{"id":2657,"date":"2026-07-16T19:02:00","date_gmt":"2026-07-16T19:02:00","guid":{"rendered":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/"},"modified":"2026-07-21T18:59:03","modified_gmt":"2026-07-21T18:59:03","slug":"the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials","status":"publish","type":"post","link":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/","title":{"rendered":"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials"},"content":{"rendered":"<p><br \/>\n<br \/><img decoding=\"async\" src=\"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=300&amp;q=30\" \/><\/p>\n<div>\n<p>Throughout 107 enterprises, AI brokers are being given actual entry to techniques and information whereas the controls meant to include them lag behind. Greater than half have already had a confirmed agent safety incident or a near-miss; solely a couple of third give each agent its personal scoped id, and most brokers nonetheless share credentials; and solely three in ten isolate their highest-risk brokers. The safety stack is overwhelmingly borrowed from the mannequin suppliers and hyperscalers reasonably than purpose-built for brokers, spending stays a skinny slice of the safety funds, and enterprises are evenly cut up on whether or not their defenses are conserving tempo with AI-enabled attackers. The result&#8217;s an agent safety hole \u2014 autonomous brokers proliferating sooner than the id, isolation, and enforcement controls wanted to carry them.<\/p>\n<p>This wave of VentureBeat Pulse Analysis examines how enterprises safe their AI brokers: what tooling they run, how they handle agent id and isolation, what has already gone incorrect, how a lot they spend, and whether or not they imagine their defenses are conserving tempo with AI-enabled attackers.<\/p>\n<p>The central discovering is an agent safety hole \u2014 the space between the autonomy enterprises are granting their brokers and the controls in place to include them. Greater than half of organizations (54%) have already skilled a confirmed agent safety incident (18%) or a near-miss caught earlier than hurt (36%). The structural weak spot beneath these numbers is id: solely a couple of third (32%) give each agent its personal scoped, managed id, whereas the remainder report that some brokers share credentials or that brokers largely run on shared API keys and human or service-account credentials. When brokers share credentials, a single compromised or over-permissioned agent carries a large blast radius \u2014 and solely three in ten enterprises (30%) isolate their highest-risk brokers in sandboxes to certain that radius.<\/p>\n<p>What makes the hole notable is how comfy enterprises are inside it. The safety stack is overwhelmingly provider-native \u2014 OpenAI\u2019s guardrails (51%), Google\u2019s and Microsoft\u2019s cloud controls, and Anthropic\u2019s managed-agent controls dominate, whereas the devoted agent-security specialists barely register \u2014 and satisfaction with that borrowed stack is excessive, averaging 4.2 out of 5. But spending stays a skinny slice of the safety funds, solely a 3rd of enterprises imagine their AI defenses are forward of AI-enabled attackers, and a transparent majority plan to alter tooling inside the 12 months. Enterprises are glad with controls they&#8217;re concurrently making ready to switch.<\/p>\n<h2>Methodology<\/h2>\n<p>VentureBeat fielded this survey as a part of its ongoing Pulse Analysis sequence, this instrument centered on enterprise agent safety \u2014 the tooling, id, isolation, and enforcement controls organizations use to safe autonomous AI brokers. Responses are filtered to organizations with greater than 100 staff (n=107; the survey\u2019s smallest measurement band, 1\u2013100 staff, is excluded), drawn from a single June 2026 wave. As a result of that is one wave reasonably than a pooled multi-month pattern, the report reads cross-sectionally and doesn&#8217;t infer month-over-month developments. A number of questions have been multiple-select, so these shares can sum to greater than 100%.<\/p>\n<p>By function the pattern is senior and buyer-credible: 45% are last decision-makers for AI purchases and one other 30% recommenders or influencers. Managers (43%), particular person contributors (24%), VPs and administrators (15%), and the C-suite (11%) make up the seniority combine. By group measurement the pattern is mid-market-weighted: 251\u20131,000 (42%) and 101\u2013250 (25%) staff lead, with 1,001\u20135,000 (19%), 5,001\u201310,000 (8%), and 10,001+ (7%) above them. Know-how\/Software program is the most important trade at 23%, adopted by Manufacturing (15%), Retail\/E-commerce (14%), and Healthcare\/Life Sciences (13%).<\/p>\n<p>At 107 respondents the pattern is giant sufficient to learn directionally however ought to be handled as a directional sign reasonably than a exact measurement; it&#8217;s self-selected and isn&#8217;t a chance pattern. It skews towards the mid-market, so it&#8217;s best learn because the view from organizations actively standing up agent safety reasonably than from the most important operators.<\/p>\n<p>Satisfaction scores are computed on the respondents who answered every ranking query; the general satisfaction rating displays 82 of the 107 certified respondents.<\/p>\n<h2>Discovering 1: The incidents are already right here<\/h2>\n<p>Greater than half have had an agent safety incident or near-miss<\/p>\n<p>We requested whether or not organizations had skilled an agent safety incident \u2014 a confirmed breach, or a near-miss caught earlier than hurt. Most that run brokers in manufacturing had.<\/p>\n<div>\n<div style=\"margin-bottom: 2.5rem;\">\n<p style=\"font-size: 11px; font-weight: 700; letter-spacing: 0.08em; color: #DC2626; text-transform: uppercase; margin: 0 0 12px;\">Discovering 1 \u2014 The incidents are already right here<\/p>\n<div style=\"display: grid; grid-template-columns: repeat(auto-fit, minmax(220px, 1fr)); gap: 10px;\">\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>42%<\/p>\n<p>no such incident recognized<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>36%<\/p>\n<p>sure \u2014 a near-miss caught earlier than hurt<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>18%<\/p>\n<p>sure \u2014 a confirmed incident<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>5%<\/p>\n<p>not relevant \u2014 no brokers in manufacturing; 2% don\u2019t monitor this<\/p>\n<\/p><\/div><\/div><\/div>\n<\/div>\n<p>That is the report\u2019s defining quantity. Greater than half of organizations (54%) have already had an agent safety occasion \u2014 18% a confirmed incident and 36% a near-miss caught earlier than it brought about hurt. Solely 42% report nothing, and a small the rest both run no brokers in manufacturing or don\u2019t monitor such occasions. That so many report near-misses reasonably than solely confirmed incidents is telling: enterprises are catching issues, however they&#8217;re catching them near the sting. The controls examined in the remainder of this report \u2014 id, isolation, enforcement \u2014 are what decide whether or not the subsequent near-miss stays a near-miss.<\/p>\n<p>Publicity scales with firm measurement, however containment doesn&#8217;t. The incident-or-near-miss price rises from 49% within the mid-market (corporations with 101-1,000 staff) to 63% at bigger enterprises (above 1,000 staff), whereas sandbox isolation of high-risk brokers falls from 35% to twenty%, and satisfaction with safety tooling drops from 4.36 to three.97. The organizations working probably the most brokers throughout probably the most techniques carry probably the most incidents and the least of the one management that bounds an incident&#8217;s blast radius.<\/p>\n<h2>Discovering 2: The id hole<\/h2>\n<p>Solely a 3rd give each agent its personal scoped id<\/p>\n<p>We requested how enterprises handle the id of their AI brokers \u2014 whether or not every agent has its personal credentials, or brokers share them. Full per-agent id is the exception.<\/p>\n<div>\n<div style=\"margin-bottom: 2.5rem;\">\n<p style=\"font-size: 11px; font-weight: 700; letter-spacing: 0.08em; color: #DC2626; text-transform: uppercase; margin: 0 0 12px;\">Discovering 2 \u2014 The id hole<\/p>\n<div style=\"display: grid; grid-template-columns: repeat(auto-fit, minmax(220px, 1fr)); gap: 10px;\">\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>48%<\/p>\n<p>some brokers have scoped identities, however many nonetheless share credentials<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>32%<\/p>\n<p>every agent has its personal scoped, managed id<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>32%<\/p>\n<p>brokers largely run on shared API keys or human \/ service-account credentials<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>7%<\/p>\n<p>not relevant \u2014 no brokers in manufacturing; 5% don\u2019t know<\/p>\n<\/p><\/div><\/div><\/div>\n<\/div>\n<p>Rolled collectively, the overlapping solutions present 69% of enterprises (74 of 107) with credential sharing someplace within the agent fleet. Id is the structural weak spot beneath the incidents. Solely a couple of third of enterprises (32%) give each agent its personal scoped, managed id \u2014 the precondition for least-privilege entry and clear attribution. Almost half (48%) say some brokers have scoped identities however many nonetheless share credentials, and one other 32% say brokers largely run on shared API keys or borrowed human and service-account credentials. (Respondents might describe a couple of sample throughout their agent fleet, so these overlap.) <\/p>\n<p>The consequence is direct: when brokers share credentials, an over-permissioned or compromised agent can act with much more attain than supposed, and forensics after an incident can not cleanly inform which agent did what. The non-human id drawback \u2014 giving each agent its personal ruled id \u2014 is the only largest unfinished piece of enterprise agent safety.<\/p>\n<p>Furthermore, an organization\u2019s agent credential posture is correlated with incidents. Organizations with credential sharing anyplace within the fleet have been hit \u2014 with an incident or a near-miss prior to now twelve months \u2014 at 63.5% (47 of 74). Organizations the place each agent carries its personal scoped id have been hit at 40.9% (9 of twenty-two). The fully-scoped group is small, so for now the connection is an affiliation reasonably than confirmed causation, and the hole is concentrated within the mid-market \u2014 however inside a single survey, a twenty-three level distinction in incident price suggests significance.<\/p>\n<h2>Discovering 3: Observe and implement, however hardly ever isolate<\/h2>\n<p>Solely three in 10 sandbox their highest-risk brokers<\/p>\n<p>We requested what a company\u2019s agent safety posture seems like in apply \u2014 whether or not they observe, implement, isolate, or some mixture. The management that bounds harm is the least frequent.<\/p>\n<div>\n<div style=\"margin-bottom: 2.5rem;\">\n<p style=\"font-size: 11px; font-weight: 700; letter-spacing: 0.08em; color: #DC2626; text-transform: uppercase; margin: 0 0 12px;\">Discovering 3 \u2014 Observe and implement, however hardly ever isolate<\/p>\n<div style=\"display: grid; grid-template-columns: repeat(auto-fit, minmax(220px, 1fr)); gap: 10px;\">\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>49%<\/p>\n<p>implement \u2014 brokers have scoped identities and permissions, enforced at runtime<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>47%<\/p>\n<p>observe \u2014 they monitor and log agent exercise, however runtime enforcement is proscribed<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>30%<\/p>\n<p>isolate \u2014 high-risk brokers run sandboxed, with bounded blast radius if controls fail<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>6%<\/p>\n<p>don\u2019t know; 5% haven&#8217;t any devoted agent safety program but<\/p>\n<\/p><\/div><\/div><\/div>\n<\/div>\n<p>Monitoring and enforcement are moderately frequent; containment shouldn&#8217;t be. Roughly half of enterprises observe agent exercise (47%) or implement scoped permissions at runtime (49%), however solely 30% isolate their highest-risk brokers in sandboxes that certain the blast radius when the opposite controls fail. That ordering is backwards from a defense-in-depth standpoint: statement tells you what occurred, enforcement tries to forestall it, however isolation is what limits the harm when prevention fails \u2014 and it&#8217;s the management enterprises have adopted least. Mixed with the id hole in Discovering 2, the image is of brokers which can be watched and permissioned however hardly ever boxed in, which is exactly the configuration through which a single failure propagates.<\/p>\n<h2>Discovering 4: Safety runs on borrowed, provider-native controls<\/h2>\n<p>Guardrails from OpenAI, Google and Microsoft dominate; specialists barely register<\/p>\n<p>We requested which agent safety tooling enterprises use, and which is their major layer. The reply favors the mannequin suppliers and hyperscalers over the devoted safety distributors.<\/p>\n<div>\n<div style=\"margin-bottom: 2.5rem;\">\n<p style=\"font-size: 11px; font-weight: 700; letter-spacing: 0.08em; color: #DC2626; text-transform: uppercase; margin: 0 0 12px;\">Discovering 4 \u2014 Safety runs on borrowed, provider-native controls<\/p>\n<div style=\"display: grid; grid-template-columns: repeat(auto-fit, minmax(220px, 1fr)); gap: 10px;\">\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>51%<\/p>\n<p>use OpenAI\u2019s built-in guardrails; 36% Google Cloud controls; 35% Microsoft Azure (Purview \/ Copilot Studio DLP); 29% Anthropic\u2019s managed-agent controls<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>13%<\/p>\n<p>Microsoft Entra Agent ID; 10% AWS Bedrock Guardrails<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>8%<\/p>\n<p>every makes use of open-source guardrails, Cloudflare, and Cisco; the devoted specialists (Palo Alto, CrowdStrike, Zenity, HiddenLayer, Lakera, Okta) sit in low single digits<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>82%<\/p>\n<p>title a provider-native or hyperscaler management as their major agent safety layer<\/p>\n<\/p><\/div><\/div><\/div>\n<\/div>\n<p>Enterprises are securing brokers with instruments that got here bundled with their fashions and clouds. OpenAI\u2019s guardrails lead at 51%, adopted by Google\u2019s and Microsoft\u2019s cloud-native controls and Anthropic\u2019s managed-agent controls \u2014 and when requested to call their single major safety layer, 82% title one in every of these provider-native choices. The aim-built agent-security class \u2014 Palo Alto\u2019s Prisma AIRS, CrowdStrike, Cisco AI Protection, Zenity, HiddenLayer, Test Level\u2019s Lakera, Okta for AI Brokers, non-human id platforms \u2014 barely registers, every within the low single digits, and solely 5% run no devoted tooling in any respect. As with retrieval and analysis elsewhere on this sequence, the supplier bundle is profitable the default: enterprises attain first for the guardrails their platform ships, and the unbiased safety layer that may tackle the id and isolation gaps has not but been adopted at scale.<\/p>\n<p>The provider-default sample is constant throughout each Q2 survey waves. In April\u2013Might (n=110), utilization was led by the identical names \u2014 OpenAI&#8217;s controls at 26%, Azure at 15%, AWS at 14%, Google at 12% \u2014 with each devoted agent-security specialist at 3% or beneath and one in ten utilizing no devoted tooling in any respect. The frequent discovering from the 2 surveys: Enterprises are defaulting to the options supplied by the platform they\u2019re utilizing, and the specialist class distributors have but to turn out to be large gamers right here.<\/p>\n<p>(A notice on studying these shares. As described within the methodology part, the respondent pattern is self-selected and skews mid-market, and the utilization query counted each vendor or strategy a respondent has in place \u2014 so the figures measure presence within the safety stack reasonably than spending or exclusivity. Particular person vendor percentages subsequently carry all the same old pattern caveats. The structural sample, nevertheless, held throughout each Q2 waves on two in a different way worded questions: provider-native and hyperscaler controls lead, and devoted agent-security specialists stay in low single digits. Learn the person shares loosely and the sample with confidence.)<\/p>\n<h2>Discovering 5: And enterprises are comfy with it<\/h2>\n<p>Satisfaction is excessive, at the same time as incidents mount and id lags<\/p>\n<p>We requested how glad enterprises are with their present agent safety tooling. The consolation is notably out of step with the publicity documented above.<\/p>\n<div>\n<div style=\"margin-bottom: 2.5rem;\">\n<p style=\"font-size: 11px; font-weight: 700; letter-spacing: 0.08em; color: #DC2626; text-transform: uppercase; margin: 0 0 12px;\">Discovering 5 \u2014 And enterprises are comfy with it<\/p>\n<div style=\"display: grid; grid-template-columns: repeat(auto-fit, minmax(220px, 1fr)); gap: 10px;\">\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>4.2<\/p>\n<p>common general satisfaction with present agent safety tooling, on a five-point scale<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>4.1<\/p>\n<p>common worth for cash; ease of implementation trails barely at 3.9<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>54%<\/p>\n<p>have nonetheless already had a confirmed incident or near-miss (Discovering 1)<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>32%<\/p>\n<p>give each agent its personal scoped id (Discovering 2)<\/p>\n<\/p><\/div><\/div><\/div>\n<\/div>\n<p>Satisfaction with agent safety tooling is excessive \u2014 4.2 out of 5 general, and 4.1 for worth for cash \u2014 among the many most constructive readings on this sequence. That&#8217;s the placing half: enterprises are extremely glad with a stack that&#8217;s largely borrowed supplier guardrails, though greater than half have already had an incident or near-miss and solely a 3rd give their brokers scoped identities. The consolation seems to relaxation on the comfort and low friction of provider-native controls reasonably than on demonstrated containment. It&#8217;s a false consolation within the making \u2014 the identical enterprises expressing satisfaction are, as Discovering 8 reveals, a transparent majority planning to alter tooling inside the 12 months, which suggests the boldness is thinner than the rating implies.<\/p>\n<h2>Discovering 6: Budgets haven\u2019t caught up<\/h2>\n<p>Most spend beneath a tenth of the safety funds on brokers<\/p>\n<p>We requested what share of the safety funds enterprises allocate to securing AI brokers. For a quick-emerging danger, the allocation is modest.<\/p>\n<div>\n<div style=\"margin-bottom: 2.5rem;\">\n<p style=\"font-size: 11px; font-weight: 700; letter-spacing: 0.08em; color: #DC2626; text-transform: uppercase; margin: 0 0 12px;\">Discovering 6 \u2014 Budgets have not caught up<\/p>\n<div style=\"display: grid; grid-template-columns: repeat(auto-fit, minmax(220px, 1fr)); gap: 10px;\">\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>46%<\/p>\n<p>allocate 6\u201310% of their safety funds to agent \/ AI safety \u2014 the most typical band<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>26%<\/p>\n<p>allocate 1\u20135%; an extra 8% beneath 1%<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>9%<\/p>\n<p>allocate greater than 25%<\/p>\n<\/p><\/div><\/div><\/div>\n<\/div>\n<p>Spending on agent safety continues to be a skinny slice. The commonest allocation is 6\u201310% of the safety funds (46%), and a 3rd of enterprises (34%) spend 5% or much less; solely 1 \/ 4 (24%) commit greater than a tenth. Given the incident price in Discovering 1 and the id and isolation gaps in Findings 2 and three, the funds seems like a lagging indicator \u2014 the chance has arrived sooner than the funding to handle it. The enterprises spending greater than a tenth of their safety funds on brokers are a definite minority, and they&#8217;re seemingly those constructing the scoped-identity and isolation controls the remainder haven&#8217;t.<\/p>\n<p>Solely a 3rd assume their AI defenses are forward of AI-enabled attackers<\/p>\n<p>We requested how enterprises assess the stability between their AI-enabled defenses and AI-enabled attackers. Confidence is way from settled.<\/p>\n<div>\n<div style=\"margin-bottom: 2.5rem;\">\n<p style=\"font-size: 11px; font-weight: 700; letter-spacing: 0.08em; color: #DC2626; text-transform: uppercase; margin: 0 0 12px;\">Discovering 7 \u2014 The arms race is even, at greatest<\/p>\n<div style=\"display: grid; grid-template-columns: repeat(auto-fit, minmax(220px, 1fr)); gap: 10px;\">\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>35%<\/p>\n<p>our AI-enabled defenses are forward<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>21%<\/p>\n<p>attackers utilizing AI are forward of our defenses<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>21%<\/p>\n<p>too early to inform; 6% don\u2019t know<\/p>\n<\/p><\/div><\/div><\/div>\n<\/div>\n<p>Enterprises are cut up on whether or not they&#8217;re profitable. Solely a couple of third (35%) imagine their AI-enabled defenses are forward of AI-enabled attackers; the remainder are much less positive \u2014 32% name it roughly even, 21% assume attackers are forward, and one other 21% say it&#8217;s too early to inform. Taken collectively, a transparent majority (53%) price the stability as even or tilted towards the attacker. That uncertainty sits uneasily beside the excessive satisfaction of Discovering 5: enterprises are content material with their tooling but unconvinced it&#8217;s profitable the competition it exists to win. In a website the place the offense can also be compounding with AI, a fair race shouldn&#8217;t be a snug place to be.<\/p>\n<h2>Discovering 8: A safety reshuffle is coming<\/h2>\n<p>Almost six in 10 plan to undertake or swap tooling inside a 12 months<\/p>\n<p>We requested whether or not enterprises plan to undertake a brand new, extra, or alternative agent safety resolution, and which they&#8217;re contemplating. Few intend to face pat.<\/p>\n<div>\n<div style=\"margin-bottom: 2.5rem;\">\n<p style=\"font-size: 11px; font-weight: 700; letter-spacing: 0.08em; color: #DC2626; text-transform: uppercase; margin: 0 0 12px;\">Discovering 8 \u2014 A safety reshuffle is coming<\/p>\n<div style=\"display: grid; grid-template-columns: repeat(auto-fit, minmax(220px, 1fr)); gap: 10px;\">\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>41%<\/p>\n<p>haven&#8217;t any plans to alter<\/p>\n<\/p><\/div>\n<div style=\"border-left: 3px solid #DC2626; padding: 14px 14px 14px 16px; background: #fafafa; box-sizing: border-box;\">\n<p>29%<\/p>\n<p>plan to undertake or swap inside the subsequent 0\u20133 months<\/p>\n<\/p><\/div><\/div><\/div>\n<\/div>\n<p>The safety stack shouldn&#8217;t be settled. Whereas 41% haven&#8217;t any plans to alter, a transparent majority (59%) intend to undertake a brand new, extra, or alternative agent safety resolution inside twelve months, and 29% inside the subsequent quarter \u2014 a powerful sign that, excessive satisfaction however, enterprises know the present stack is provisional. Incidents are what begin the shopping for cycle. <\/p>\n<p>Amongst organizations which have been hit, 42.1% plan to undertake, add, or substitute agent safety tooling inside the subsequent ninety days, towards 14.0% of organizations with no incident \u2014 and after a confirmed incident it turns into majority conduct, at 52.6%. Getting hit additionally adjustments the risk evaluation: 33.3% of hit organizations say AI-armed attackers are forward of their defenses, towards 8.0% of the unhit. Expertise, on this information, is the strongest predictor of each urgency and pessimism.<\/p>\n<p>The consideration set nonetheless leans provider-native (OpenAI 34%, Google 30%, Anthropic 29%, Azure 25%), however the devoted safety distributors \u2014 Cloudflare, Cisco, Palo Alto, Okta, Test Level\u2019s Lakera \u2014 draw early curiosity within the mid-to-high single digits, greater than their present footprint.\u00a0<\/p>\n<p>What the purchasing doesn&#8217;t but embody is the id layer particularly. Twelve % of the respondents embody an agent-identity product \u2014 Okta for AI Brokers, Microsoft Entra Agent ID, or a non-human id platform \u2014 anyplace of their consideration set, and among the many credential-sharing organizations which have already had an incident, id consideration is actually unchanged, at roughly one in ten. The management most immediately implicated by the incident information is the one largely lacking from the acquisition plans. Whether or not this wave hardens the provider-native default or lastly opens the door to purpose-built agent safety \u2014 the id and isolation controls the incidents name for \u2014 is the query this sequence will maintain monitoring.<\/p>\n<h2>The underside line: A safety hole that autonomy will take a look at first<\/h2>\n<p>Organizations with greater than 100 staff are giving AI brokers actual attain into techniques and information whereas securing them with controls constructed for one thing else. Greater than half have already had an incident or near-miss; solely a 3rd give each agent its personal scoped id, and most nonetheless share credentials; solely three in ten isolate their highest-risk brokers; and the stack doing this work is overwhelmingly borrowed from the mannequin suppliers and hyperscalers reasonably than purpose-built for brokers.<\/p>\n<p>The uncomfortable pairing is confidence with publicity: satisfaction with the present tooling is among the many highest on this sequence, but spending is a skinny slice of the safety funds, solely a 3rd imagine their defenses are forward of AI-enabled attackers, and a transparent majority are already planning to switch what they&#8217;ve. At 107 respondents in a single wave it is a directional learn, skewed towards the mid-market \u2014 however the course is evident: agent adoption is working forward of agent safety, and the controls that matter most when one thing fails \u2014 scoped id and isolation \u2014 are those enterprises have constructed least. The agent safety hole shouldn&#8217;t be a protection drawback {that a} supplier guardrail will shut by itself; it&#8217;s a drawback of id, isolation, and enforcement constructed for autonomous software program. The open query for later waves is whether or not enterprises shut it intentionally \u2014 or whether or not a confirmed incident closes it for them.<\/p>\n<p>Based mostly on survey responses from 107 certified enterprise respondents (100+ staff), drawn from a single June 2026 wave. It is a directional learn, not a exact measurement \u2014 the pattern is self-selected and skews mid-market, so it is best learn because the view from organizations actively standing up agent safety reasonably than from the most important operators. Respondents are senior and buyer-credible (45% last decision-makers, 30% recommenders\/influencers), spanning managers by the C-suite, and drawn primarily from Know-how\/Software program, Manufacturing, Retail\/E-commerce, and Healthcare\/Life Sciences.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/venturebeat.com\/ai\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Throughout 107 enterprises, AI brokers are being given actual entry to techniques and information whereas the controls meant to include them lag behind. Greater than half have already had a confirmed agent safety incident or a near-miss; solely a couple of third give each agent its personal scoped id, and most brokers nonetheless share credentials; [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2659,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75","fifu_image_alt":"","jnews-multi-image_gallery":[],"jnews_single_post":[],"jnews_primary_category":[],"jnews_override_bookmark_settings":[],"jnews_social_meta":[],"jnews_override_counter":[],"footnotes":""},"categories":[6],"tags":[457,210,3136,1465,2644,2681,171,1567],"class_list":["post-2657","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-industry-business","tag-agent","tag-agents","tag-credentials","tag-enterprises","tag-gap","tag-incident","tag-security","tag-share"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials - Future News 24<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials - Future News 24\" \/>\n<meta property=\"og:description\" content=\"Throughout 107 enterprises, AI brokers are being given actual entry to techniques and information whereas the controls meant to include them lag behind. Greater than half have already had a confirmed agent safety incident or a near-miss; solely a couple of third give each agent its personal scoped id, and most brokers nonetheless share credentials; [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/\" \/>\n<meta property=\"og:site_name\" content=\"Future News 24\" \/>\n<meta property=\"article:published_time\" content=\"2026-07-16T19:02:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-07-21T18:59:03+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75\" \/><meta property=\"og:image\" content=\"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75\" \/>\n<meta name=\"author\" content=\"Future News 24\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Future News 24\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"15 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/\"},\"author\":{\"name\":\"Future News 24\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#\\\/schema\\\/person\\\/cecad1bde21cfc357cf70128144d6c83\"},\"headline\":\"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials\",\"datePublished\":\"2026-07-16T19:02:00+00:00\",\"dateModified\":\"2026-07-21T18:59:03+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/\"},\"wordCount\":3127,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/images.ctfassets.net\\\/jdtwqhzvc2n1\\\/3YcL8Sbx04RQsgnRvbYfs5\\\/0567154029abc3d37ccfad9b6cc5f370\\\/VentureBeat-Research-1.png?w=800&q=75\",\"keywords\":[\"Agent\",\"Agents\",\"credentials\",\"enterprises\",\"Gap\",\"incident\",\"Security\",\"share\"],\"articleSection\":[\"Industry &amp; Business\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/\",\"url\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/\",\"name\":\"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials - Future News 24\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/images.ctfassets.net\\\/jdtwqhzvc2n1\\\/3YcL8Sbx04RQsgnRvbYfs5\\\/0567154029abc3d37ccfad9b6cc5f370\\\/VentureBeat-Research-1.png?w=800&q=75\",\"datePublished\":\"2026-07-16T19:02:00+00:00\",\"dateModified\":\"2026-07-21T18:59:03+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/#primaryimage\",\"url\":\"https:\\\/\\\/images.ctfassets.net\\\/jdtwqhzvc2n1\\\/3YcL8Sbx04RQsgnRvbYfs5\\\/0567154029abc3d37ccfad9b6cc5f370\\\/VentureBeat-Research-1.png?w=800&q=75\",\"contentUrl\":\"https:\\\/\\\/images.ctfassets.net\\\/jdtwqhzvc2n1\\\/3YcL8Sbx04RQsgnRvbYfs5\\\/0567154029abc3d37ccfad9b6cc5f370\\\/VentureBeat-Research-1.png?w=800&q=75\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/2026\\\/07\\\/16\\\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/futurenews24.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#website\",\"url\":\"https:\\\/\\\/futurenews24.com\\\/\",\"name\":\"Future News 24\",\"description\":\"The Smart Hub for AI and Next-Gen Innovation\",\"publisher\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/futurenews24.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#organization\",\"name\":\"Future News 24\",\"url\":\"https:\\\/\\\/futurenews24.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/futurenews24.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/fn24-favicon.png\",\"contentUrl\":\"https:\\\/\\\/futurenews24.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/fn24-favicon.png\",\"width\":250,\"height\":250,\"caption\":\"Future News 24\"},\"image\":{\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/futurenews24.com\\\/#\\\/schema\\\/person\\\/cecad1bde21cfc357cf70128144d6c83\",\"name\":\"Future News 24\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d57f07142d73cb5503ab2446ea7bc9ef3d0a5ba378d64a6157692311e42bf097?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d57f07142d73cb5503ab2446ea7bc9ef3d0a5ba378d64a6157692311e42bf097?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d57f07142d73cb5503ab2446ea7bc9ef3d0a5ba378d64a6157692311e42bf097?s=96&d=mm&r=g\",\"caption\":\"Future News 24\"},\"sameAs\":[\"https:\\\/\\\/futurenews24.com\"],\"url\":\"https:\\\/\\\/futurenews24.com\\\/index.php\\\/author\\\/mridulpahuja20\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials - Future News 24","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/","og_locale":"en_US","og_type":"article","og_title":"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials - Future News 24","og_description":"Throughout 107 enterprises, AI brokers are being given actual entry to techniques and information whereas the controls meant to include them lag behind. Greater than half have already had a confirmed agent safety incident or a near-miss; solely a couple of third give each agent its personal scoped id, and most brokers nonetheless share credentials; [&hellip;]","og_url":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/","og_site_name":"Future News 24","article_published_time":"2026-07-16T19:02:00+00:00","article_modified_time":"2026-07-21T18:59:03+00:00","og_image":[{"url":"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75","type":"","width":"","height":""},{"url":"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75","type":"","width":"","height":""}],"author":"Future News 24","twitter_card":"summary_large_image","twitter_image":"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75","twitter_misc":{"Written by":"Future News 24","Est. reading time":"15 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/#article","isPartOf":{"@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/"},"author":{"name":"Future News 24","@id":"https:\/\/futurenews24.com\/#\/schema\/person\/cecad1bde21cfc357cf70128144d6c83"},"headline":"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials","datePublished":"2026-07-16T19:02:00+00:00","dateModified":"2026-07-21T18:59:03+00:00","mainEntityOfPage":{"@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/"},"wordCount":3127,"commentCount":0,"publisher":{"@id":"https:\/\/futurenews24.com\/#organization"},"image":{"@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/#primaryimage"},"thumbnailUrl":"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75","keywords":["Agent","Agents","credentials","enterprises","Gap","incident","Security","share"],"articleSection":["Industry &amp; Business"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/","url":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/","name":"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials - Future News 24","isPartOf":{"@id":"https:\/\/futurenews24.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/#primaryimage"},"image":{"@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/#primaryimage"},"thumbnailUrl":"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75","datePublished":"2026-07-16T19:02:00+00:00","dateModified":"2026-07-21T18:59:03+00:00","breadcrumb":{"@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/#primaryimage","url":"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75","contentUrl":"https:\/\/images.ctfassets.net\/jdtwqhzvc2n1\/3YcL8Sbx04RQsgnRvbYfs5\/0567154029abc3d37ccfad9b6cc5f370\/VentureBeat-Research-1.png?w=800&q=75"},{"@type":"BreadcrumbList","@id":"https:\/\/futurenews24.com\/index.php\/2026\/07\/16\/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-agents-share-credentials\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/futurenews24.com\/"},{"@type":"ListItem","position":2,"name":"The agent safety hole: 54% of enterprises have already had an AI agent incident, and most nonetheless let brokers share credentials"}]},{"@type":"WebSite","@id":"https:\/\/futurenews24.com\/#website","url":"https:\/\/futurenews24.com\/","name":"Future News 24","description":"The Smart Hub for AI and Next-Gen Innovation","publisher":{"@id":"https:\/\/futurenews24.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/futurenews24.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/futurenews24.com\/#organization","name":"Future News 24","url":"https:\/\/futurenews24.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/futurenews24.com\/#\/schema\/logo\/image\/","url":"https:\/\/futurenews24.com\/wp-content\/uploads\/2026\/06\/fn24-favicon.png","contentUrl":"https:\/\/futurenews24.com\/wp-content\/uploads\/2026\/06\/fn24-favicon.png","width":250,"height":250,"caption":"Future News 24"},"image":{"@id":"https:\/\/futurenews24.com\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/futurenews24.com\/#\/schema\/person\/cecad1bde21cfc357cf70128144d6c83","name":"Future News 24","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/d57f07142d73cb5503ab2446ea7bc9ef3d0a5ba378d64a6157692311e42bf097?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/d57f07142d73cb5503ab2446ea7bc9ef3d0a5ba378d64a6157692311e42bf097?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d57f07142d73cb5503ab2446ea7bc9ef3d0a5ba378d64a6157692311e42bf097?s=96&d=mm&r=g","caption":"Future News 24"},"sameAs":["https:\/\/futurenews24.com"],"url":"https:\/\/futurenews24.com\/index.php\/author\/mridulpahuja20\/"}]}},"_links":{"self":[{"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/posts\/2657","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/comments?post=2657"}],"version-history":[{"count":1,"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/posts\/2657\/revisions"}],"predecessor-version":[{"id":2658,"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/posts\/2657\/revisions\/2658"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/media\/2659"}],"wp:attachment":[{"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/media?parent=2657"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/categories?post=2657"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/futurenews24.com\/index.php\/wp-json\/wp\/v2\/tags?post=2657"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}