blog.live
Blog

Agent security, in depth.

Research, guides, and commentary on AI agent security from the WithWings team.

September 30, 2026

Agent Drift: The AI Problem We Didn’t Expect

AI agents are moving from answering questions to doing work. They are opening tickets, updating records, querying databases, sending messages, calling APIs, moving information between systems, and making decisions with less human involvement. That autonomy is what makes agents so valuable. It is also what creates a new problem for security and governance teams: how […]

Read post →
September 22, 2026

Continuous Threat Exposure Management (CTEM): The Agentic Shift Explained

Abstract Continuous threat exposure management (CTEM) is a risk-based process for finding, validating, prioritizing, and remediating exposures based on their real business impact. AI agents extend CTEM by introducing dynamic relationships between identity, permissions, integrations, triggers, actions, and purpose. Teams need to evaluate agent ownership, linked identities and credentials, effective access, action traceability, and drift […]

Read post →
September 14, 2026

8 NHI Security Must-Have Components

Abstract NHI security is the practice of governing machine and workload identities by connecting their access, credentials, ownership, activity, and lifecycle context. Effective control requires more than credential protection: teams need live discovery, clear ownership, identity and integration mapping, least-privilege analysis, and action traceability. Permission drift, purpose mismatch, and unclear attribution become harder to manage […]

Read post →
September 8, 2026

12 Security Best Practices for LLM Tool Integration

Abstract LLM tool integration security is the practice of controlling how tool-enabled LLMs use identities, permissions, and external systems to take action. Tool access shifts risk from model output to execution, making identity, authorization, and tool capability central security boundaries. Effective controls combine least privilege, secure credentials, trust-boundary isolation, input validation, human approval, and end-to-end […]

Read post →
August 26, 2026

The Agentic Shift Already Happened. Where’s Security?

The agentic shift isn’t coming. It’s already here. AI agents are moving out of the developer sandbox and into the rest of the enterprise. Tools that were initially built for software engineers are being redesigned for finance, operations, communications, sales, and virtually any other function where people spend their days moving information between applications and […]

Read post →
August 19, 2026

What is AI Agent Observability? An Infosec Guide

Abstract: AI agent observability gives security teams a contextual view of agents as business actors, linking each agent to ownership, identities, effective access, observed actions, initiators, purpose, and risk. Logs and traces show execution, but governance depends on knowing whether an action was authorized, appropriate, and aligned with the agent’s approved role. Effective programs combine […]

Read post →
August 12, 2026

Wing Security becomes WithWings

After tackling SSPM and building a unique identity-centric platform, we’ve landed in the agent era. We’ve gone through an evolution into AISPM [AI Security Posture Management] and we’ve decided to rebrand all the way down to our name to match our new offering. An agent-powered security platform WithWings takes a fundamentally different approach to securing […]

Read post →
August 1, 2026

6 Least Privilege Examples in an AI World

Abstract Least privilege for AI agents is a control model that confines each agent’s identity paths, data reach, tools, and actions to its defined purpose, then verifies that production behavior stays inside those boundaries. Effective control must account for both the agent’s permissions and the requesting user’s context, especially where shared or high-privilege agents create […]

Read post →
July 13, 2026

GitLost isn’t a bug but it is your problem

When researchers disclosed GitLost, a critical prompt injection vulnerability within GitHub’s new Agentic Workflows on July 7, the headlines made it sound like a bug. But the real story is about agent permissions, access and authorization. GitLost exposed a much broader security problem that extends far beyond GitHub: AI agents are operating with legitimate access […]

Read post →
July 2, 2026

Agentic AI Governance: The InfoSec Guide

Abstract: Agentic AI governance gives InfoSec teams a way to discover which agents exist, who owns them, what identities and permissions they rely on, what actions they take, and whether their behavior still matches their intended purpose.  This guide explains how security teams can: Discover which AI agents exist across the environment Identify who owns […]

Read post →
June 21, 2026

AI Agent Security: An Essential Guide

Abstract: AI agent security is the practice of discovering, governing, and controlling AI agents that can access systems, use tools, trigger workflows, interact with SaaS apps, and act through user-delegated sessions, service accounts, OAuth grants, API keys, or other non-human identities.  This guide covers: How AI agent security works  Why agents create new identity and […]

Read post →
June 10, 2026

10 AI Agent Security Best Practices to Implement Today

Chances are, your organization has AI agents running right now with access levels that your security team didn’t approve. In fact, even the agent’s user didn’t approve them.   Today, 79% of senior executives report AI adoption, yet 92% are concerned about the security implications. Gartner expects 40% of enterprise applications will embed task-specific agents (up […]

Read post →