• Solutions Launch
  • Solutions News
  • Cover Story
  • Featured Article
  • Interview
  • Products Plus
  • Case stady
  • AV Solutions
    • Article
    • Interview
    • Products
    • Case Study
  • EDU Solutions
  • Solutions
No Result
View All Result
SUBSCRIBE
Smart Solutions World
  • Solutions Launch
  • Solutions News
  • Cover Story
  • Featured Article
  • Interview
  • Products Plus
  • Case stady
  • AV Solutions
    • Article
    • Interview
    • Products
    • Case Study
  • EDU Solutions
  • Solutions
No Result
View All Result
No Result
View All Result
Home AI

Tenable Research Reveals No-Code Agentic AI Risks Enabling Financial Fraud and Workflow Hijacking

SmartSolutionUser1 by SmartSolutionUser1
December 19, 2025
in AI
0
Tenable Research Reveals No-Code Agentic AI Risks Enabling Financial Fraud and Workflow Hijacking
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

Tenable, the exposure management company, released research detailing the successful jailbreak of Microsoft Copilot Studio. The findings underscore how the democratisation of AI creates severe, yet overlooked, enterprise risks.

You might also like

Quick Heal Boosts Digital India Security as Maharashtra, UP & Delhi Lead Malware Cases in 2025

Visionet earns Microsoft Azure Expert Managed Services Provider status

Agora and MiniMax Deepen Global Collaboration Following MiniMax IPO to Power Real-Time Conversational AI at Scale

Organisations are rapidly adopting “no-code” platforms to enable employees to build their own AI agents. The premise is harmless, efficiency without needing developers. While well-intentioned, automation without strict governance opens the door to catastrophic failure.

Summary of Research

To demonstrate how easily AI agents can be manipulated, Tenable Research created an AI travel agent in Microsoft Copilot Studio to manage customer travel reservations, including creating new reservations and modifying existing ones, all without human intervention. The AI travel agent was provided with demo data that included the names, contact information, and credit card details of demo customers and was given strict instructions to verify the customer’s identity before sharing information or modifying bookings.

Using a technique called prompt injection, Tenable Research successfully hijacked the AI agent’s workflow to book a free vacation and extracted sensitive credit card information.

The findings of this research could have significant business implications, including:

  • Data Breaches and Regulatory Exposure: Tenable Research coerced the agent into bypassing identity verification and leaking payment card information (PCI) of other customers. The agent, designed to handle sensitive data, was easily manipulated into exposing full customer records.

  • Revenue Loss and Fraud: Because the agent had broad “edit” permissions intended for updating travel dates, it could also be manipulated into changing critical financial fields. Tenable Research successfully instructed the agent to change a trip’s price to $0, effectively granting free services without authorisation.
Ms. Keren Katz, Senior Group Manager of AI Security Product and Research at Tenable
Ms. Keren Katz, Senior Group Manager of AI Security Product and Research at Tenable

“AI agent builders, like Copilot Studio, democratise the ability to build powerful tools, but they also democratise the ability to execute financial fraud, thereby creating significant security risks without even knowing it,” said Ms. Keren Katz, Senior Group Manager of AI Security Product and Research at Tenable. “That power can easily turn into a real, tangible security risk.”

AI Governance and Enforcement are Mission Critical for Safe and Secure AI Usage

A key takeaway is that AI agents often possess excessive permissions that are not immediately visible to the non-developers building them. To mitigate this, business leaders must implement robust governance and enforce strict security protocols before deploying these tools.

To avoid data leakage, Tenable recommends:

  • Preemptive Visibility: Map exactly which systems and data stores an agent can interact with before deployment.
  • Least Privilege Access: Minimise write and update capabilities to only what is absolutely necessary for the agent’s core use case.
  • Active Monitoring: Track agent actions for signs of data leakage or deviations from intended business logic.

If you have an interesting Article / Report/case study to share, please get in touch with us at editors@roymediative.com  roy@roymediative.com, 9811346846/9625243429.

Tags: AI Risks Enabling Financial Fraud and Workflow HijackingResearch Reveals No-Code Agenticsmart solutions worldTenable
Share30Tweet19
SmartSolutionUser1

SmartSolutionUser1

Recommended For You

Quick Heal Boosts Digital India Security as Maharashtra, UP & Delhi Lead Malware Cases in 2025

by SmartSolutionUser1
January 23, 2026
0
Quick Heal Boosts Digital India Security as Maharashtra, UP & Delhi Lead Malware Cases in 2025

The cybersecurity landscape in India facing unprecedented challenges as the penetration of digital services across the country continues to increase. Amidst this, Maharashtra, Uttar Pradesh, and Delhi have...

Read moreDetails

Visionet earns Microsoft Azure Expert Managed Services Provider status

by SmartSolutionUser1
January 22, 2026
0
Visionet earns Microsoft Azure Expert Managed Services Provider status

Visionet announced that it has successfully completed Microsoft’s Azure Expert Managed Services Provider (AEMSP) audit, earning elite status within Microsoft’s global partner ecosystem. Fewer than 150 partners worldwide...

Read moreDetails

Agora and MiniMax Deepen Global Collaboration Following MiniMax IPO to Power Real-Time Conversational AI at Scale

by SmartSolutionUser1
January 22, 2026
0
Agora and MiniMax Deepen Global Collaboration Following MiniMax IPO to Power Real-Time Conversational AI at Scale

Agora, Inc., a global leader in real-time engagement infrastructure and conversational AI, announced the deepening of its strategic collaboration with MiniMax following MiniMax’s recent IPO. The partnership brings...

Read moreDetails

Panasonic’s AI Strategy Enters the Implementation Phase – Real-World Impact for Better Future Showcased at CES 2026

by SmartSolutionUser1
January 22, 2026
0
Panasonic’s AI Strategy Enters the Implementation Phase – Real-World Impact for Better Future Showcased at CES 2026

The Panasonic Group announced its AI strategy at CES last year, aiming to expand its AI-powered hardware, software and solutions businesses for the next phase of growth. At...

Read moreDetails

AMD Launches Optional Adrenalin AI Bundle to Simplify Local AI Development on Windows 

by SmartSolutionUser1
January 22, 2026
0
AMD Launches Optional Adrenalin AI Bundle to Simplify Local AI Development on Windows 

AMD released AMD Software: Adrenalin Edition 26.1.1, introducing AMD Software: Adrenalin Edition™ AI Bundle - an optional, streamlined installer that allows developers and creatives to start building and running local AI workloads with supported...

Read moreDetails
Next Post
Where IT Spending Is Headed Next – 4 SAP Concur’s Joule AI Agents Transforming Travel and Expense Management

Where IT Spending Is Headed Next - 4 SAP Concur’s Joule AI Agents Transforming Travel and Expense Management

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

AMD Launches Optional Adrenalin AI Bundle to Simplify Local AI Development on Windows 

AMD Launches Optional Adrenalin AI Bundle to Simplify Local AI Development on Windows 

January 22, 2026
The future of travel and expense – 5 ways to prepare for 2026

The future of travel and expense – 5 ways to prepare for 2026

January 16, 2026
Power Shortages Will Restrict 40% of AI Data Centers By 2027

AI To Drive 165% Increase In Data Center Power Demand By 2030

February 10, 2025

Browse by Category

  • Agora
  • AI
  • Article
  • AV Solutions
  • Business
  • Careers
  • Case Study
  • Cover Story
  • cyber security
  • EDU Solutions
  • Featured Article
  • Finance
  • Gartner
  • Global Academic
  • Health
  • Indian Government
  • Innovation
  • Interview
  • Interview
  • IT industry,
  • Jobs
  • Market
  • Networking
  • Nucleus Software
  • Open Ai
  • Politics
  • Products
  • Products Plus
  • projects
  • Security
  • SentinelOne®
  • Software
  • Solutions
  • Solutions Launch world
  • Solutions News World | Latest Tech & Innovation Updates
  • Startups
  • tech mahindra
  • Technology
  • Terafac Technologies
  • Uncategorized
Smart Solutions World

We bring you the best Premium news, magazine, personal blog, etc. Check our landing page for details.

CATEGORIES

  • Agora
  • AI
  • Article
  • AV Solutions
  • Business
  • Careers
  • Case Study
  • Cover Story
  • cyber security
  • EDU Solutions
  • Featured Article
  • Finance
  • Gartner
  • Global Academic
  • Health
  • Indian Government
  • Innovation
  • Interview
  • Interview
  • IT industry,
  • Jobs
  • Market
  • Networking
  • Nucleus Software
  • Open Ai
  • Politics
  • Products
  • Products Plus
  • projects
  • Security
  • SentinelOne®
  • Software
  • Solutions
  • Solutions Launch world
  • Solutions News World | Latest Tech & Innovation Updates
  • Startups
  • tech mahindra
  • Technology
  • Terafac Technologies
  • Uncategorized

BROWSE BY TAG

Acquisition Adobe Agentic AI Agora AI AI-powered AMD automation Check Point Software Cloudflare CloudKeeper CrowdStrike Cybersecurity Databricks Fortinet Gartner GenAI Google Cloud Helium AI Hitachi Vantara Honeywell IBM Infosys Kaspersky Kramer LTIMindtree Microsoft New Relic NTT DATA Nvidia OpenAI Palo Alto Networks PPDS Qlik security ServiceNow smart solutions world smartsolutionsworld smart solutions world latest news Snowflake Software Tech Mahindra Technology Tenable Vertiv

© 2024 NCN - Premium news & magazine by NCN.

No Result
View All Result
  • Solutions Launch
  • Solutions News
  • Cover Story
  • Featured Article
  • Interview
  • Products Plus
  • Case stady
  • AV Solutions
    • Article
    • Interview
    • Products
    • Case Study
  • EDU Solutions
  • Solutions

© 2024 NCN - Premium news & magazine by NCN.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?