{"data":{"id":"da4e5572-df10-4e05-80d9-b6eabe51d3c4","title":"Zero Trust for AI Agents Starts With Fixing Zero Visibility","summary":"Organizations are deploying AI agents (software systems that act autonomously to complete tasks) faster than they can secure them, with 70% admitting their AI workflows access sensitive data without full oversight. The core problem is lack of visibility: security teams cannot see what AI agents exist, what they can access, or when something goes wrong, making traditional security controls ineffective. Zero Trust principles (security approach that trusts nothing by default and verifies everything) can help, but only if organizations first create a complete inventory of all agents before attempting to enforce access controls.","solution":"The source recommends treating AI agent discovery similarly to how organizations now monitor cloud infrastructure: 'Treat AI and agent spend, along with API-key issuance, as discovery signals.' It also suggests involving 'Finance and procurement' as additional monitoring points to gain visibility into agent deployments. The underlying principle stated is 'You cannot govern what you cannot see,' with the SANS Zero Trust for AI Agents checklist emphasizing that inventory must come before any enforcement controls.","labels":["security","policy"],"sourceUrl":"https://thehackernews.com/2026/09/zero-trust-for-ai-agents-starts-with.html","publishedAt":"2026-09-26T10:30:00.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"info","attackType":[],"issueType":"news","affectedPackages":null,"affectedVendors":["OpenAI","HuggingFace"],"affectedVendorsRaw":["OpenAI","Hugging Face","METR"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-09-26T10:30:00.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"agent","llmSpecific":false,"classifierConfidence":0.82,"researchCategory":null,"atlasIds":null}}