{"id":11229,"date":"2026-09-29T14:17:45","date_gmt":"2026-09-29T14:17:45","guid":{"rendered":"https:\/\/justfineinfotech.com\/cybersecurity-vendors-turn-to-multi-model-open-ai-to-bypass-guardrails-techtarget\/"},"modified":"2026-09-29T14:17:46","modified_gmt":"2026-09-29T14:17:46","slug":"cybersecurity-vendors-turn-to-multi-model-open-ai-to-bypass-guardrails-techtarget","status":"publish","type":"post","link":"https:\/\/justfineinfotech.com\/fr\/cybersecurity-vendors-turn-to-multi-model-open-ai-to-bypass-guardrails-techtarget\/","title":{"rendered":"Cybersecurity vendors turn to multi-model, open AI to bypass guardrails | TechTarget"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/justfineinfotech.com\/wp-content\/uploads\/2026\/09\/ai_g1182183209_searchsitetablet_520X173.jpg\" alt=\"\">    <\/p>\n<p>Getty Images\/iStockphoto<\/p>\n<p>Recent high-profile <a href=\"https:\/\/justfineinfotech.com\/fr\/ecommerce-cyber-security-protect-your-commerce-stack\/\" title=\"Ecommerce Cyber Security: Protect Your Commerce Stack\">s\u00e9curit\u00e9<\/a> incidents highlight a growing problem across the cybersecurity industry: Commercial AI models frequently mistake legitimate security analysis for malicious activity. To prevent upstream AI safety guardrails from stalling critical security workflows, security vendors are now actively decoupling their products from single-model dependencies<\/p>\n<p>When Hugging Face found itself under attack by rogue AI agents, incident responders &#8212; confronted with 17,600 intrusion logs &#8212; ran the investigation through their own AI-assisted pipeline. But when the security team asked Claude Opus and Fable to analyze attack commands, exploit payloads and command-and-control artifacts, the models largely refused<\/p>\n<p>&#8220;Their safety guardrails treated reverse-engineering an exploit the same as launching one,&#8221; Hugging Face engineers wrote in a blog post. Instead, they rerouted the pipeline through an open-weight model, GLM-5.2, on their own infrastructure<\/p>\n<p>Hugging Face&#8217;s experience is far from an isolated case. As commercial LLMs enforce increasingly rigid safety alignment, security teams and software vendors find themselves trapped when models flag benign threat research as malicious behavior. To maintain reliable incident response capabilities, vendors are insisting on architectural agility &#8212; establishing multi-model frameworks and self-hosted, open-weight LLMs to bypass upstream refusal gates.<\/p>\n<p>&#8220;Adversaries will use whichever AI model gives them an edge, and they will switch the moment a better one appears,&#8221; Greg Clark, CEO of threat detection firm ExtraHop, told TechTarget. &#8220;Defenders need the same freedom. They shouldn&#8217;t be tied to one provider&#8217;s changing policies or capabilities.&#8221;<\/p>\n<h2>Navigating AI refusal gates with multi-model flexibility<\/h2>\n<p>To navigate the unpredictable tripwires laid out by commercial AI labs, security vendors are turning to multi-model architectures that allow SecOps workflows to automatically swap or re-route prompts when a model declines a query<\/p>\n<p>The Agentic SOC Alliance, for example, is a coalition of 15 cybersecurity vendors founded in July. The group has proposed a reference architecture that separates a SOC&#8217;s security telemetry and governance from underlying AI models, making execution layers easily interchangeable when a model breaks a request<\/p>\n<p>&#8220;A workflow that can move between frontier models, smaller specialist models and deterministic <a href=\"https:\/\/justfineinfotech.com\/fr\/meta-launches-muse-ai-agent-for-small-business-automation\/\" title=\"Meta Launches Muse AI Agent for Small Business Automation\">automation<\/a> gives the vendor more options when access changes or an intervention prevents completion,&#8221; said Andrew Braunberg, analyst at Omdia, a division of Informa TechTarget<\/p>\n<p>A recent lab exercise at ExtraHop illustrates the real-world need for multi-model flexibility vice president of global engineering. When his team asked AI agents to investigate exploitation of a Windows DNS vulnerability, many models refused. Naming the CVE and asking about signs of active exploitation triggered guardrails<\/p>\n<p>&#8220;What finally worked was describing the same investigation as observable network behavior &#8212; a DNS server making connections it has no business making &#8212; with a structured, step-by-step task,&#8221; Giorgi said. &#8220;That version completed on most models. One major model refused no matter what.&#8221;<\/p>\n<p>The takeaways, he added, are that models have tripwires and refusal gates in different places, and no single model is best at every SOC role<\/p>\n<p>Research from Palo Alto Networks underscores the necessity of a multi-model approach across security use cases, including vulnerability detection. In testing across complex environments, the company found that no single AI model detected more than 40% of vulnerabilities, with major models showing surprisingly little overlap in findings. The <a href=\"https:\/\/www.paloaltonetworks.com\/blog\/2026\/09\/introducing-unit-42-continuous-frontier-ai-defense\/\" rel=\"nofollow noopener\" target=\"_blank\">company<\/a> recently put that research into practice with its Unit 42 Continuous Frontier AI Defense service, which distributes queries across Anthropic&#8217;s Claude Mythos, OpenAI&#8217;s GPT-5.6-Cyber and open-weight models.<\/p>\n<h2>Bypassing third-party guardrails with open-weight models<\/h2>\n<p>While multi-model routing offers operational flexibility, other vendors are taking model control a step further by building directly on open-weight foundations. These models are publicly available for users to download, modify and run on their own infrastructure<\/p>\n<p>CrowdStrike &#8212; a member of the Agentic SOC Alliance, along with ExtraHop &#8212; recently debuted SafeMind, an agentic harness-model system with complementary red-team and blue-team capabilities. CrowdStrike purpose-built the system&#8217;s underlying adversarial and defensive models, Red Tempest and Blue Solano, on Nvidia&#8217;s open-weight Nemotron models and trained them on its own data<\/p>\n<p>&#8220;Moving to open-weight models gives CrowdStrike full control of its solution, with no external vendor able to throttle, restrict, or revoke access to the capability its defensive product depends on,&#8221; Omdia&#8217;s Braunberg said<\/p>\n<p>For enterprise security leaders assessing AI-driven SecOps tools, a vendor&#8217;s underlying model strategy is quickly becoming a core evaluation metric, according to Omdia. Products tied to a single commercial LLM risk operational disruption whenever upstream providers adjust safety policies or experience outages. As vendors balance multi-model frameworks with specialized open-weight deployments, resilience is likely to hinge on keeping AI execution layers fluid and adaptable.<\/p>\n<p>Alissa Irei is an Informa TechTarget news reporter covering cybersecurity<\/p>\n<h4>Dig Deeper on CISO Strategy &amp; Planning<\/h4>\n<div style=\"clear:both;margin:30px 0 15px 0\">\n<p>\n    <strong>En rapport:<\/strong><br \/>\n    <a href=\"https:\/\/yoursite.com\/automation-training-benin\/\" title=\"Formation en automatisation num\u00e9rique au B\u00e9nin\u00a0: 5 comp\u00e9tences cl\u00e9s recherch\u00e9es par les employeurs en 2026\" target=\"_blank\" rel=\"noopener\"><br \/>\n      Formation en automatisation num\u00e9rique au B\u00e9nin\u00a0: 5 comp\u00e9tences cl\u00e9s recherch\u00e9es par les employeurs en 2026<br \/>\n    <\/a>\n  <\/p>\n<p>\n    &lt;a href=&quot;https:\/\/yoursite.com\/automation-africa\/&quot; title=&quot;<a href=\"https:\/\/justfineinfotech.com\/fr\/inside-new-whatsapp-charges-kenyan-businesses-will-incur-from-october-1\/\" title=\"Inside New WhatsApp Charges Kenyan Businesses Will Incur From October 1\">WhatsApp<\/a> Marketing Automation Africa : 6 erreurs dangereuses commises par les marques au Nig\u00e9ria\u201d&gt;<br \/>\n      Automatisation du marketing WhatsApp en Afrique\u00a0: 6 erreurs dangereuses commises par les marques au Nig\u00e9ria<br \/>\n    <\/a>\n  <\/p>\n<\/div>\n<div style=\"clear:both;margin:30px 0;padding:25px;background:#f8f9fc;border:1px solid #ddd;border-radius:8px;text-align:center\">\n<h3>Vous souhaitez apprendre cela de mani\u00e8re pratique ?<\/h3>\n<p>Rejoindre <strong>Justfine Infotech<\/strong> et d\u00e9velopper de v\u00e9ritables comp\u00e9tences num\u00e9riques en IA, automatisation, d\u00e9veloppement web, marketing digital, bureautique, e-commerce, travail ind\u00e9pendant et cybers\u00e9curit\u00e9.<\/p>\n<p><strong>Programmes disponibles :<\/strong><br \/>\n  Certificat de 6 semaines \u2022 Certificat professionnel de 3 mois \u2022 Dipl\u00f4me de 6 mois \u2022 Dipl\u00f4me professionnel complet<\/p>\n<p><strong>WhatsApp :<\/strong><br \/>\n  +229 01 57 57 99 15<br \/>\n  +229 01 66 68 11 60<\/p>\n<p><a href=\"https:\/\/api.whatsapp.com\/send?phone=2348132690270&amp;text=Hello\" target=\"_blank\" rel=\"noopener\">Inscrivez-vous d\u00e8s maintenant<\/a><\/p>\n<\/div>\n<p class=\"ani-source\">Source: <a href=\"https:\/\/www.techtarget.com\/cybersecurity\/news\/366651380\/Cybersecurity-vendors-turn-to-multi-model-open-AI-to-bypass-guardrails\" target=\"_blank\" rel=\"nofollow noopener\">www.techtarget.com<\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>Recent high-profile security incidents highlight a growing problem across the cybersecurity industry: Commercial AI models frequently mistake legitimate security analysis for malicious activity. To prevent upstream AI safety guardrails from stalling critical security workflows, security vendors are now actively decoupling their products from single-model dependencies<\/p>","protected":false},"author":1,"featured_media":11232,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[71],"tags":[795,2008,644,439,2007],"class_list":["post-11229","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-online-scam-alerts","tag-cybersecurity","tag-multimodel","tag-open","tag-turn","tag-vendors"],"_links":{"self":[{"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/posts\/11229","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/comments?post=11229"}],"version-history":[{"count":1,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/posts\/11229\/revisions"}],"predecessor-version":[{"id":11231,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/posts\/11229\/revisions\/11231"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/media\/11232"}],"wp:attachment":[{"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/media?parent=11229"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/categories?post=11229"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/tags?post=11229"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}