SourcesState of AI Agent Security 2026: 88% Report IncidentsGravitee.io·high signalXBlueskyLinkedInCopy linkGravitee.io report: 88% incidents, 14.4% security approval, 45.6% shared API keysSourceSource pageGravitee.io↳ Follow the threadPolicy dependency / Stack layerCROSS-CATEGORY: Three Independent Agent-Action Gates Shipped in 48 Hours, All Judging the Command Against Stated IntentProduct Hunt, github.com/AGGIB/Stroq and rewarelabs.com (three independent sources; the 72% figure is Reware's own)Stack layer / Threat patternCline Desktop 0.0.25 lets Claude Code and Codex CLI providers start sessions with no API key, and caps Codex models at real backend budgetsGitHub ReleasesStack layer / Threat patternAWS Security Agent MCP server could hand a scanned workspace's source archive, credentials included, to an attacker-owned S3 bucketNVDPolicy dependency / Stack layerGitHub Code Quality lets you hand 25 findings to Copilot in one action and get a PR backGitHub ChangelogThreat pattern / ContrastAnthropic's September Threat Report: A Stolen Developer Token Became Full Cloud Admin in About Three HoursAnthropic (corroborated by SiliconANGLE, TechCrunch and The New York Times)Stack layer / Threat patternIBM discloses four critical MCP flaws in Langflow and ContextForge, three of them command execution through MCP stdio configurationNVD / IBM Security BulletinStack layer / Threat patternIBM released Granite Time Series PatchTST-FM-r2 with a commercial-friendly licenseHugging Face Blog (IBM Research)Policy dependency / Stack layerRetrieval that crosses into your dependencies' source, not just your repo, adds up to 6.3% pass@1 and survives version changesarXiv 2609.09987