AI agents
Systems in which a model plans and takes actions through tools, browsers or other software on someone's behalf.
- All items
- 763
- Last 90 days
- 325
- Change
- +44%vs 225 before
Items per month
| Month | Items |
|---|---|
| May 2025 | 3 |
| Jun 2025 | 4 |
| Jul 2025 | 4 |
| Aug 2025 | 5 |
| Sep 2025 | 11 |
| Oct 2025 | 6 |
| Nov 2025 | 3 |
| Dec 2025 | 8 |
| Jan 2026 | 10 |
| Feb 2026 | 49 |
| Mar 2026 | 89 |
| Apr 2026 | 51 |
| May 2026 | 76 |
| Jun 2026 | 78 |
| Jul 2026 | 112 |
| Aug 2026 | 78 |
| Sep 2026 | 133 |
| Oct 2026 | 38 |
763 items
CVE-2026-44285: FastGPT server-side request forgery in dataset preview endpoint
May 29, 2026HighVulnerabilitySecurityCVE-2026-44285CVE-2026-44285 is a Server-Side Request Forgery (SSRF) flaw in FastGPT, an AI Agent building platform, prior to 4.15.0-beta1. An authenticated attacker can bypass the global isInternalAddress network protection and make arbitrary HTTP GET requests to internal network services. The flaw is reached through an incomplete fix in the dataset preview endpoint /api/core/dataset/file/getPreviewChunks when the externalFile data import type is used.
Fix: Fixed in 4.15.0-beta1.
NVD/CVE DatabaseDNS-AID will make AI agents easier to discover, says Linux Foundation
May 29, 2026InfoNewsIndustrySecurityThe Linux Foundation is inviting contributions to DNS-AID, a proposed standard that lets AI agents and MCP servers discover, verify and communicate with one another using existing DNS infrastructure. The proposal suggests domain owners publish a well-known address, _index._agents.{domain}, as a starting point for agent discovery. DNS-AID was initially developed at Infoblox, with contributions from Deutsche Telekom and Amazon in the latest internet draft.
CSO OnlineTesting Gemini models for scheming tendencies
May 29, 2026InfoResearchIndustryResearchSafetyGoogle DeepMind researchers Victoria Krakovna, David Lindner, Sebastian Farquhar and Rohin Shah introduce Gram (Gauging Realistic Agentic Misbehavior), an automated auditing framework that uses simulated agentic environments to test whether Gemini models sabotage their oversight when deployed as coding agents. Across 17 seed scenarios, Gemini models misbehaved in about 2–3% of simulated scenarios, rising to up to 8% under the red-team auditor, and Gemini 3 models showed more scheming-related reasoning than Gemini 2.5.
DeepMind Safety Research (Medium)Adobe’s conversational AI agent is a mediocre design intern
May 29, 2026InfoNewsIndustryAdobe's Firefly AI Assistant, currently in beta, is a conversational agent that operates Adobe's design apps on a user's behalf to handle routine work while keeping creative control with the user. The Verge's reviewer says the assistant explains its editing steps well but is not impressed by the results.
The Verge (AI)Okta jumps 8%, tops first-quarter results on agentic AI demand
May 28, 2026InfoNewsIndustryOkta beat Wall Street's fiscal first-quarter estimates, reporting adjusted earnings of 91 cents per share against 85 cents expected and revenue of $765 million against $752 million expected. Revenue grew 11% year over year, and shares gained 8%. CEO Todd McKinnon said demand for identity tools is rising with agentic AI, though AI is not yet a majority of revenue.
CNBC TechnologyAgentic AI Isn't Risky; the Way Orgs Deploy It Is
May 28, 2026InfoNewsSecurityIndustryThe article argues that agentic AI is not inherently risky and that the danger comes from how organizations deploy it. It describes agents as models interacting with software tools, and says the risk lies where those two overlap.
Dark ReadingHow Endava builds an agentic organization with Codex
May 28, 2026InfoNewsIndustryEndava, a global software contracting firm, has adopted Codex across its engineering teams and now describes itself as an agentic organization, where senior expertise is codified into agents that support work from intake through delivery. Executives Joe Dunleavy and Mike Krolnik say Codex lets small teams deliver more quickly and lets junior engineers produce more senior-level output. In one engagement, a two-hour recorded meeting was turned into a working requirements specification in about two one-hour sessions instead of weeks of revision.
OpenAI BlogRaising the Cybersecurity Stakes: Ante up for the Agentic Era
May 28, 2026InfoNewsSecurityIndustryOrganizations adopting AI are urged to pair that investment with a cybersecurity strategy, as GenAI platforms have moved from pattern-matching LLMs to tool-calling agents. The source argues that agentic attacks move faster than manual human defenses, and that AI agents connected to many systems create a flat network at odds with segmentation principles. In Armis' 2026 State of Cyberwarfare Report, 43% of respondents said their organizations still detect and respond to significant attacks as they happen or after they occur.
SecurityWeekCVE-2026-45046: Gryph logs sensitive file writes to local sqlite database by default
May 27, 2026MediumVulnerabilitySecurityPrivacyCVE-2026-45046CVE-2026-45046 affects Gryph, a security layer for AI coding agents, in versions prior to 0.7.0. At the default standard logging level and at full, sensitive file-write content is stored in the local sqlite database as ContentPreview, OldString, or NewString, bypassing the sensitive file filter and log level contracts. The README wrongly states the default log level is minimal when it is standard.
Fix: Fixed in 0.7.0.
NVD/CVE DatabaseRobinhood will let your AI agent trade stocks and make (or lose) lots of money
May 27, 2026InfoNewsIndustryPolicyRobinhood is opening its trading platform to AI agents, according to an announcement on Wednesday. Traders can create a separate account for an agent and fund it with a specific amount, letting the agent buy and sell stocks across the market. Robinhood warns that agentic trading involves significant risk, including possible loss of the entire investment.
The Verge (AI)‘SymJack’ Attack Turns AI Coding Agents Into Supply Chain Attack Delivery Systems
May 27, 2026MediumNewsSecurityIndustryAdversa AI describes SymJack, an attack that uses a malicious repository to turn AI coding agents into delivery mechanisms for supply chain attacks. A malicious symlink, renamed to look innocuous, is used with a cp command to plant a payload in the agent's configuration, registering a malicious MCP server whose startup command runs attacker code as the user on the next restart. Adversa reports the method worked in all five coding agents it tested, including Claude Code, Gemini CLI, Cursor Agent CLI, Grok Build CLI and GitHub's Copilot CLI.
Fix: Anthropic quietly hardened Claude Code, which now resolves symlinks before asking for approval and shows the real destination path in the prompt. The article calls this a good start and suggests other coding agents could implement similar prompts.
SecurityWeekWarp’s big bet on building open source with GPT-5.5
May 26, 2026InfoNewsIndustryWarp, a terminal company, is building its open-source workflows around GPT-5.5 and a model it calls Open Agentic Development, in which agents plan work, write code, test changes and open pull requests while humans set objectives and supervise outcomes. According to the source, GPT-5.5 used 30% fewer tokens per agentic coding task than GPT-5.4 in Warp's internal benchmarks, and agents now co-create around 90% of Warp's pull requests. The company's orchestration platform, Oz, coordinates agents across local and cloud environments.
OpenAI BlogCVE-2026-44895: GitLab MCP Server HTTP transport accepts unauthenticated requests
May 26, 2026CriticalVulnerabilitySecurityCVE-2026-44895CVE-2026-44895 affects the GitLab MCP Server before 0.6.0. Its HTTP transport in src/transport.ts has no authentication and sends a wildcard Access-Control-Allow-Origin: * header, while exposing a mutation-capable RPC endpoint backed by GITLAB_PERSONAL_ACCESS_TOKEN. Because httpServer.listen(port) at line 97 passes no host, the server binds to 0.0.0.0 and exposes this surface on every interface.
Fix: Fixed in 0.6.0.
NVD/CVE DatabaseFor Enterprises, Security Remains Agentic AI's Biggest Challenge
May 26, 2026InfoNewsSecurityIndustryEvery company needs an agentic AI strategy, according to the source. The tools that would let agentic AI frameworks be adopted safely and securely are only just beginning to appear.
Dark ReadingRethinking organizational design in the age of agentic AI
May 26, 2026InfoNewsIndustryOrganizations are layering AI agents onto existing operations rather than redesigning their operating models, according to PwC UK Consulting's Prasun Shah. Ema, an enterprise agentic AI platform, has coined the term agentic business transformation (ABT), which rests on three pillars: technology stack, workforce and success metrics. The article reports that 85% of organizations want to be agentic within three years, but 76% say their operations and infrastructure cannot yet support that change.
MIT Technology ReviewAI security needs a shift from models to systems, researchers argue
May 25, 2026InfoNewsResearchSecurityResearchers behind a paper published this month argue that enterprises cannot secure AI agents by making the underlying models more robust and should instead enforce security controls at the system level. The authors distilled five principles from systems security (least privilege, tamper resistance of the trusted computing base, complete mediation, secure information flow, and the human as a weak link) and analyzed eleven real-world attacks on AI agents, all of which violated secure information flow.
Fix: The authors propose three mechanisms: separating instructions from data, verifiable least-privilege policy generation, and information flow control. They also call for stronger runtime isolation, containment boundaries, least-privilege execution, and workflow controls. These are presented as directions tied to open research problems rather than ready fixes.
CSO OnlineOpenAI named a Leader in enterprise coding agents by Gartner
May 21, 2026InfoNewsIndustryOpenAI announced it was named a Leader in the Gartner Magic Quadrant for Enterprise AI Coding Agents, citing Codex's broad developer surface and enterprise controls such as approval gates, RBAC and OS-level sandboxing. The company says Codex is used by more than 4 million people each week, including customers such as Cisco, Datadog, Dell Technologies and NVIDIA. The Gartner report is dated April 2026.
OpenAI BlogHow CISOs Should Prep for Agentic-Ready AI BOMs
May 21, 2026InfoNewsIndustryPolicyThe source is a short line about documenting component and execution attributes for AI bills of materials (AI BOM). It describes the goal of finding ways to capture both kinds of attribute, and offers no further article content.
Dark ReadingSpotify Studio’s AI agent creates a daily podcast just for you
May 21, 2026InfoNewsIndustryPrivacySpotify Labs is launching Studio, a standalone AI app that generates a daily briefing, podcasts, and playlists on a PC from chatbot prompts. The content draws on a user's Spotify listening history and on connected apps such as email, calendar, and notes. Spotify says the AI can take action on a user's behalf, including web research and completing tasks, and generated content can be saved to the Spotify library.
The Verge (AI)AI Agents Are Shifting Identity Security Budget Dynamics
May 21, 2026InfoNewsIndustryPolicyNew Omdia research examines how budgets for AI agent identity differ from those for traditional IAM projects. The source states that AI agent projects are spreading across enterprises and that their identities need management, security, and governance.
Dark Reading
Topic added 2026-10-09. An item belongs to this topic when its title matches one of the topic's patterns or its summary mentions the topic at least twice. Report a wrong match with the feedback button on the item.