Skip to content
IC
All posts

Topic · 6 posts

AI agents

Every Inline Code post tagged AI agents, ordered most recent first.

AI · Supply chain

AI supply chain security: four ways code now enters your estate without a vendor review

Model weights, agent skills, MCP servers and packages your coding assistant invented all execute in your environment, and none of them trigger a vendor assessment. The documented incidents, the measured scale, and the controls that close the gap before CPS 230 makes it an audit finding.

30 August 2026 · 19 min

AI · Security operations

The agentic SOC is real, and your logs are now prompts: how AI security monitoring actually works, and where it breaks

Microsoft, Google and CrowdStrike now ship autonomous agents that triage alerts in real time with no analyst in the loop. What agentic SOC tooling actually does, the research showing attackers can prompt-inject it through ordinary log fields, and the control set that holds under APRA scrutiny.

30 August 2026 · 29 min

AI · Threat intelligence

Jailbroken AI as an attack tool: how attackers actually use it, and how to defend

Attackers jailbreak frontier models, rent dark LLMs like WormGPT, and bolt AI onto phishing, deepfake fraud, and agentic intrusions. The documented tradecraft, the real incidents, and the defence-in-depth controls that hold, with Rust guardrail code.

3 August 2026 · 15 min

AI · Channel security

OpenClaw, WhatsApp and Telegram: the phone-linked AI agent threat model, the attacks already in the wild, and the gold-standard alternatives

OpenClaw lets anyone wire a personal WhatsApp or Telegram account to an AI agent in ten minutes. Bitsight found 30,000 instances exposed on the public internet in a fortnight. This is the architecture, the attacks, the config that breaks it, and the official-API pattern that holds.

3 June 2026 · 24 min

AI · Architecture

Long-term memory for agnostic agents: a working architecture on Bedrock AgentCore

Bedrock AgentCore gives you a managed runtime, a long-term memory store, and a deliberately framework- and model-agnostic SDK. That keeps the agent code portable while the memory plane becomes the new audit liability. Here is the architecture that uses AgentCore Memory properly, the governance controls memory-poisoning and Privacy Act obligations force on top of it, and the rollout cadence that keeps the deployment defensible.

20 May 2026 · 21 min

AI · Authorisation

OAuth scopes weren't built for AI agents: the delegation model that holds up under prompt injection

OAuth scopes assume a human approves once, an app does narrow work, and the trust horizon is months. AI agents break every part of that assumption. The architecture that holds is a two-principal model with short-lived delegation tokens, ReBAC for structure, ABAC for context, and per-action consent gating destructive operations. Here is the design and the rollout.

3 May 2026 · 20 min

Get started

Bring AI risk under board oversight in two weeks.

A thirty-minute discovery call costs nothing. We confirm fit, scope, and timing, then issue a fixed-fee statement of work within two business days.