The agent security gap: 54% of enterprises have already had an AI agent incident, and most still let agents share credentials
View original at venturebeat.comVentureBeat AI - Enterprise Ai Title: The agent security gap: 54% of enterprises have already had an AI agent incident, and most still let agents share credentials Date: 2026-07-16 19:02 Source: https://venturebeat.com/ai/the-agent-security-gap-54-of-enterprises-have-already-had-an-ai-agent-incident-and-most-still-let-…
What we drew from this source
The claims Via News extracted from this document. We point to the source; we don't replace it.
More than half of organizations (54%) have already experienced a confirmed agent security incident (18%) or a near-miss caught before harm (36%).
60% confidenceTwelve percent of respondents include an agent-identity product anywhere in their consideration set, and this figure is essentially unchanged among credential-sharing organizations that have already had an incident.
60% confidenceThe most common agent security budget allocation is 6-10% (46%), a third of enterprises (34%) spend 5% or less, and only 24% spend more than a tenth.
60% confidenceA clear majority (59%) of enterprises intend to adopt a new, additional, or replacement agent security solution within twelve months, and 29% within the next quarter.
60% confidenceOrganizations with credential sharing anywhere in the fleet were hit with an incident or near-miss at 63.5% (47 of 74), versus 40.9% (9 of 22) for organizations where every agent has its own scoped identity.
60% confidenceOnly about a third (32%) of enterprises give every agent its own scoped, managed identity; the rest report shared credentials somewhere in the agent fleet.
60% confidenceAmong organizations that have been hit by an incident, 42.1% plan to adopt, add, or replace agent security tooling within 90 days, versus 14.0% of organizations with no incident; after a confirmed incident this rises to 52.6%.
60% confidenceOnly three in ten enterprises (30%) isolate their highest-risk agents in sandboxes.
60% confidenceOnly 35% of enterprises believe their AI-enabled defenses are ahead of AI-enabled attackers; 53% rate the balance as even or tilted toward the attacker.
60% confidenceIncident/near-miss rate rises from 49% in mid-market companies (101-1,000 employees) to 63% at larger enterprises (above 1,000 employees), while sandbox isolation falls from 35% to 20% and satisfaction drops from 4.36 to 3.97.
60% confidenceSatisfaction with agent security tooling averages 4.2 out of 5 overall, and 4.1 for value for money.
60% confidenceOpenAI's guardrails lead agent security tooling usage at 51%, and 82% of enterprises name a provider-native offering as their single primary security layer.
60% confidence
Data points we hold from this source
| Alphabet Inc. · purchase consideration rate | 30 percent |
| Alphabet Inc. · agent security tooling usage rate | 12 percent |
| OpenAI · purchase consideration rate | 34 percent |
| OpenAI · agent security tooling usage rate | 51 percent |
| Anthropic · purchase consideration rate | 29 percent |
