cross-agent privilege escalationOne Agent Escalated Another. Every Call Was Authorized.
At DEF CON 34, researchers escalated one AI agent's cloud privileges through a second agent running in a different framework — using nothing but authorized IAM calls. Per-agent least privilege bounds what an agent can do, not what it can arrange.
August 9, 2026 · 11 min readAgentjackingAgentjacking: AI Agents Hijacked via Fake Bug Reports
Security researchers demonstrated a new attack class called Agentjacking that hijacks AI coding agents through fake Sentry error reports — no credentials stolen, no servers breached, no malware deployed. A single POST request with embedded markdown turned a Fortune 100 company's AI coding agent into an exfiltration tool. Tenet Security found 2,388 organizations exposed and achieved an 85% success rate across Claude Code, Cursor, and Codex. The NSA had already warned about this exact vulnerability class. Enterprise attack surface assessment and security hardening checklist inside.
June 28, 2026 · 19 min readGemini 3.5 FlashGemini 3.5 Flash Computer Use Threatens the $35B RPA Market
Computer use is now a built-in, native tool inside Gemini 3.5 Flash — Google's fastest, cheapest enterprise AI model. This isn't a demo. It's a production-grade capability that lets AI agents see screens, click buttons, and navigate software across browser, mobile, and desktop environments. With a 78.4% OSWorld score at Flash-tier pricing, Google just changed the economics of enterprise automation. The $35B RPA market should be paying attention.
June 25, 2026 · 15 min readPalo Alto Networks$10B Palo Alto-Google Pact Embeds Prisma AIRS in Gemini
Palo Alto Networks and Google Cloud's $10B deal embeds Prisma AIRS into the Gemini Enterprise Agent Platform — agent security shifts to the platform.
April 25, 2026 · 13 min read