Back to News
Cybersecurity

Navigating the Risks of Unseen AI Agents in Cybersecurity

A new report highlights the challenges posed by third-party AI agents that evade identity management systems, revealing significant security gaps for businesses.

The 2026 State of Agent Security Report uncovers a staggering 1,280 third-party products that incorporate AI, with approximately 282 of these operating behind single sign-on systems. However, the vast majority—over 1,000 agents—remain invisible to existing identity infrastructure. This discrepancy arises not from deliberate obfuscation but from the inherent limitations of identity management systems, which can only govern entities that authenticate through them. Consequently, a significant number of AI agents are left unmonitored, creating a substantial security blind spot for organizations.

For businesses, this finding underscores the urgent need to reassess their cybersecurity frameworks, particularly concerning third-party integrations. Without comprehensive visibility and control over all AI agents, organizations risk exposing themselves to potential vulnerabilities and breaches that could exploit these unmanaged entities. This situation is particularly concerning as the integration of AI continues to proliferate across various sectors, emphasizing the importance of enhancing security measures that accommodate both visible and invisible agents. Addressing this gap is critical for maintaining a robust cybersecurity posture in an increasingly complex digital landscape.

---

*Originally reported by [The Hacker News](https://thehackernews.com/2026/10/the-third-party-agent-problem-why.html)*