:

INSURERS CAP PAYOUTS FOR AI AND LLMJACKING LOSSES

AI DESK1 MIN READ
WED, APR 22, 2026

■ AI-SUMMARIZED FROM 1 SOURCE BELOW

Major cyber insurers including QBE and Beazley are limiting coverage for losses and regulatory fines tied to artificial intelligence use and LLMjacking attacks, citing rapid technological advancement and emerging risks.

The insurance industry is moving to restrict payouts for damages stemming from AI deployment and LLMjacking—attacks involving the hijacking of large language models—according to documents reviewed by the Financial Times. QBE and Beazley, among other carriers, are implementing caps on cyber policy coverage for losses and regulatory penalties linked to AI systems. The shift reflects growing uncertainty around liability exposure as AI technology evolves faster than risk assessment frameworks. LLMjacking represents a nascent threat where attackers compromise AI models to generate malicious outputs or extract sensitive data. Insurers lack sufficient historical data to accurately price these risks, prompting them to establish financial guardrails. The moves signal insurers' cautiousness about underwriting AI-related claims while the technology and its regulatory landscape remain fluid. Organizations relying on AI systems may face reduced coverage options or higher premiums as the industry recalibrates its risk models.

■ SOURCES

Techmeme

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

A new Linux variant of the GoGra backdoor exploits Microsoft's legitimate infrastructure to evade detection, using Outlook inboxes as a covert command-and-control channel for payload delivery.

JUST NOWDev Desk

A small group of unauthorized users gained access to Anthropic's Mythos cybersecurity AI model through a third-party contractor portal, according to Bloomberg. The company is investigating the breach but says there is no evidence its systems were compromised.

JUST NOWAI Desk

GrapheneOS, widely regarded as the gold standard in mobile security, emerged from a legal dispute between lead developer Daniel Micay and his former partner James Donaldson over CopperheadOS ownership.

6H AGODev Desk

UK cybersecurity officials report that state-linked hackers from Iran and China are responsible for most "nationally significant" cyberattacks targeting British infrastructure and institutions.

9H AGOSecurity Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.