← All stories
● Covered by 1 source · 2 reportsHigh impact1 negative

Research reveals 69% of enterprises expose AI agents through shared API keys

🔄 Updated 70d ago — new reporting from VentureBeat
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • 69% of enterprises share API keys among AI agents
  • Palo Alto Networks acquired CyberArk for $21.1 billion
  • CrowdStrike launched Continuous Identity for AI Agents
  • 54% of respondents faced an agent security incident
  • Palo Alto Networks acquired CyberArk on February 11.
  • Palo Alto Networks' acquisition of CyberArk was the largest in its history.
  • CrowdStrike acquired SGNL for $740 million.
  • CrowdStrike shipped Continuous Identity for AI Agents by June 15.
  • Cisco's Amy Chang reported multi-turn attacks broke 15 AI models 88.3% of the time.
  • VentureBeat's June 2026 Pulse survey included 107 enterprises.
  • 32% of enterprises give every agent its own scoped, managed identity.
  • 30% of enterprises isolate their highest-risk agents in sandboxes.
  • 82% of companies use provider-native and hyperscaler controls for agent security.
  • Cisco announced intent to acquire Astrix Security for $400 million.

API Key Sharing Risks Identified

Research from VentureBeat reveals alarming security practices among enterprises, with 69% of them sharing one API key among multiple AI agents. This approach heightens risk as a compromised agent could gain access to all associated credentials, complicating the traceability of security breaches.

Significant Investments in Security

The findings have coincided with massive investments in security solutions, with companies like Palo Alto Networks, CrowdStrike, and Cisco investing over $22 billion in the last year. This trend indicates a strong market response to the realization of vulnerabilities stemming from poor credential handling.

Acquisitions Shaping The Landscape

Palo Alto Networks finalized its acquisition of CyberArk for $21.1 billion, a significant move to strengthen its security offerings. Similarly, CrowdStrike completed its purchase of SGNL, enabling real-time validation of agent actions to enhance security. Cisco also plans to acquire Astrix Security, focusing on non-human identity management.

Prevalence of Security Incidents

The survey highlights that over half of the organizations questioned have experienced an agent security incident or a near-miss. While 18% confirmed a security incident, 36% reported having narrowly avoided a breach, underscoring the critical nature of addressing these risks.

Implications for Enterprises

For security directors, these findings represent urgent board-level considerations, revealing a significant gap in security practices as enterprises transition into more automated systems. The data emphasizes the need for enhanced security measures around the use of AI agents.

Updates

🕒 2026-07-23 · new reporting from VentureBeat
  • Palo Alto Networks acquired CyberArk on February 11.
  • Palo Alto Networks' acquisition of CyberArk was the largest in its history.
  • CrowdStrike acquired SGNL for $740 million.
  • CrowdStrike shipped Continuous Identity for AI Agents by June 15.
  • Cisco's Amy Chang reported multi-turn attacks broke 15 AI models 88.3% of the time.
  • VentureBeat's June 2026 Pulse survey included 107 enterprises.
  • 32% of enterprises give every agent its own scoped, managed identity.
  • 30% of enterprises isolate their highest-risk agents in sandboxes.
  • 82% of companies use provider-native and hyperscaler controls for agent security.
  • Cisco announced intent to acquire Astrix Security for $400 million.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~34 min · 27 stories · Oct 02

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

How outlets covered it

Cisco's head of AI threat intelligence, Amy Chang, reported that multi-turn attacks successfully breached 15 flagship AI models 88.3% of the time, a vulnerability missed by single-turn testing. This finding highlights a significant security gap in current AI model evaluations and enterprise defenses, as over half of surveyed enterprises have already experienced AI agent security incidents or near-misses.

VentureBeat's research indicates that 69% of enterprises utilize shared API keys across multiple AI agents, increasing security risks. This finding has contributed to significant acquisitions in the security sector, with over $22 billion invested to counteract these vulnerabilities.