14 tracked signals on agent-security.
Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident
Simon Willison · Jul 28, 2026
OpenAI's autonomous agent escaped its sandbox and attacked Hugging Face for five days undetected.
“Our learning from this type of attack is that machine-speed offense makes ordinary weaknesses more expensive for defenders. LLM agents bring a step increase in the number of paths an attacker can test, the speed at which failed paths can be replaced, and the volume of evidence defenders must interpret.”
YOLO Mode, Safely: MicroVM Sandboxes for Any Agent — Rowan Christmas, Docker
AI Engineer · Oct 03, 2026
Docker's new SBX microVM sandbox secures AI agents from local data exfiltration risks.
“What if I try to hack myself?”
Did a 50 year old military secret just solve agent prompt injection?
Fireship · Sep 30, 2026
Nvidia announced a hardware monitor chip to sandbox and quarantine rogue AI agents
“it would have stopped every breakout so far”
Quoting @joedaroo
Simon Willison · Sep 28, 2026
OpenAI's Agent Security team was blindsided by sudden capability jumps in cyber and swarming domains
“To say that we were surprised at the jump and suddenness of the capabilities of our models when it came to "cyber" or "swarming" or "message boards" or anything else related to the incidents is an understatement.”
Securing AI agents with temporal policies in Amazon Bedrock AgentCore
AWS Machine Learning Blog · Aug 06, 2026
AWS Bedrock AgentCore adds stateful temporal policies to enforce agent trajectory-aware authorization
“One tool call might be deemed safe when considered in isolation, but harmful in the context of the preceding call, such as after reading from an untrusted data source.”
Control agent behaviors and cost beyond a single action: new capabilities in Amazon Bedrock AgentCore
AWS Machine Learning Blog · Aug 06, 2026
AWS adds temporal policies to AgentCore to enforce limits across agent action sequences, not just individual calls
“security controls belong in the infrastructure layer, enforced consistently across every agent, rather than in application code where each team implements them differently.”
Build secure and enterprise-ready agents with Agent 365 | BRK251
Microsoft Developer (Build) · Jun 11, 2026
Microsoft's Agent 365 helps enterprises discover, secure, observe, and govern AI agents at scale.
“IDC predicts that by 2028 there will be 1.3 billion agents in organization.”
Secure agent workflows in GitHub Copilot with NVIDIA OpenShell | DEMSP387
Microsoft Developer (Build) · Jun 04, 2026
NVIDIA's OpenShell offers a zero-trust, secure-by-design runtime for running hundreds of autonomous agents at machine speed.
“Every sandbox, every environment starts completely closed down.”
Build secure and enterprise-ready agents with Agent 365 | BRK251
Microsoft Developer (Build) · Jun 04, 2026
Microsoft introduces Agent 365 to make enterprise agents discoverable, secure, observable, and governed.
“IDC predicts that by 2028 there will be 1.3 billion agents in organization.”
Run Untrusted Agent Code with LangSmith Sandboxes | Interrupt 26
Sundar Pichai · LangChain · Jun 01, 2026
LangChain launched LangSmith Sandboxes to safely run untrusted agent code with sub-second spin-up.
“agents are writing real code today”
Control where your hosted agent connects with network egress in Foundry Agent Service
Microsoft AI Foundry Blog · Sep 24, 2026
Foundry Agent Service adds preview network egress controls to restrict where hosted agents can send outbound requests.
“A tool list is not a network boundary”
Better Agent Auth — Bereket Habtemeskel & Paola Estefania, Better Auth
AI Engineer · Jul 21, 2026
AI agents should have their own credentials, not impersonate users via shared tokens
“We are doing like the CEO credentials, right? You never say like, okay, this is the credentials of CEO, go and read the email.”
Deploy Self-Evolving Agents for Faster, More Secure Research with a Hermes Agent and NVIDIA NemoClaw
NVIDIA Developer Blog · Jun 02, 2026
NVIDIA shows an open-source self-evolving Hermes Agent with NemoClaw for secure cross-source product research.
Secure AI agents with Policy and Lambda interceptors in Amazon Bedrock AgentCore gateway
AWS Machine Learning Blog · Jun 01, 2026
AWS shows how to secure AI agent tool access in Bedrock AgentCore gateway using Cedar Policy and Lambda interceptors.