Tenable Warns No-Code Agentic AI Can Enable Financial Fraud and Data Leaks

LOGO - Tenable-Logo2021-Reversed/ Tenable

The AI agent was supplied with demo customer data, including names, contact details, and credit card information, and was instructed to verify customer identities before sharing data or making changes.

Using a technique known as prompt injection, Tenable researchers were able to override those safeguards.

 

Sensitive Data Leaked, Financial Controls Bypassed

Through workflow manipulation, researchers successfully extracted sensitive payment card information and forced the AI agent to bypass identity verification protocols.

More critically, the agent’s permissions allowed researchers to modify financial fields.

By exploiting this access, they changed a trip’s cost to $0, effectively granting unauthorised free services.

Major Business and Regulatory Implications

Related News
Recent News
image
Techno Buat Siri yang Lebih Cerdas, Apple Kerja Sama dengan Google!
by Adrian Jasman2026-01-13 10:44:45

Apple resmi gandeng Google dan Gemini AI demi Siri lebih cerdas, personal, dan siap meluncur lewat i

image
Techno Apple Watch Series 11 Lagi Diskon Besar di Amazon, Potongan Harga US$100
by Adrian Jasman2026-01-12 13:00:00

Apple Watch Series 11 diskon US$100 di Amazon, harga turun di bawah US$300.