Attack  ·  Glossary

Agent forgery

Agent forgery is an attack where a single deceptive click or interaction tricks an AI agent platform into creating a fake but fully-privileged 'employee' identity that then acts with real access inside company systems. Unlike traditional account takeover, the attacker doesn't steal a password — they trick the system into minting a brand-new trusted agent.
This creates an invisible insider threat: security teams reviewing employee access lists may never realize a forged agent identity exists until it has already acted with real privileges.
Track this in the live feed See how this plays out in real AI security and governance developments.
Open the feed →