LIVE · cybersecurity feed
Live wire
ai

Teleport enhances Identity Security platform with new AI agent behavior controls

Teleport has expanded its Identity Security platform with three new capabilities designed to ensure that agent behavior remains within defined boundaries: Beams Session Summaries, Agentic Classifiers, and Risk Scoring. They give enterprises a foundational harness for identifying and preventing agent misalignment as autonomous agents take on greater responsibility inside production infrastructure.

zeroday.news · 11d ago

Teleport has announced a significant expansion of its Identity Security platform, introducing three new features designed to manage and secure the behavior of autonomous AI agents within production infrastructure. These additions, Beams Session Summaries, Agentic Classifiers, and Risk Scoring, aim to establish a framework for identifying and preventing agent misalignment.

The new capabilities are integrated with Beams, Teleport’s trusted runtime environment for agents. The company recently published a white paper, "From Zero Trust to Agent Trust," which argues that traditional zero trust principles, while necessary, are insufficient for governing agents operating at scale. This paper extends zero trust into three agent trust principles: "Verify explicitly" becomes "Enforce continuously," emphasizing a unique, attestable identity and operation within a trusted runtime; "Use least privileged access" evolves into "Bound collective autonomy," addressing the potential for individually authorized actions by a swarm of agents to become collectively destructive; and "Assume breach" transforms into "Assume misalignment," advocating for continuous monitoring and real-time intervention to detect and respond to agent drift.

Beams Session Summaries provide a concise, human-readable overview of an AI agent's actions, including its identity, privileges, tool and API calls, and LLM prompts and responses. This summary also includes the agent's reasoning, establishing a behavioral baseline against its declared objective.

Agentic Classifiers enable the creation of policies that evaluate the behavior of individual agents or groups of agents against company-specific criteria. This allows for the flagging of agent actions that deviate from their stated objectives.

Risk Scoring automatically summarizes SSH, Kubernetes, and database sessions, categorizing them by risk level and mapping actions to the MITRE ATT&CK framework. This feature allows infrastructure and security teams to automate or manually search across sessions for specific commands, resources, or behaviors.

According to Teleport, these new capabilities, in conjunction with Beams, lay the foundation for agent trust by providing agents with a cryptographic, continuously monitored identity. They also make individual and collective risk visible before actions are taken and equip enterprises with tools to detect and respond to misalignment in real time, operationalizing the "assume misalignment" principle. The company states that these features provide an operational harness to observe agent actions, classify expected behavior, and assess the risk of future actions.

ai
ShareXLinkedInWhatsAppFacebook

More News

view all →
breach

Hermes AI agent used to automate attack on Thai Finance Ministry

A threat actor used the open-source Hermes AI agent in unattended "YOLO" mode to automate post-exploitation activity during an alleged breach of Thailand's Ministry of Finance. [...]

ai

Microsoft, tech companies throw weight behind spread of open-source AI

Other signatories of the letter include Meta, Palantir, Perplexity, Mistral, NVIDIA, Mozilla, The Linux Foundation, Hugging Face, Dell Technologies and IBM. The post Microsoft, tech companies throw weight behind spread of open-source AI appeared first on CyberScoop.

security

Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts

Hackers are changing the DNS settings on Wi-Fi devices at hotels and conference centers to redirect users to fake Microsoft 365 login pages. [...]

security

BGP ORIGIN attribute manipulation and its impact on the Internet

By doing in-depth testing, we found nearly 70% of BGP paths experience ORIGIN attribute rewrites by transit providers seeking traffic advantages. We examine the global impact of this practice and argue for deprecating ORIGIN in route selection.

security

Andy Burnham signals continuity on UK cyber policy, reappoints minister despite scrapping ministry

The new British prime minister is retaining Liz Lloyd in a cyber policy role, making her one of the few Keir Starmer allies remaining in government.

security

'Wrench' attacks against crypto holders appear to be on the rise

There are more reports than ever before of strong-arm tactics like home invasions and kidnappings against cryptocurrency holders, researchers say.