The guide on blocking ChatGPT, Gemini, Claude, and other AI tools at work | Kaspersky official blog
How to shut down unauthorized AI tools and block user access across a corporate network.
AI Analysis
Technical Summary
The Kaspersky blog post provides detailed technical guidance on how organizations can detect and block unauthorized AI tools and services on corporate networks and devices. It covers network-level detection via next-generation firewalls (NGFW) and web filters monitoring traffic to known AI service domains, endpoint detection using EDR/EPP tools to scan for AI-related applications and browser extensions, and policy enforcement through browser and application controls. The guide includes specific instructions for blocking popular AI tools such as ChatGPT, Claude, Perplexity AI, DeepSeek, Slack AI, Zoom AI Companion, Grammarly, AI meeting assistants, AI code editors, local AI tools, and autonomous AI agents. It highlights the security risks posed by unauthorized AI use, including data leaks and potential cyberattacks on local AI applications. The document is advisory and does not describe a software vulnerability or exploit. No patch or remediation is applicable as this is a security policy and detection guide rather than a vulnerability report.
Potential Impact
The impact described is the risk of data leaks and security breaches resulting from unauthorized use of AI tools in corporate environments. Employees may inadvertently expose sensitive company data to public AI services or install unapproved AI applications that could be insecure or exploited. The guide does not describe a software vulnerability or direct exploitation but focuses on the operational risk of shadow AI usage leading to potential data exposure and compliance issues.
Mitigation Recommendations
This is a security best practices guide rather than a vulnerability with a patch. Organizations should implement the recommended detection and blocking strategies using NGFWs, web filters, DNS rerouting, EDR/EPP tools, browser policies, application allowlisting, and mobile device management (MDM) to restrict unauthorized AI tools. Blocking known AI service domains and applications, enforcing strict extension policies, and auditing meeting participants for AI bots are advised. The guide also recommends providing approved AI alternatives to reduce users seeking unauthorized services. No official patch or fix is applicable.
The guide on blocking ChatGPT, Gemini, Claude, and other AI tools at work | Kaspersky official blog
Description
How to shut down unauthorized AI tools and block user access across a corporate network.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Kaspersky blog post provides detailed technical guidance on how organizations can detect and block unauthorized AI tools and services on corporate networks and devices. It covers network-level detection via next-generation firewalls (NGFW) and web filters monitoring traffic to known AI service domains, endpoint detection using EDR/EPP tools to scan for AI-related applications and browser extensions, and policy enforcement through browser and application controls. The guide includes specific instructions for blocking popular AI tools such as ChatGPT, Claude, Perplexity AI, DeepSeek, Slack AI, Zoom AI Companion, Grammarly, AI meeting assistants, AI code editors, local AI tools, and autonomous AI agents. It highlights the security risks posed by unauthorized AI use, including data leaks and potential cyberattacks on local AI applications. The document is advisory and does not describe a software vulnerability or exploit. No patch or remediation is applicable as this is a security policy and detection guide rather than a vulnerability report.
Potential Impact
The impact described is the risk of data leaks and security breaches resulting from unauthorized use of AI tools in corporate environments. Employees may inadvertently expose sensitive company data to public AI services or install unapproved AI applications that could be insecure or exploited. The guide does not describe a software vulnerability or direct exploitation but focuses on the operational risk of shadow AI usage leading to potential data exposure and compliance issues.
Mitigation Recommendations
This is a security best practices guide rather than a vulnerability with a patch. Organizations should implement the recommended detection and blocking strategies using NGFWs, web filters, DNS rerouting, EDR/EPP tools, browser policies, application allowlisting, and mobile device management (MDM) to restrict unauthorized AI tools. Blocking known AI service domains and applications, enforcing strict extension policies, and auditing meeting participants for AI bots are advised. The guide also recommends providing approved AI alternatives to reduce users seeking unauthorized services. No official patch or fix is applicable.
Technical Details
- Article Source
- {"url":"https://www.kaspersky.com/blog/how-to-detect-disable-shadow-ai-in-enterprise/55952/","fetched":true,"fetchedAt":"2026-06-10T16:47:25.027Z","wordCount":2148}
Threat ID: 6a29951dc9170919df3cb40a
Added to database: 06/10/2026, 16:47:25 UTC
Last enriched: 06/10/2026, 16:47:33 UTC
Last updated: 07/31/2026, 12:24:30 UTC
Views: 352
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.