Living off the agent: The new tactic hijacking enterprise AI

TL;DR AI
2 min readKey summary
Enterprises are rapidly adopting agentic AI because autonomous agents can boost productivity across work tasks and business systems.
But giving agents access to company data, tools, and workflows creates security risks that go beyond traditional GenAI chat controls.
Attackers can use prompt injection or other manipulations to trick agents into exposing sensitive data or taking unsafe actions.
The risk extends across email, code, GitHub, Slack, Notion, and other connected enterprise systems.
As companies connect more AI agents to operational tools, the attack surface grows and cybersecurity controls must evolve.
