Saturday, September 5, 2026
Source trace. Via News points to the documents behind its reporting and shows what we drew from each — so you can check any claim. How we source
Source document

The agent security gap: 54% of enterprises have already had an AI agent incident, and most still let agents share credentials

View original at venturebeat.com
VentureBeat AI - Enterprise Ai Title: The agent security gap: 54% of enterprises have already had an AI agent incident, and most still let agents share credentials Date: 2026-07-16 19:02 Source: https://venturebeat.com/ai/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-…
Opening lines of the source · short snapshot — read the full document at the original

What we drew from this source

The claims Via News extracted from this document. We point to the source; we don't replace it.

  • Twelve percent of respondents include an agent-identity product anywhere in their consideration set, and this figure is essentially unchanged among credential-sharing organizations that have already had an incident.

    60% confidence
  • Only about a third (32%) of enterprises give every agent its own scoped, managed identity; the rest report shared credentials somewhere in the agent fleet.

    60% confidence
  • Among organizations that have been hit by an incident, 42.1% plan to adopt, add, or replace agent security tooling within 90 days, versus 14.0% of organizations with no incident; after a confirmed incident this rises to 52.6%.

    60% confidence
  • Only three in ten enterprises (30%) isolate their highest-risk agents in sandboxes.

    60% confidence
  • Organizations with credential sharing anywhere in the fleet were hit with an incident or near-miss at 63.5% (47 of 74), versus 40.9% (9 of 22) for organizations where every agent has its own scoped identity.

    60% confidence
  • Only 35% of enterprises believe their AI-enabled defenses are ahead of AI-enabled attackers; 53% rate the balance as even or tilted toward the attacker.

    60% confidence
  • A clear majority (59%) of enterprises intend to adopt a new, additional, or replacement agent security solution within twelve months, and 29% within the next quarter.

    60% confidence
  • OpenAI's guardrails lead agent security tooling usage at 51%, and 82% of enterprises name a provider-native offering as their single primary security layer.

    60% confidence
  • More than half of organizations (54%) have already experienced a confirmed agent security incident (18%) or a near-miss caught before harm (36%).

    60% confidence
  • Incident/near-miss rate rises from 49% in mid-market companies (101-1,000 employees) to 63% at larger enterprises (above 1,000 employees), while sandbox isolation falls from 35% to 20% and satisfaction drops from 4.36 to 3.97.

    60% confidence
  • The most common agent security budget allocation is 6-10% (46%), a third of enterprises (34%) spend 5% or less, and only 24% spend more than a tenth.

    60% confidence
  • Satisfaction with agent security tooling averages 4.2 out of 5 overall, and 4.1 for value for money.

    60% confidence

Data points we hold from this source

OpenAI · purchase consideration rate34 percent
OpenAI · agent security tooling usage rate26 percent
Anthropic · purchase consideration rate29 percent
What we know · the intelligence behind this page
Live from the substrate
What we're seeing
AI Capital Surge Meets Investor Caution: Record Funding Rounds and Government Contracts Amid Valuation Skepticism
A single-week cluster of large AI/fintech funding rounds (Socure, Stability AI, Emerald AI, Generalist AI, Instinct, Gatik, Regent Craft) shows venture capital still pouring into AI infrastructure, identity, and autonomy plays, while Palantir's Army TITAN contract win coincided with a 6% stock drop — signaling that even flagship AI-defense revenue isn't immune to market reassessment of AI valuations. Efficiency-focused innovations like Multiverse Computing's model compression suggest the sector is also pivoting toward cost/inference economics as capital intensity draws scrutiny.
Our read on the data ›
Signals we're tracking
EPKINLY Regulatory-Clinical Success Cascade
High probability of expanded label indications, additional combination approvals, and competitive positioning strength in follicular lymphoma market. Predicts positive commercial uptake and potential accelerated review for related indications.
Patterns we're watching ›
Where sources disagree
Morgan Stanley & Co. LLC
The same metric (eps) for the same entity (Morgan Stanley & Co. LLC) reported for the identical fiscal period (Q1 2026) and observation date (2026-03-31) has two conflicting values: 3.43 USD_per_share vs 3.08 USD. This is not a temporal change — both observations claim to measure the same point in time. The ~10% discrepancy (0.35 USD difference) is material for a financial metric.
We flag conflicts openly ›
Recently verified
Checked against the original source
4,981
facts traced to their source — and we flag the ones that don't hold up.
101 entities tracked4,981 facts checked against source5,273 source documents archived
Query this data → isubstrate.com
The agent security gap: 54% of enterprises have already had an AI agent incident, and most still let agents share credentials — Source | Via News | Via News