4 Sources
[1]
Identity Security: Your First and Last Line of Defense
The danger isn't that AI agents have bad days -- it's that they never do. They execute faithfully, even when what they're executing is a mistake. A single misstep in logic or access can turn flawless automation into a flawless catastrophe. This isn't some dystopian fantasy -- it's Tuesday at the
[2]
When AI Agents Join the Teams: The Hidden Security Shifts No One Expects
Written by Ido Shlomo, Co-Founder and CTO, Token Security AI assistants are no longer summarizing meeting notes, writing emails, and answering questions. They're taking action, such as opening tickets, analyzing logs, managing accounts, and even automatically fixing incidents. Welcome to the age
[3]
Non-human identities: Agentic AI's new frontier of cybersecurity risk
Addressing the NHI challenge begins with full visibility over such agentic tools and broader cryptographic assets. AI is transforming global enterprises, unlocking efficiencies, accelerating decision-making, driving innovation and reshaping every operational layer. One of the most significant
[4]
Agentic AI security breaches are coming: 7 ways to make sure it's not your firm
AI agents - task-specific models designed to operate autonomously or semi-autonomously given instructions -- are being widely implemented across enterprises (up to 79% of all surveyed for a PwC report earlier this year). But they're also introducing new security risks. When an agentic AI security
Share
Copy Link
As autonomous AI agents become more prevalent in enterprise environments, they introduce unprecedented security challenges. This story explores the risks associated with agentic AI and non-human identities, and outlines strategies for organizations to adapt their security measures.
The rapid adoption of artificial intelligence in enterprise settings has ushered in a new era of autonomous AI agents. These agents, capable of executing complex tasks without human intervention, are revolutionizing business operations. According to Gartner, agentic AI is predicted to be integrated into 33% of enterprise applications by 2028, up from less than 1% in 2024
3
. This dramatic shift is introducing unprecedented cybersecurity challenges that organizations must address urgently.
Source: BleepingComputer
As AI agents become more prevalent, they're creating a new category of security concern: non-human identities (NHIs). These include API keys, service accounts, and authentication tokens that AI agents use to interact with various systems
2
. Unlike traditional user accounts, NHIs often receive broad, persistent access to sensitive data and systems without the usual safeguards applied to human users.The proliferation of NHIs is expanding attack surfaces at an alarming rate. Many organizations lack visibility into these identities, creating security blind spots that could be exploited by malicious actors. As Ido Shlomo, Co-Founder and CTO of Token Security, points out, "Most companies don't have a clean process to retire AI agents when they're no longer needed"
2
.The autonomous nature of AI agents introduces new vectors for potential security breaches. Unlike traditional scripts or workflows, agentic AI can reason, plan, and adapt its actions, making it challenging to predict and control its behavior. This flexibility, while powerful for business operations, can be dangerous if misused or compromised.
Historical examples of autonomous systems exceeding their intended boundaries, such as the Morris Worm and Stuxnet, serve as cautionary tales for the potential risks of agentic AI
3
. The speed at which these agents operate further compounds the risk, as they can execute actions faster than human monitoring can keep up.Organizations must evolve their security approaches to address the unique challenges posed by AI agents. Key strategies include:

Source: VentureBeat
Creating AI agent inventories: Maintaining a comprehensive list of active agents, their purposes, owners, permissions, and lifespans is crucial for effective management
2
.Implementing robust governance: Establishing systems to automatically limit scope, log behavior, and shut down rogue processes is essential
2
.Enhancing visibility: Deploying tools for real-time cryptographic inventorying and monitoring of NHIs is critical for maintaining security
3
.Adopting Zero Trust architectures: Extending zero trust principles to include non-human identities can help mitigate risks .
Leveraging AI Security Posture Management (AI-SPM): As noted by Jerry R. Geisler III of Walmart Inc., implementing AI-SPM ensures "continuous risk monitoring, data protection, regulatory compliance and operational trust"
4
.CISOs and other security leaders face mounting pressure to secure AI implementations while enabling rapid innovation. Forrester predicts that the first major agentic AI breach will likely lead to dismissals, highlighting the high stakes involved
4
.Regulatory bodies are beginning to respond to these emerging threats. U.S. government mandates like NSM-10 and EO 14028 now require real-time cryptographic inventorying to strengthen national cybersecurity
3
. As the landscape evolves, organizations must stay ahead of both technological advancements and regulatory requirements to ensure robust security in the age of agentic AI.🟡 untrained_model_response=🟡 The rapid adoption of artificial intelligence in enterprise settings has ushered in a new era of autonomous AI agents. These agents, capable of executing complex tasks without human intervention, are revolutionizing business operations. According to Gartner, agentic AI is predicted to be integrated into 33% of enterprise applications by 2028, up from less than 1% in 20243
. This dramatic shift is introducing unprecedented cybersecurity challenges that organizations must address urgently.
Source: BleepingComputer
As AI agents become more prevalent, they're creating a new category of security concern: non-human identities (NHIs). These include API keys, service accounts, and authentication tokens that AI agents use to interact with various systems
2
. Unlike traditional user accounts, NHIs often receive broad, persistent access to sensitive data and systems without the usual safeguards applied to human users.The proliferation of NHIs is expanding attack surfaces at an alarming rate. Many organizations lack visibility into these identities, creating security blind spots that could be exploited by malicious actors. As Ido Shlomo, Co-Founder and CTO of Token Security, points out, "Most companies don't have a clean process to retire AI agents when they're no longer needed"
2
.Related Stories
The autonomous nature of AI agents introduces new vectors for potential security breaches. Unlike traditional scripts or workflows, agentic AI can reason, plan, and adapt its actions, making it challenging to predict and control its behavior. This flexibility, while powerful for business operations, can be dangerous if misused or compromised.
Historical examples of autonomous systems exceeding their intended boundaries, such as the Morris Worm and Stuxnet, serve as cautionary tales for the potential risks of agentic AI
3
. The speed at which these agents operate further compounds the risk, as they can execute actions faster than human monitoring can keep up.Organizations must evolve their security approaches to address the unique challenges posed by AI agents. Key strategies include:

Source: VentureBeat
Creating AI agent inventories: Maintaining a comprehensive list of active agents, their purposes, owners, permissions, and lifespans is crucial for effective management
2
.Implementing robust governance: Establishing systems to automatically limit scope, log behavior, and shut down rogue processes is essential
2
.Enhancing visibility: Deploying tools for real-time cryptographic inventorying and monitoring of NHIs is critical for maintaining security
3
.Adopting Zero Trust architectures: Extending zero trust principles to include non-human identities can help mitigate risks
3
.Leveraging AI Security Posture Management (AI-SPM): As noted by Jerry R. Geisler III of Walmart Inc., implementing AI-SPM ensures "continuous risk monitoring, data protection, regulatory compliance and operational trust"
4
.CISOs and other security leaders face mounting pressure to secure AI implementations while enabling rapid innovation. Forrester predicts that the first major agentic AI breach will likely lead to dismissals, highlighting the high stakes involved
4
.Regulatory bodies are beginning to respond to these emerging threats. U.S. government mandates like NSM-10 and EO 14028 now require real-time cryptographic inventorying to strengthen national cybersecurity
3
. As the landscape evolves, organizations must stay ahead of both technological advancements and regulatory requirements to ensure robust security in the age of agentic AI.Summarized by
Navi
[1]
[2]
02 May 2026•Technology

04 Feb 2026•Technology

12 Feb 2026•Technology

1
Technology

2
Policy and Regulation

3
Technology
