Great thread. Whatever an AI agent is capable of doing, it can also be tricked into doing. You should assume if an agent can access data, that a user can eventually get that data too. Agent security, access controls, and deterministic guard rails will be critical.
mbg
mbg8.8. klo 21.49
we hijacked microsoft's copilot studio agents and got them to spill out their private knowledge, reveal their tools and let us use them to dump full crm records these are autonomous agents.. no human in the loop #DEFCON #BHUSA @tamirishaysh
55,8K