{"id":43747,"date":"2026-05-19T09:25:13","date_gmt":"2026-05-19T09:25:13","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/43747\/"},"modified":"2026-05-19T09:25:13","modified_gmt":"2026-05-19T09:25:13","slug":"ai-agents-are-not-inherently-malicious-but-can-be-relentless-dell-chief-security-officer-john-scimone-technology-news","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/43747\/","title":{"rendered":"\u2018AI agents are not inherently malicious but can be relentless\u2019: Dell Chief Security Officer John Scimone | Technology News"},"content":{"rendered":"<p>As more companies deploy AI agents to carry out complex tasks within internal systems and move toward automation, some security researchers have warned that these agents expand the attack surface from simple prompts to full enterprise systems, posing a serious threat to organisations. This raises the question of whether AI agents will become the new \u201cinsider threat.\u201d<\/p>\n<p>\u201cAI agents are not inherently malicious. They are designed, built, and put in place to help companies, not to cause harm. However, they are relentless. These agents are incredibly effective at achieving their objectives and finding ways to accomplish the outcomes they are assigned,\u201d John Scimone, President and Chief Security Officer, Dell, told\u00a0<a href=\"https:\/\/indianexpress.com\/\" class=\"\" rel=\"noopener nofollow\" target=\"_blank\">indianexpress.com<\/a>\u00a0in an interview at the <a href=\"https:\/\/indianexpress.com\/about\/dell\/\" class=\"\" rel=\"nofollow noopener\" target=\"_blank\">Dell<\/a> Technologies World conference currently underway in Las Vegas.<\/p>\n<p><img decoding=\"async\" class=\"lazyloading\" data-lazy-type=\"lazyloading-image\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/04\/track_1x1.jpg\" data-lazy-src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/04\/track_1x1.jpg\" alt=\"\" width=\"1px\" height=\"1px\" style=\"display:none;\"\/><\/p>\n<p>\u201cThrough that persistent and relentless focus on achieving those goals, unintended consequences and behaviours can emerge if agentic implementations are not properly governed and safeguarded,\u201d he added.<\/p>\n<p>AI agents can browse the web, read and write files, call external APIs, and query databases. However, large language models (LLMs) suffer from an unresolved flaw: prompt injection. Since LLMs do not clearly separate data from instructions,\u00a0meaning that\u00a0any data, such as the content of a web page, an email, or a log entry, can effectively be interpreted as instructions. The risk that follows is that attackers can manipulate AI agents from within trusted systems using the agent\u2019s own identity.<\/p>\n<p>Gartner says that fewer than 5 per cent of enterprise applications used task-specific AI agents in 2025. In 2026, that number is expected to increase by 800 per cent. The analyst firm also estimates that more than 40 per cent of enterprise applications will use AI agents in 2026.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"1600\" height=\"900\" class=\"lazyloading wp-image-10697376 size-full\" data-lazy-type=\"lazyloading-image\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/05\/Dell-1.jpg\" alt=\"John Scimone, President and Chief Security Officer at Dell, speaks about the risks posed by autonomous AI agents during Dell Technologies World in Las Vegas.(Image credit: Anuj Bhatia\/ The Indian Express)\"  \/> John Scimone, President and Chief Security Officer at Dell, speaks about the risks posed by autonomous AI agents during Dell Technologies World in Las Vegas.(Image credit: Anuj Bhatia\/ The Indian Express)<\/p>\n<p>\u201cWhat we have seen internally and with our customers, and with so many organisations we\u2019re partnering with across the globe that are really leaning into this space, is that they are saying: we believe in this technology, and we believe in the benefits it can bring. When you adopt a secure-by-design, secure-by-default approach and put security best practices in place, you can do this securely and resiliently. In fact, you can achieve more security and resiliency than you could with legacy architectures and traditional infrastructure implementations,\u201d Scimone said.<\/p>\n<p>Emerging internal threat<\/p>\n<p>As AI agents\u00a0are given greater access to corporate networks and more tasks are allocated to them, the problem arises when\u00a0they run 24\/7 within the network and, with their expanded capabilities, become subject to risks and threats.<\/p>\n<p>Story continues below this ad<\/p>\n<p>Wendi Whitmore, Chief Security Intelligence Officer, Palo Alto Networks, identifies autonomous AI agents as a major emerging internal threat.<\/p>\n<p>In 2025, security researchers showed that a prompt-injection attack exposed Salesforce\u2019s CRM platform to potential data theft. Salesforce quickly released patches to prevent AI agents from retrieving CRM records and sending them to external attackers. This vulnerability, dubbed \u201cForcedLeak,\u201d illustrates how AI agents without human oversight can be abused.<\/p>\n<p>In another case in 2025, security researchers found a vulnerability in OpenAI\u2019s Codex CLI coding agent that could allow attackers to execute malicious commands on a developer\u2019s machine by embedding harmful instructions in shared project files. This could lead to local system compromise, credential theft, code tampering, and potential downstream enterprise breaches, effectively turning the AI assistant into an attack entry point.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"1600\" height=\"900\" class=\"lazyloading wp-image-10697378 size-full\" data-lazy-type=\"lazyloading-image\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/05\/Dell-2.jpg\" alt=\"Security experts warn that AI agents with broad system access could expand the enterprise attack surface.(Image credit: Anuj Bhatia\/ The Indian Express)\"  \/> Security experts warn that AI agents with broad system access could expand the enterprise attack surface.(Image credit: Anuj Bhatia\/ The Indian Express)<\/p>\n<p>Not only do traditional security measures no longer work in the age of agentic AI, but a possible solution could be to treat AI agents like humans.\u00a0It is important to understand that when\u00a0a human logs into a system, they undergo identity verification, their actions are logged and monitored, and anomalous behaviour triggers alerts. Similarly, AI agents should also be governed with equivalent controls: a verified agent identity, full logging of their actions and decisions, behavioural monitoring, and complete session tracking.<\/p>\n<p>\u00a0<\/p>\n<p>Story continues below this ad<\/p>\n<p>\u201cAs we go across that continuum of trade-offs between risk and reward with agentic AI, what we see is that every company is going to have a different right answer. But the common right answer is having a process by which you govern thoughtfully. You tie it to your business strategy, and you tie it to your regulatory compliance requirements,\u201d Scimone said.<\/p>\n<p>\u201cIt\u2019s\u00a0really important that as we establish the principles for risk management, the principles for the governance that we are trying to achieve, that we have a way to actually technically instantiate it.\u00a0\u00a0It\u2019s not just about policy, but the actual technology architectures are established to enforce it and ensure that the agents behave as we design them to behave,\u201d he added.<\/p>\n","protected":false},"excerpt":{"rendered":"As more companies deploy AI agents to carry out complex tasks within internal systems and move toward automation,&hellip;\n","protected":false},"author":2,"featured_media":43748,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[17592,179,405,21982,1365,20044,26706,1798,26705,26700,407,26707,4788,3922,7498,26703,19666,26710,7537,426,26699,6454,313,14115,725,523,26708,23020,8915,26709,17775,26693,26694,1642,26696,26704,26702,337,720,26701,26698,26697,26695],"class_list":["post-43747","post","type-post","status-publish","format-standard","has-post-thumbnail","category-agentic-ai","tag-agent-security","tag-agentic-ai","tag-ai-agents","tag-ai-attack-surface","tag-ai-automation","tag-ai-compliance","tag-ai-data-security","tag-ai-governance","tag-ai-governance-frameworks","tag-ai-identity-verification","tag-ai-infrastructure","tag-ai-monitoring","tag-ai-regulation","tag-ai-resilience","tag-ai-risk-management","tag-ai-security-architecture","tag-ai-vulnerabilities","tag-ai-powered-systems","tag-artificial-intelligence-agents","tag-autonomous-systems","tag-behavioural-monitoring","tag-cyber-threats","tag-cybersecurity","tag-cybersecurity-risks","tag-dell-technologies","tag-enterprise-ai","tag-enterprise-applications","tag-enterprise-networks","tag-enterprise-security","tag-gartner-ai-forecast","tag-generative-ai-security","tag-insider-threat","tag-john-scimone","tag-large-language-models","tag-llm-security","tag-malicious-prompts","tag-openai-codex-cli","tag-palo-alto-networks","tag-prompt-injection","tag-salesforce-forcedleak","tag-secure-by-default","tag-secure-by-design","tag-wendi-whitmore"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/43747","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=43747"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/43747\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/43748"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=43747"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=43747"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=43747"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}