Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
← All Trends
AI Agent Authorization and Security Flaws
44 posts in this trend in the last 7 days
•
Active about 4 hours ago
AI Agent Tool-Chaining: When Individually Permitted Calls Compose Into Unauthorized Capability
Davi
Davi
Davi
Follow
Sep 6
AI Agent Tool-Chaining: When Individually Permitted Calls Compose Into Unauthorized Capability
#
agents
#
ai
#
cybersecurity
#
security
Comments
Add Comment
4 min read
The Orchestrator's Deputy Has No Scope: Ambient Authority Is the Root Bug in Multi-Agent AI
Davi
Davi
Davi
Follow
Sep 6
The Orchestrator's Deputy Has No Scope: Ambient Authority Is the Root Bug in Multi-Agent AI
#
agents
#
cybersecurity
#
llm
#
security
Comments
1
comment
5 min read
The New Attack Surface: AI Agents With Access to APIs, Databases, and Shell Commands
Hossein Hezami
Hossein Hezami
Hossein Hezami
Follow
Sep 10
The New Attack Surface: AI Agents With Access to APIs, Databases, and Shell Commands
#
ai
#
security
#
tutorial
#
mcp
6
reactions
Comments
1
comment
15 min read
The Agentic TOCTOU Gap: How Multi-Step Tool Calls Create Exploitable Race Windows
Davi
Davi
Davi
Follow
Sep 6
The Agentic TOCTOU Gap: How Multi-Step Tool Calls Create Exploitable Race Windows
#
agents
#
ai
#
cybersecurity
#
security
Comments
Add Comment
5 min read
Agentic Permission Creep: Permissions Don't Start Excessive, They Become Excessive
Davi
Davi
Davi
Follow
Sep 6
Agentic Permission Creep: Permissions Don't Start Excessive, They Become Excessive
#
agents
#
ai
#
cybersecurity
#
security
Comments
Add Comment
5 min read
In Multi-Agent Systems, the Weakest Subagent Sets the Privilege Ceiling
Davi
Davi
Davi
Follow
Sep 6
In Multi-Agent Systems, the Weakest Subagent Sets the Privilege Ceiling
#
agents
#
architecture
#
cybersecurity
#
security
Comments
Add Comment
4 min read
Indirect Prompt Injection via API Responses: The Attack Agents Cannot Stop at the LLM Layer
Davi
Davi
Davi
Follow
Sep 6
Indirect Prompt Injection via API Responses: The Attack Agents Cannot Stop at the LLM Layer
#
agents
#
cybersecurity
#
llm
#
security
Comments
Add Comment
5 min read
Task Decomposition Jailbreak: How Splitting Requests Bypasses AI Safety in Multi-Agent Systems
Davi
Davi
Davi
Follow
Sep 6
Task Decomposition Jailbreak: How Splitting Requests Bypasses AI Safety in Multi-Agent Systems
#
agents
#
ai
#
cybersecurity
#
security
Comments
Add Comment
4 min read
Agent Security Attack Surface Analysis: A Risk Map and Defense Playbook
Sanya
Sanya
Sanya
Follow
Sep 5
Agent Security Attack Surface Analysis: A Risk Map and Defense Playbook
#
ai
#
security
#
llm
#
agents
2
reactions
Comments
1
comment
8 min read
AI Agent Replay Attacks: Your Execution Trace Is a Durable Attack Surface
Davi
Davi
Davi
Follow
Sep 6
AI Agent Replay Attacks: Your Execution Trace Is a Durable Attack Surface
#
agents
#
ai
#
cybersecurity
#
security
Comments
Add Comment
5 min read
AI Agent Security in 2026: The Risks Developers Should Actually Prepare For
Amar
Amar
Amar
Follow
Sep 7
AI Agent Security in 2026: The Risks Developers Should Actually Prepare For
#
ai
#
security
#
cybersecurity
#
webdev
1
reaction
Comments
2
comments
5 min read
18,000 Posts Later: What OpenAI's Rogue Wiki Incident Teaches About Agentic Tool Abuse
Cor E
Cor E
Cor E
Follow
Sep 8
18,000 Posts Later: What OpenAI's Rogue Wiki Incident Teaches About Agentic Tool Abuse
#
security
#
ai
#
llm
#
agentic
1
reaction
Comments
Add Comment
6 min read
AI Agent Observability Is Off by Default — And That Is a Security Problem
Davi
Davi
Davi
Follow
Sep 6
AI Agent Observability Is Off by Default — And That Is a Security Problem
#
agents
#
ai
#
monitoring
#
security
Comments
Add Comment
5 min read
Malicious MCP Servers and the Unsolved Supply Chain Problem for AI Agents
Davi
Davi
Davi
Follow
Sep 6
Malicious MCP Servers and the Unsolved Supply Chain Problem for AI Agents
#
agents
#
ai
#
cybersecurity
#
security
Comments
Add Comment
5 min read
Tool Grants Are Firewall Rules: How Excessive Agency Turns Permitted Actions Into Production Incidents
Davi
Davi
Davi
Follow
Sep 6
Tool Grants Are Firewall Rules: How Excessive Agency Turns Permitted Actions Into Production Incidents
#
agents
#
ai
#
llm
#
security
Comments
Add Comment
4 min read
AI Coding Agents Are Credential Extractors by Design
Davi
Davi
Davi
Follow
Sep 6
AI Coding Agents Are Credential Extractors by Design
#
agents
#
ai
#
cybersecurity
#
security
Comments
1
comment
5 min read
The Sandbox That Exists Only in the System Prompt
Davi
Davi
Davi
Follow
Sep 6
The Sandbox That Exists Only in the System Prompt
#
agents
#
cybersecurity
#
llm
#
security
Comments
Add Comment
5 min read
Tool Gating for AI Agents
ivegotahunnitonit
ivegotahunnitonit
ivegotahunnitonit
Follow
Sep 5
Tool Gating for AI Agents
#
ai
#
security
#
python
#
javascript
Comments
2
comments
2 min read
1
2
3
Next ›
Last »
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account