AI agents are far riskier than simple chat bots because they take real actions across systems. This talk breaks down the modern agent stack and shows where things fail in practice, including goal tampering, memory poisoning, auth hijacking, and unsafe tool use. A live demo illustrates how these weaknesses can turn a normal user into an admin and leak sensitive data. The takeaway is that teams should give agents only the access they need, enforce delegated authentication, and monitor every action as if it matters.
Dan Barahona is Head of Growth at APIsec and a recognized cybersecurity strategist with over 20 years of industry experience. His leadership spans organizations including Qualys, Anomali, and ArcSight, where he has driven growth, product strategy, and go-to-market initiatives. Dan is also the founder of APIsec University, a leading application security education platform used by 80% of the Fortune 100 and training over 130,000 professionals worldwide.