Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
Back to intelligence
ai-platform-securityidentity-authentication-vulnerabilitycloud-service-vulnerability

Security Risks From Autonomous AI Agents and Multi-Agent Orchestration

Updated 3mo agoFirst seen Feb 13, 20266 sources

Organizations expanding agentic AI deployments are facing a growing security challenge as autonomous agents begin executing workflows, generating code, and moving sensitive data across SaaS, genAI apps, cloud, on-prem, endpoints, and email at machine speed. As multiple agents are introduced for different business processes, they increasingly interact with each other, amplifying the attack surface and creating new failure modes that traditional controls were not designed to handle.

Security leaders are being pushed to treat identity and data security as a unified problem because AI agents operate across both domains simultaneously—accessing systems while also creating, transforming, and transmitting sensitive information, sometimes without a human in the loop. The emergence of open-source/self-hosted agents and commercial orchestration “command centers” for managing agent swarms further increases complexity, making governance, monitoring, and context-aware policy enforcement critical to prevent blind spots and limit the blast radius of compromised agents or unsafe agent behaviors.

Share:
Security Risks From Autonomous AI Agents and Multi-Agent Orchestration
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

5 events from the most recent confirmed update back to the earliest known activity.

5 EVENTS
Feb 20, 20264mo ago

Practical governance framework proposed for agentic AI in enterprises

A February 20 analysis said existing frameworks such as NIST AI RMF, ISO 42001, and the EU AI Act do not explicitly address agentic AI, leaving a governance gap as enterprises adopt autonomous agents and multi-agent systems. It proposed embedding continuous controls into agent lifecycles, with visibility, machine identities, least privilege, runtime monitoring, tiered oversight, and supply-chain scrutiny for agent plugins and SaaS-based agents.

Feb 17, 20264mo ago

KnowBe4 describes enterprise security boundary as blurred by human+AI work

A KnowBe4 blog post argued that traditional security models based on a clear line between internal users and external threats are breaking down as employees and AI assistants work together. It warned of shadow AI, AI-driven privacy and legal risks, and called for behavior-based controls and governance of decisions regardless of whether humans or AI make them.

Feb 16, 20264mo ago

Torq field CISO says CISOs are now accountable for AI-agent outcomes

In a February 16 interview, John White of Torq said agentic AI has created a hybrid workforce in which CISOs remain accountable for both AI-agent actions and failures to adopt machine-speed defenses. He argued that organizations must prioritize governable autonomous operation, compensating controls, and resilience over backward-looking risk quantification.

Feb 13, 20264mo ago

Dark Reading highlights new risks from multi-agent AI 'swarms'

Dark Reading reported that enterprises scaling from single assistants to orchestrated swarms of autonomous agents face increased attack surface and security complexity. The article identified risks such as credential sprawl, over-privileged tool access, prompt injection, trust-cascade compromise, and data leakage across integrations, alongside mitigations like least privilege, isolation, and logging.

Security outlets begin warning that agentic AI is reshaping enterprise risk

Multiple February 2026 analyses argued that widespread use of generative and agentic AI is changing how identity, data, and operational risk materialize, especially as AI systems act across environments without direct human oversight. These pieces framed AI adoption as a current security governance challenge rather than a future-only concern.

LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

24 LINKEDOpen in app
Threat actors
1 linked
Affected products
7 linked
ServicenowClaude CodeCursorIpadChatgptChatgptGmail
Organizations
16 linked
AnthropicServicenowAT&TInternational Business MachinesCloud Security AllianceDark ReadingZapierTorqDarktraceGitHubTinesSalt SecurityGoogleAlamyHelp Net SecurityAcalvio
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.