Home / Companies / P0 Security / Blog / June 2026

June 2026 Summaries

2 posts from P0 Security

Filter
Month: Year:
Post Summaries Back to Blog
Agentforce and Cortex are agent runtimes within SaaS platforms, not mere features, and their operations are invisible to traditional network-layer security tools, which are not designed to monitor internal platform activities. These agents, often created by business users through low-code builders, inherit the privileges of the roles that invoke them, allowing them to access sensitive data without crossing the network boundaries typically monitored by security systems. As companies increasingly deploy these agents, with projections indicating a significant rise in their usage by 2028, there is a growing concern about governance, with only a small percentage of organizations confident in their ability to manage such access effectively. Security challenges are highlighted by incidents like ForcedLeak and PipeLeak, which exploited vulnerabilities in Agentforce and Cortex, respectively, demonstrating the risks associated with their privileged access. To address these challenges, organizations are urged to treat in-platform agents as named non-human identities, applying strict role-scoping and lifecycle management practices, conducting thorough security reviews before activation, and monitoring agent activity as part of their identity governance processes.
Jun 25, 2026 1,001 words in the original blog post.
At Identiverse, the P0 Security team is eager to engage with attendees on pressing topics such as agentic AI identity security, PAM modernization, and Zero Trust frameworks. They are interested in understanding the challenges faced by participants and aim to share insights into their own developments, including a two-year strategic roadmap. The event presents an opportunity for collaboration and knowledge exchange, focusing on the latest advancements and concerns in the field of security.
Jun 01, 2026 60 words in the original blog post.