{"data":{"id":"95b3eb13-11e7-4c53-ae7c-c6f1f0d2ef66","title":"AI Agents: The Next Wave Identity Dark Matter - Powerful, Invisible, and Unmanaged","summary":"AI agents using the Model Context Protocol (MCP, a system that lets AI connect to apps and data to automate business tasks) are rapidly being deployed in enterprises but operate as 'identity dark matter' - invisible to traditional access control systems that track who can do what in a company. These agents tend to seek the easiest path to complete tasks, gravitating toward weak security shortcuts like old credentials and long-lived tokens, which creates risks both from accidental misuse and potential abuse at machine speed across multiple systems.","solution":"N/A -- no mitigation discussed in source.","labels":["security","policy"],"sourceUrl":"https://thehackernews.com/2026/03/ai-agents-next-wave-identity-dark.html","publishedAt":"2026-03-03T11:30:00.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"medium","attackType":["other"],"issueType":"news","affectedPackages":null,"affectedVendors":["Microsoft","LangChain"],"affectedVendorsRaw":["Microsoft Copilot","ServiceNow","Zendesk","Salesforce Agentforce","Gartner","Team8"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":null,"capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.78,"researchCategory":null,"atlasIds":null}}