<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Iam on Technodrone</title><link>https://blog.technodrone.cloud/tags/iam/</link><description>Recent content in Iam on Technodrone</description><generator>Hugo</generator><language>en</language><lastBuildDate>Wed, 15 Jul 2026 07:11:00 +0300</lastBuildDate><atom:link href="https://blog.technodrone.cloud/tags/iam/index.xml" rel="self" type="application/rss+xml"/><item><title>Tool Misuse &amp; Exploitation: When Your Agent's Legitimate Tools Become Weapons (ASI02)</title><link>https://blog.technodrone.cloud/2026/07/tool-misuse-owasp-agentic-top10.html</link><pubDate>Wed, 15 Jul 2026 07:11:00 +0300</pubDate><guid>https://blog.technodrone.cloud/2026/07/tool-misuse-owasp-agentic-top10.html</guid><description>&lt;p&gt;This is post #2 of the &lt;a href="https://blog.technodrone.cloud/2026/07/aws-intro-owasp-agentic-top10.html"&gt;OWASP Agentic AI Top 10: What Builders on AWS Need to Know&lt;/a&gt; series.&lt;/p&gt;
&lt;p&gt;Your customer service agent has access to an email tool. Makes sense. It needs to send order confirmations.&lt;/p&gt;
&lt;p&gt;But that same email tool can also send emails to &lt;em&gt;anyone&lt;/em&gt;. With &lt;em&gt;any content&lt;/em&gt;. Including your entire customer database as an attachment.&lt;/p&gt;
&lt;p&gt;The agent wasn&amp;rsquo;t hacked. The tool wasn&amp;rsquo;t compromised. The agent simply used a legitimate tool in a way you never intended. And because you gave it access to the full email API instead of just &amp;ldquo;send order confirmations,&amp;rdquo; there was nothing stopping it.&lt;/p&gt;</description></item><item><title>Identity &amp; Privilege Abuse: When Your Agent Acts Like It Owns the Place (ASI03)</title><link>https://blog.technodrone.cloud/2026/07/identity-privilege-owasp-agentic-top10.html</link><pubDate>Wed, 15 Jul 2026 07:10:00 +0300</pubDate><guid>https://blog.technodrone.cloud/2026/07/identity-privilege-owasp-agentic-top10.html</guid><description>&lt;p&gt;This is post #3 of the &lt;a href="https://blog.technodrone.cloud/2026/07/aws-intro-owasp-agentic-top10.html"&gt;OWASP Agentic AI Top 10: What Builders on AWS Need to Know&lt;/a&gt; series.&lt;/p&gt;
&lt;p&gt;Your engineering manager builds an agent to help her team. She gives it access to the team&amp;rsquo;s Jira board, their code repos, and the internal wiki. Normal stuff.&lt;/p&gt;
&lt;p&gt;Then the agent delegates a subtask to a &amp;ldquo;helper&amp;rdquo; agent. And that helper inherits &lt;em&gt;all&lt;/em&gt; of the manager&amp;rsquo;s permissions. The full repo access. The HR data she can see. The production deployment keys cached in the session.&lt;/p&gt;</description></item></channel></rss>