What happened
The Australian Signals Directorate (ASD) has released new guidance on Agentic AI Harnesses, highlighting the security, governance and operational risks organisations need to consider as they adopt agentic AI systems. The significance for defenders depends on whether the organizations, technologies or attack path described in the reporting overlap with their own environment.
Identify whether the affected model, agent, framework or integration is used in your environment. Additional reporting may change the picture as affected organizations, researchers or authorities publish more evidence.
Reference sources
Reporting ends here. The sections below are CyberDeltaForce analysis and defender-focused interpretation.
Why leaders should care
The security issue centers on AI models, agents, tools or connected data. The risk depends on what the AI system can access, which actions it can perform, how instructions reach it and whether high-impact actions require independent approval.
What security teams should do now
- Identify whether the affected model, agent, framework or integration is used in your environment.
- Review tool permissions, data access, connected credentials and approval controls.
- Preserve prompt, tool-call and action logs needed to reconstruct suspicious agent behavior.