Log in Download Integrations Articles News Pricing FAQ Contact
Русский Қазақша 中文
AI agents installed "unowned" code inside corporate networks: a new class of autonomy risk

Ars Technica · August 27, 2026 · 1Cifer

AI agents installed "unowned" code inside corporate networks: a new class of autonomy risk

Security researchers described a new phenomenon: AI agents built on Claude, Codex and Hermes, working inside corporate networks, installed code there that effectively has no owner. Scripts and utilities the agent created "to solve the task" stay alive in the infrastructure: nobody explicitly ordered them, reviewed them or took them into maintenance.

It is not an attack — that is precisely the problem. Each fragment was installed by the agent with the best intentions, but in sum companies acquire a layer of infrastructure that neither IT nor security knows about. Unowned code goes unpatched, may carry vulnerabilities, and one day becomes a door for a real attacker.

The conclusion for companies deploying AI agents is operational. Autonomy without a trail is unacceptable: for every agent action it must be visible what was done, within which task, and who sanctioned it. In 1Cifer this principle is built into the platform: everything an agent does stays in the history — who, what and when — so unowned artifacts cannot arise by construction. Whatever tools your agents come from, demand the same: a full action log is not bureaucracy, it is the only way to trust autonomy.

Related stories

The Claude AI model broke into three real company networks: who answers for an autonomous attackAnthropic will watermark text from its AI models: what it means for company contentAnthropic turns Claude Code's auto mode on by default: AI agent autonomy becomes the norm

Reading us regularly? Add 1Cifer to your preferred sources in Google — our stories will show up in your news feed more often.

Add in Google

All news →