惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

大猫的无限游戏
大猫的无限游戏
云风的 BLOG
云风的 BLOG
小众软件
小众软件
V
V2EX
博客园 - Franky
博客园 - 司徒正美
Apple Machine Learning Research
Apple Machine Learning Research
量子位
博客园 - 【当耐特】
雷峰网
雷峰网
WordPress大学
WordPress大学
Jina AI
Jina AI
Google DeepMind News
Google DeepMind News
N
Netflix TechBlog - Medium
爱范儿
爱范儿
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
阮一峰的网络日志
阮一峰的网络日志
IT之家
IT之家
Blog — PlanetScale
Blog — PlanetScale
Hugging Face - Blog
Hugging Face - Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
V
Visual Studio Blog
Microsoft Security Blog
Microsoft Security Blog

Help Net Security

ChatGPT advanced account security adds passkeys and hardware keys Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for months Automating Pentest Delivery: A Step-by-Step Guide - PlexTrac Open-source privacy proxy masks PII before prompts reach external AI services Shadow AI risks deepen as 31% of users get no employer training Identity is the control plane for distributed infrastructure AI traffic is getting bigger, louder, and less predictable New infosec products of the month: April 2026 cPanel zero-day exploited for months before patch release (CVE-2026-41940) Cisco releases open-source toolkit for verifying AI model lineage Met Police face criticism for using AI to spy on their own officers Nine-year-old Linux kernel flaw enables reliable local privilege escalation (CVE-2026-31431) Hacker with a special interest in breaching sports institutions ends behind bars - Help Net Security IP Fabric MCP server adds governance and control to enterprise AIOps workflows - Help Net Security Aqua Compass MCP server enables real-time investigation and containment of runtime threats - Help Net Security Google brings instant email verification to Android, no OTP needed - Help Net Security If cyber espionage via HDMI worries you, NCSC built a device to stop it - Help Net Security Apple fixes iPhone bug that let FBI retrieve deleted Signal messages(CVE-2026-28950) - Help Net Security GopherWhisper APT group hides command and control traffic in Slack and Discord - Help Net Security OpenAI tackles a bad habit people have when interacting with AI - Help Net Security A year in, Zoom's CISO reflects on balancing security and business - Help Net Security Scenario: Open-source framework for automated AI app red-teaming - Help Net Security GDPR works, but only where someone enforces it - Help Net Security Ransomware, fraud, and lawsuits drive cyber insurance claims to new peaks - Help Net Security Google’s Workspace Intelligence promises privacy while running on your data - Help Net Security Cyberattack on French government agency triggers phishing alert - Help Net Security Claude Mythos finds 271 Firefox flaws, Mozilla believes zero-days are numbered - Help Net Security Prove Identity Platform connects verification, authentication, and fraud prevention - Help Net Security New Mirai variants target routers and DVRs in parallel campaigns - Help Net Security Acronis GenAI Protection gives MSPs control over AI usage and data risks - Help Net Security
Reco Agent Security helps organizations govern AI agents ...
Industry News · 2026-06-25 · via Help Net Security

Reco announced Reco Agent Security, which expands the Reco Platform with advanced capabilities that prevent data exposure, unintended use and process disruption caused by AI agents operating across connected applications and workflows.

Reco Agent Security

Agents function inside interconnected enterprise ecosystems where they can read sensitive data, invoke tools, trigger workflows, update records, communicate with other systems and take autonomous action. Agent security risks, therefore, are not isolated to the agent itself, but rather extend to the applications that agents connect to, permissions they inherit, identities they use, and data they access.

Reco Agent Security gives security teams visibility and control across the environments where AI agents operate. Built on the Reco Graph, used by Fortune 500 organizations to map and monitor enterprise interactions, Reco discovers every agent, maps what it can reach, prioritizes risk based on real operating context and enables precise remediation before autonomous action can expose data, trigger unintended use or disrupt business operations.

“Agents do not act alone. They operate across apps, identities, workflows and integrations that determine what they can reach and what they can do,” said Ofer Klein, CEO of Reco. “Reco Agent Security provides organizations the context, coverage and control they need to protect their production environments from agent risk without slowing down AI adoption.”

Point solutions exist for individual pieces of the problem: model security focuses on the model, identity security focuses on credentials and access and so on. Yet none of these categories capture the operational context which is where agents introduce real business risk.

Reco maps every agent across identity, permissions, connectivity and activity to show what the agent is, who owns it, how it behaves and what it can reach. This enables security teams to answer not just what an agent “did” do, but what an agent “can” do.

Providing operational control over agents

Reco Agent Security helps enterprises govern AI agents across connected applications and environments with the following capabilities:

Agent discovery and inventory:
Discovers agents, copilots, AI workflows, service accounts and related non-human identities across the environments where agents operate. Security teams gain a live inventory of known and ungoverned agents, including ownership, connected applications, permission scope and recent activity.

Identity and ownership mapping:
Identifies who deployed each agent, which users or teams are associated with it, what identities it uses and who is accountable for its behavior. This helps security teams eliminate orphaned, unmanaged and unowned agents before they create exposure.

Permissions and scope analysis:
Maps the OAuth grants, roles, API keys, delegated access and permissions that agents rely on, and identifies excessive access, stale tokens, unapproved connections and permissions that exceed an agent’s intended purpose.

Activity and behavioral monitoring:
Establishes baselines for agent activity, including API calls, data access patterns, timing, volume and connected endpoints. Reco flags deviations such as abnormal data movement, off-hours activity, new external connections, unexpected agent-to-agent activity and behavior that appears inconsistent with the agent’s role.

Connectivity and blast-radius mapping:
Traces what every agent can reach across applications, APIs, data stores, tools, workflows and connected services. Reco identifies risky combinations where individual connections may appear acceptable in isolation but together create an unauthorized path to sensitive data or critical business systems.

Risk prioritization based on operating context:
Scores and prioritizes agent risk based on identity, permissions, connectivity and activity, helping security teams focus on the agents and exposures that create meaningful business risk rather than reviewing raw lists of AI usage.

Context-aware remediation:
Recommends precise remediation steps that reduce risk without disrupting business processes. Security teams can reduce permission scope, revoke stale access, disable unauthorized agents, route findings to owners and remediate exposure through existing ticketing and security workflows.