VentureBeat
7/16/2026

The agent security gap: 54% of enterprises have already had an AI agent incident, and most still let agents share credentials
Short summary
A VentureBeat survey of 107 enterprises finds 54% have already experienced a confirmed AI agent security incident or near-miss, yet only 32% give each agent its own scoped identity and most agents share credentials. Security stacks are overwhelmingly borrowed from model providers rather than purpose-built for agents, with satisfaction high despite thin spending. A majority of enterprises plan to change tooling within the year, revealing satisfaction with controls they are simultaneously preparing to replace.
- •54% of surveyed enterprises had an AI agent security incident or near-miss
- •Only 32% give agents scoped identities; most share credentials, expanding blast radius
- •Enterprises are satisfied with provider-native security controls yet plan to replace them within a year
Generated with AI, which can make mistakes.
Is this a good recommendation for you?



