Welivesecurity iconWelivesecuritySep 21, 2026 ~7 min source read

SMBs under pressure: AI agents expand access while classic attacks scale faster

Small and mid-size businesses are adopting AI agents to boost productivity, but each agent and third-party skill widens the attack surface. Limited IT staff and weak governance mean risks can cascade and old attack methods become cheaper and faster.

The SMB cybersecurity squeeze: AI agents at work, old attacks in overdrive

Share this story

Send the public story page.

Useful takeaways from this story.

Agent risks include permission abuse, cascading failures in multi-agent chains, hallucination-driven exploits, long-term memory poisoning, and indirect prompt injection.

SMB defenses should match available time and expertise: governance, continuous vetting of skills and tools, least-privilege access, human review points, and monitoring for downstream changes.

Overview

SMBs typically have thin IT and security resources. Cybersecurity duties are often one menu item among many for a single person or small team. Many organizations adopt AI before mapping risks: ESET's global survey of 4,400 SMB decision-makers found 40 percent had no AI policy. Governance often follows a breach.

How AI agents change the risk profile

Every agent acts through permissions granted to it. If an agent can read documents and call external services, anything that influences the agent's instructions can change what it does with those permissions.

Specific technical threats

  • Permission abuse: A seemingly harmless skill can request broad access and later misuse it.
  • Cascading failures: In multi-agent pipelines, a manipulated agent output can propagate and trigger harmful automated actions.
  • Indirect prompt injection: Adversaries can hide commands in web pages, emails, or other retrieved data that agents treat as token streams, causing unintended actions.
  • Long-term memory poisoning: Malicious data stored in an agent's memory can lie dormant until used to commit fraud or other abuses.

Practical steps for SMBs with limited resources

SMBs need defenses designed for limited time and expertise. Practical measures include:

  • Establish basic AI governance: create at least a minimal AI policy that defines approved agents, skills, and data access patterns.
  • Enforce least privilege: limit agent permissions to the minimum required and separate duties across accounts where possible.
  • Human review points: insert manual approvals for actions that change access, move sensitive data, or affect other systems.
  • Logging and alerts: capture agent activity and external calls so suspicious behavior can be investigated quickly.
  • Prefer supplier solutions built for SMB workflows: choose tooling that automates routine security checks and integrates with existing IT responsibilities.

Bottom line

AI agents can deliver value to SMBs, but they also expand the attack surface in ways that outpace traditional security checks. Given limited staff, SMBs should prioritize governance, continuous vetting of agent supply chains, least-privilege access, and human oversight at decision points where agents interact with sensitive systems.

More context around this story.

The SOC Doesn't Need to Start Over with Every Alert
Thehackernews iconThehackernewsSep 25, 2026

The SOC Doesn't Need to Start Over with Every Alert

Security leaders keep debating whether AI will produce an entirely new class of cyberattack. The nearer change is quieter and already visible: AI has made a failed attack cheap to retry. The routine version looks like this. An attacker lands on a low-privilege cloud account, and the first try at privilege escalation go

Beyond Basic Entry: Smart Access Systems
Cm Alliance iconCm AllianceSep 14, 2026

Beyond Basic Entry: Smart Access Systems

The traditional metal key is quickly becoming a thing of the past in modern businesses. For decades, security meant a sturdy lock and a closely guarded key ring. Today, smart access control has changed physical security from a simple barrier into an intelligent, data-rich system. This new approach enhances operations,

Loading more related stories...

Keep reading in the app

Open the app view to save this story, compare related coverage, and continue from the same source.

Open in app