The attack surface isn't AI — it's the documents AI processes. Prompt injection in discovery, adversarial inputs delivered through Rule 34 productions, and the cybersecurity gaps firms create by piping untrusted content through LLM pipelines.
Krafton's CEO bypassed his lawyers and asked ChatGPT how to avoid a $250 million payout. A Delaware court used those chat logs to rule against him — and the case is a warning to every executive treating a chatbot as a confidential advisor.
Federal courts are working out how attorney-client privilege and work product apply to AI prompts. The doctrine hasn't changed — *Hickman*, *Upjohn*, and *Kovel* still control. Here's how each case applies the existing elements.