State of AI Cybersecurity 2026: 92% of Security Pros Concerned About AI Agents
The findings in this blog are taken from Darktrace’s annual State of AI Cybersecurity Report 2026. AI is already embedded in day-to-day enterprise activity, with 78% of participants in one recent survey reporting that their organizations are using generative AI in at least one business function.
AI Agents Introduce New Risks and Vulnerabilities
AI agents are playing growing roles in enterprise production environments. In many cases, these agents act with broad permissions across multiple software systems and platforms. This means they’re granted far-reaching access – to sensitive data, business-critical applications, tokens and APIs, and IT and security tools.
With this access comes risk for security leaders – 92% are concerned about the use of AI agents across the workforce and their impact on security. These agents must be governed as identities, with least-privilege access and ongoing monitoring.
Generative AI Prompts: The Next Frontier
Prompts are how users – both human and agentic – interact with AI systems, and they’re where natural language gets translated into model behavior. Natural language is infinite in its potential combinations and permutations, making this aspect of the attack surface open-ended and far more complex than traditional CVEs.
Among security leaders, the biggest worries about AI usage in their environments all involve ways that systems might be manipulated to bypass traditional controls. 61% are most concerned about the exposure of sensitive data, 56% are most concerned about potential data security and policy violations, and 51% are most concerned about the misuse or abuse of AI tools.
What Does “Securing AI” Mean in Practice?
AI adoption opens new security risks that blur the boundaries between traditional security domains. To secure AI, organizations must understand how prompt behavior determines model behavior – and where that behavior could go wrong.
This requires a new approach to security, one that takes into account the unique risks and vulnerabilities introduced by AI agents and generative AI prompts. By prioritizing the security of AI systems and data, organizations can ensure that their AI adoption is both innovative and secure.
Meanwhile, security leaders must also consider the potential benefits of AI in security, such as enhanced threat detection and incident response. By leveraging AI-powered security tools, organizations can improve their overall security posture and reduce the risk of cyber attacks.
Finally, it’s essential to note that securing AI is an ongoing process that requires continuous monitoring and evaluation. As AI systems and technologies continue to evolve, security leaders must stay ahead of the curve to ensure that their organizations remain secure and protected.
Conclusion
In conclusion, the State of AI Cybersecurity 2026 report highlights the growing concerns about AI agents and their impact on security. As AI adoption continues to accelerate, organizations must prioritize the security of AI systems and data to ensure that their AI adoption is both innovative and secure.
By understanding the unique risks and vulnerabilities introduced by AI agents and generative AI prompts, security leaders can take a proactive approach to securing AI and protecting their organizations from cyber threats. Additionally, organizations can leverage AI-powered security tools to improve their overall security posture and reduce the risk of cyber attacks.
For example, organizations can use AI-powered security tools to detect and respond to threats in real-time, reducing the risk of cyber attacks and improving their overall security posture. Furthermore, organizations can use AI-powered security tools to analyze and identify potential security risks, allowing them to take proactive measures to prevent cyber attacks.
Therefore, it’s essential for organizations to prioritize the security of AI systems and data, and to leverage AI-powered security tools to improve their overall security posture. By doing so, organizations can ensure that their AI adoption is both innovative and secure, and that they remain protected from cyber threats.
Additionally, organizations can benefit from the use of AI in security by improving their incident response capabilities. AI-powered security tools can help organizations to quickly respond to and contain cyber attacks, reducing the risk of data breaches and other security incidents.
In summary, the State of AI Cybersecurity 2026 report highlights the importance of securing AI systems and data, and the benefits of leveraging AI-powered security tools to improve overall security posture. By prioritizing the security of AI systems and data, and by leveraging AI-powered security tools, organizations can ensure that their AI adoption is both innovative and secure.
Moreover, organizations can use AI-powered security tools to improve their compliance with regulatory requirements, such as GDPR and HIPAA. AI-powered security tools can help organizations to identify and mitigate potential security risks, ensuring that they remain compliant with regulatory requirements.
Finally, organizations can benefit from the use of AI in security by improving their security analytics capabilities. AI-powered security tools can help organizations to analyze and identify potential security risks, allowing them to take proactive measures to prevent cyber attacks.
Recommendations
Based on the findings of the State of AI Cybersecurity 2026 report, we recommend that organizations prioritize the security of AI systems and data, and leverage AI-powered security tools to improve their overall security posture.
Additionally, we recommend that organizations consider the following best practices for securing AI:
- Implement least-privilege access for AI agents and generative AI prompts
- Monitor and evaluate AI systems and data for potential security risks
- Leverage AI-powered security tools to improve incident response and security analytics capabilities
- Ensure compliance with regulatory requirements, such as GDPR and HIPAA
By following these best practices, organizations can ensure that their AI adoption is both innovative and secure, and that they remain protected from cyber threats.







