
AI Agents Increase Corporate Security Risks
TL;DR: A new report from Orchid Security reveals that 57% of enterprise identities are “identity dark matter”—unseen and unmanaged. This growth in unmanaged access points creates significant security vulnerabilities, especially as companies rapidly adopt Agent AI, which can exploit these gaps.
Key facts
- Category
- AI
- Impact
- Low
- Published
- Source
- The Hacker News
Full summary
A new report finds unmanaged identities are a growing majority, creating significant security risks for companies adopting powerful new Agent AI technologies.
A new report from Orchid Security reveals a significant and growing challenge in corporate identity management. According to its "Identity Gap: Snapshot 2026" study, 57% of enterprise identities are now considered "identity dark matter"—unseen, unmanaged, and untracked elements like old service accounts or forgotten permissions. This means a majority of digital identities within organizations exist outside the view of traditional security tools. The findings suggest that companies have a massive blind spot in their security posture, with these hidden identities significantly outnumbering the visible, managed ones.
This identity management gap poses a critical risk as companies rapidly adopt Agent AI. These autonomous AI systems require broad access to execute tasks, and they can easily exploit unmanaged identities if compromised or misconfigured. This creates a powerful new attack vector, allowing a single breach to escalate quickly across a company's infrastructure. For CTOs, developers, and security teams, the report is a warning: deploying advanced AI without first addressing these fundamental identity weaknesses can turn a productivity tool into a major liability. The core challenge is to gain full visibility and control over all identities before scaling AI agents.
Why it matters
The rapid adoption of Agent AI is creating new security risks by exploiting existing, unmanaged gaps in corporate identity systems, potentially turning productivity tools into major liabilities.
Business impact
Companies risk significant data breaches and operational disruption if they deploy autonomous AI agents without first securing their entire identity landscape, including unmanaged or 'dark' identities.
Tags
Primary source: The Hacker News