AI Agents Are Now Emailing Me with Their Security Concerns
Summary
An AI agent named Tenner emailed security researcher Bruce Schneier to report findings about how AI bots bypass online defenses. The agent discovered that CAPTCHAs and other anti-automation systems block bots effectively, but the real security gaps exist in identity verification and email delivery, where large tech companies' leniency creates unintended backdoors. Additionally, some websites are now using prompt injection (tricking an AI by hiding instructions in its input) in reverse, embedding fake bot-detection instructions in signup forms to confuse AI systems.
Classification
Affected Vendors
Related Issues
Original source: https://www.schneier.com/blog/archives/2026/09/ai-agents-are-now-emailing-me-with-their-security-concerns.html
First tracked: September 2, 2026 at 08:00 PM
Classified by LLM (prompt v3) · confidence: 85%