain
Research Programs

Vulnerability Research

Tools and research artifacts used to investigate weakness classes and exploitable conditions.

Open for curatorsApply for this domain
Discovery

Reconnaissance / OSINT

Discovery, intelligence gathering, enrichment, and open-source intelligence resources.

Open for curatorsApply for this domain
Discovery

Attack Surface Management

Resources that map, monitor, and contextualize internet-facing exposure.

Open for curatorsApply for this domain
Application Security

Application Security

Security AI resources focused on web, product, and application security workflows.

Open for curatorsApply for this domain
Application Security

API Security

API testing, specification review, authentication analysis, and API abuse research.

Open for curatorsApply for this domain
AI Security

LLM Security

Security testing, validation, and governance for large language model applications.

Open for curatorsApply for this domain
AI Security

Agentic AI Security

Security resources for autonomous agents, tool use, delegation, and action-bearing AI systems.

Open for curatorsApply for this domain
AI Security

Prompt Injection Testing

Testing resources for prompt injection, instruction hierarchy bypass, and indirect injection.

Open for curatorsApply for this domain
AI Security

AI Model Security

Model risk, model integrity, adversarial ML, and AI system assurance resources.

Open for curatorsApply for this domain
AI Security

AI Supply Chain Security

Datasets, models, dependencies, plugins, and AI component supply chain validation.

Open for curatorsApply for this domain
Defensive Security

Malware Analysis

AI-assisted reverse engineering, malware triage, and behavior analysis resources.

Open for curatorsApply for this domain
Defensive Security

Digital Forensics

AI resources for forensic analysis, evidence review, timeline reconstruction, and investigations.

Open for curatorsApply for this domain
Intelligence

Threat Intelligence

Resources for threat research, enrichment, clustering, and operational intelligence workflows.

Open for curatorsApply for this domain
Defensive Security

SOC / Blue Team

Security operations resources for detection, triage, investigation, and analyst augmentation.

Open for curatorsApply for this domain
Defensive Security

Detection Engineering

Resources for creating, validating, tuning, and mapping detections.

Open for curatorsApply for this domain
Defensive Security

Incident Response

AI-assisted incident response, containment, communication, and lessons-learned workflows.

Open for curatorsApply for this domain
Platform Security

Cloud Security

Cloud posture, cloud attack paths, identity exposure, and workload security resources.

Open for curatorsApply for this domain
Platform Security

Container / Kubernetes Security

Container image, Kubernetes, runtime, cluster, and orchestration security resources.

Open for curatorsApply for this domain
Identity

Identity Security

Identity attack path, access review, permission analysis, and identity threat research.

Open for curatorsApply for this domain
Identity

Active Directory

Directory services, enterprise identity, Kerberos, and AD attack path resources.

Open for curatorsApply for this domain
Industrial Security

OT / ICS Security

Operational technology, industrial control systems, robotics, and cyber-physical security resources.

Open for curatorsApply for this domain
Application Security

Mobile Security

Mobile application, device, platform, and mobile API testing resources.

Open for curatorsApply for this domain
Engineering

Secure SDLC / DevSecOps

Resources for security engineering, CI/CD controls, review automation, and development workflows.

Open for curatorsApply for this domain
Engineering

Code Security

Code analysis, secure code review, repository intelligence, and remediation assistance.

Open for curatorsApply for this domain
Engineering

SAST

Static application security testing and AI-assisted source analysis resources.

Open for curatorsApply for this domain
Engineering

DAST

Dynamic application security testing and runtime validation resources.

Open for curatorsApply for this domain
Engineering

SCA

Software composition analysis, dependency risk, and package intelligence resources.

Open for curatorsApply for this domain
Engineering

Secrets Detection

Detection and validation of exposed credentials, keys, tokens, and sensitive material.

Open for curatorsApply for this domain
Risk Operations

Vulnerability Management

Prioritization, validation, workflow, and remediation intelligence for vulnerabilities.

Open for curatorsApply for this domain
Risk Operations

Exposure Management

Resources that connect exposed assets, attack paths, and business risk context.

Open for curatorsApply for this domain
AI Security

Security Copilots

AI assistants, copilots, and analyst augmentation resources for security work.

Open for curatorsApply for this domain
AI Security

Autonomous Security Agents

Agentic systems that can plan, call tools, inspect results, and perform security tasks.

Open for curatorsApply for this domain
AI Security

MCP Security

Model Context Protocol security, tool boundary, connector, and agent integration resources.

Open for curatorsApply for this domain
Research Outputs

Cybersecurity Research

Papers, projects, benchmarks, and research programs relevant to AI-powered cybersecurity.

Open for curatorsApply for this domain
Research Outputs

Datasets

Datasets, corpora, benchmarks, and structured references for security AI research.

Open for curatorsApply for this domain
Research Outputs

Security Models

Open models, model cards, evaluation projects, and security-specific AI model resources.

Open for curatorsApply for this domain
Research Outputs

Security Frameworks

Frameworks, standards, and reference architectures for security AI work.

Open for curatorsApply for this domain
Governance

AI Governance

Governance, review, control, assurance, and accountability resources for AI security.

Open for curatorsApply for this domain
Governance

GRC

Governance, risk, compliance, maturity, audit, and executive reporting resources.

Open for curatorsApply for this domain
Education

Educational / Cyber Range

Training labs, ranges, simulations, and learning environments for security AI practice.

Open for curatorsApply for this domain
Other

Other

Resources that do not yet fit a formal CAIF Security AI Landscape category.

Open for curatorsApply for this domain