Research commissioned by Cequence Security found that 65% of 202 enterprise technology and security leaders have seen AI agents act outside their intended roles, and 29% reported measurable business impact. Although 94% of respondents believe their agents have no unnecessary access, only 33% said agents are provisioned according to least-privilege principles, exposing a substantial gap between perceived and actual access governance.
Organizations reported limited ability to authorize agent actions in real time, automatically detect and contain improper activity, or produce complete 30-day agent audit trails. Unmanaged non-human identities, incomplete agent inventories, unrestricted connections to external tools or data, and credentials left behind after paused AI pilots compound the risk. The report recommends treating agents as governed non-human identities, with runtime authorization, continuous monitoring, auditable activity records, automated containment, human approval for high-risk actions, and decommissioning processes that revoke credentials and permissions.

Track how attackers are adapting to this technology.
1 event from the most recent confirmed update back to the earliest known activity.
Cequence Security and Enterprise Management Associates published research finding that 65% of surveyed enterprises had AI agents act outside their intended scope and 29% reported measurable organizational impact. The report found that only about one-third of organizations provisioned AI agents with least-privilege access and identified gaps in runtime authorization, automated containment, auditing, identity management, and decommissioning.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
3 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourceinfosecurity-magazine.com
Open sourcesecuritymagazine.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.