Auth0 Streamcast Episode 2: Stop experimenting with AI, start shipping
In 2026, agentic AI's rapid enterprise adoption has made it the top cybersecurity threat, with unsecured autonomous agents risking massive data breaches and operational chaos.
Key takeaways
- •Nearly half of cybersecurity professionals rank agentic AI as the primary attack vector for 2026 due to its elevated permissions and autonomous operations.
- •Organizations without AI governance face $670,000 higher breach costs on average, as agentic systems amplify risks like data exposure and unauthorized actions.
- •Definitional ambiguity around agentic AI creates governance gaps, leading to mismatched capabilities and unaddressed risks in national security contexts.
Agentic AI Risks
Agentic AI, systems that autonomously execute tasks across networks, has exploded in adoption since late 2025. Polls show 48% of security experts viewing it as the biggest threat vector for 2026, surpassing deepfakes and ransomware. This shift stems from enterprises deploying agents for efficiency in areas like customer service and data management, often without adequate safeguards.
Recent developments include frameworks like OWASP's Top 10 for Agentic Applications, released in December 2025, highlighting vulnerabilities such as prompt injection and memory poisoning. These threats allow attackers to hijack agents, turning trusted tools into insider risks. With non-human identities outnumbering humans 50:1 in systems, the attack surface has expanded exponentially.
Enterprises, particularly in finance and healthcare, bear the brunt. Agents handling money transfers or health data can lead to leaks affecting millions. IBM's 2025 report notes 63% of breached organizations lack AI policies, adding $670,000 to average breach costs. The EU AI Act's high-risk enforcement starts August 2, 2026, with fines up to €15 million or 3% of global turnover for non-compliance.
Less obvious tensions arise from agentic AI's definitional vagueness. What qualifies as 'agentic' varies, from simple assistants to combat systems, complicating procurement and evaluation. This ambiguity risks deploying over-permissioned agents, eroding accountability. Trade-offs include balancing autonomy for efficiency against human oversight to prevent cascades, where one agent's failure triggers others.
Stakeholders clash: developers push for innovation, while regulators demand controls. McKinsey warns of amplified risks to confidentiality and availability. Non-obvious angles include 'logical bifurcation points,' where subtle manipulations redirect reasoning without detection, and the irony that conflicting ethical metrics enhance robustness by preventing overfitting.
Sources
- https://www.kiteworks.com/cybersecurity-risk-management/agentic-ai-attack-surface-enterprise-security-2026
- https://www.darkreading.com/threat-intelligence/2026-agentic-ai-attack-surface-poster-child
- https://stellarcyber.ai/learn/agentic-ai-securiry-threats
- https://www.csis.org/analysis/lost-definition-how-confusion-over-agentic-ai-risks-governance
- https://www.moxo.com/blog/agentic-ai-security-risks
- https://www.mckinsey.com/capabilities/risk-and-resilience/our-insights/deploying-agentic-ai-with-safety-and-security-a-playbook-for-technology-leaders
- https://medium.com/@oracle_43885/owasps-ai-agent-security-top-10-agent-security-risks-2026-fc5c435e86eb
- https://www.paloaltonetworks.com/blog/2026/02/securing-the-agentic-endpoint
- https://zenity.io/blog/current-events/securing-ai-where-it-acts-why-agents-now-define-ai-risk
- https://www.menlosecurity.com/blog/predictions-for-2026-why-ai-agents-are-the-new-insider-threat
- https://www.proofpoint.com/us/blog/ciso-perspectives/cybersecurity-2026-agentic-ai-cloud-chaos-and-human-factor
- https://cygeniq.ai/blog/what-is-ai-security-and-why-enterprises-cant-ignore-it
- https://www.splunk.com/en_us/blog/leadership/security-predictions-2026-what-agentic-ai-means-for-the-people-running-the-soc.html
- https://cloudsecurityalliance.org/blog/2026/01/16/my-top-10-predictions-for-agentic-ai-in-2026
- https://thrivenextgen.com/what-agentic-ai-means-for-it-security-and-risk-in-2026
- https://blog.denexus.io/resources/ai-agents-in-cybersecurity-and-cyber-risk-management-5-critical-trends-for-2026
- https://www.startupdefense.io/blog/owasp-top-10-agentic-ai-security-risks-2026
- https://www.dwt.com/blogs/artificial-intelligence-law-advisor/2026/01/roadmap-for-managing-risks-unique-to-agentic-ai
- https://aembit.io/blog/agentic-ai-cybersecurity-risks-security-guide
- https://arxiv.org/html/2504.19956v2
- https://medium.com/@adnanmasood/hardening-ai-systems-security-robustness-and-safety-for-generative-agentic-ai-25143142edb8
- https://neurips.cc/virtual/2025/poster/121938
- https://arxiv.org/html/2410.01927v1
- https://ai.plainenglish.io/agentic-ai-agent-autonomy-tools-reasoning-and-memory-with-graph-empowerment-5790336ffc3c
- https://toloka.ai/blog/the-new-frontier-of-cybersecurity-a-guide-to-ai-agent-security
- https://www-cdn.anthropic.com/4263b940cabb546aa0e3283f35b686f4f3b2ff47.pdf
- https://aws.amazon.com/blogs/security/the-agentic-ai-security-scoping-matrix-a-framework-for-securing-autonomous-ai-systems
- https://www.oreilly.com/radar/conductors-to-orchestrators-the-future-of-agentic-coding
- https://www.complianceweek.com/opinion/agentic-ai-and-the-policy-blind-spot-why-security-cant-wait/36309.article
- https://disesdi.substack.com/p/60000-ways-to-get-ai-agents-wrong
- https://cyberstrategyinstitute.com/2026-ai-outcomes
- https://www.strata.io/blog/agentic-identity/8-strategies-for-ai-agent-security-in-2025
- https://medium.com/@mohit15856/agentic-ai-in-2026-the-year-autonomous-agents-crossed-the-chasm-a24b4ace3df7
- https://www.forbes.com/councils/forbestechcouncil/2026/01/23/five-ai-security-trends-to-watch-in-2026
- https://www.nylas.com/agentic-ai-report-2026
- https://www.kiteworks.com/cybersecurity-risk-management/2026-data-security-forecast-ai-governance-predictions
- https://aws.amazon.com/blogs/machine-learning/evaluating-ai-agents-real-world-lessons-from-building-agentic-systems-at-amazon
- https://cpatrendlines.com/2026/01/10/outlook-2026-agentic-ai-reaches-the-tipping-point-in-tax-and-accounting-firms?srsltid=AfmBOorjmbfrYeXCUh9miK6_jY_FvDJimPKE5YF6dAUiTVq6DjKBwjVY
- https://www.linkedin.com/pulse/agentic-ai-security-2026-every-major-platform-has-ravindran-dsm3e
You might also like
- Feb 24Okta Streamcast Episode 2 | The shadow AI takeover: When autonomous agents become your biggest attack surface
- Mar 5Getting Started with AI Agents
- Mar 10Proofpoint Certified AI Agent Security Specialist 2026 - Session 1: The Agentic Workspace: Transformative Capabilities, Serious New Risks
- Mar 11Proofpoint Certified AI Agent Security Specialist 2026 - Session 2
- Mar 12Proofpoint Certified AI Agent Security Specialist 2026 - Session 3