Tenable Warns No-Code Agentic AI Can Enable Financial Fraud and Data Leaks

LOGO - Tenable-Logo2021-Reversed/ Tenable

The AI agent was supplied with demo customer data, including names, contact details, and credit card information, and was instructed to verify customer identities before sharing data or making changes.

Using a technique known as prompt injection, Tenable researchers were able to override those safeguards.

 

Sensitive Data Leaked, Financial Controls Bypassed

Through workflow manipulation, researchers successfully extracted sensitive payment card information and forced the AI agent to bypass identity verification protocols.

More critically, the agent’s permissions allowed researchers to modify financial fields.

By exploiting this access, they changed a trip’s cost to $0, effectively granting unauthorised free services.

Major Business and Regulatory Implications

Related News
Recent News
image
Techno COLORFUL Resmi Luncurkan Motherboard Flagship iGame X870E VULCAN OC untuk Overclocker Ekstrem
by Adrian Jasman2026-01-29 09:47:11

COLORFUL luncurkan iGame X870E VULCAN OC, motherboard flagship untuk overclocker ekstrem.

image
Techno 5 Alasan Xiaomi 15T Series Jadi Pilihan Fotografer Profesional untuk Fotografi Kelas Pro
by Adrian Jasman2026-01-21 12:30:00

Xiaomi 15T Series hadir dengan kamera Leica, autofocus presisi, dan workflow praktis untuk fotografi