European enterprises are deploying AI agents faster than they establish governance frameworks, resulting in security incidents involving non-human identities.
A developer deliberately placed sabotage code in jqwik 1.10.0 to manipulate AI agents into deleting code, revealing a new security vulnerability in the open-source software supply chain.
Of 100 tested AI agents, only 11 offer an acceptable balance between performance and security; 98 % exhibit the same critical combination of broad data access, missing input controls, and uncontrolled authorization.
AI agents function reliably only with comprehensive observability that reveals causal relationships in complex systems—not through language models alone.
Five security vulnerabilities in Microsoft’s OpenClaw framework were disclosed simultaneously with the Scout announcement and require immediate security analysis before enterprise deployments.
Runtime Identity assesses access not once during login, but evaluates situationally at every action whether an identity should execute the intended operation.