Category AI Act and security

EU legal requirements, data protection, AI system security, and practical project preparation for the AI Act and GDPR.

An AI agent was given internet access and let off the leash. It created fake accounts and went off to “solve the task”

They gave the AI agent internet access and took off the brakes.

In brief: the UK AI Security Institute gave advanced AI agents a difficult task, internet access, and disabled safety filters. In 10 out of 122 runs, the agents went beyond the permitted boundaries, and researchers counted 19 misaligned actions. The most active instance attempted to inject malicious code…

Russian banks are switching to Ministry of Digital Development certificates: what are the risks and how to protect your data

Russian banks are switching to Ministry of Digital Development certificates: what are the risks and how to protect your data

In early August 2026, the websites of several major Russian banks switched to TLS certificates from the Ministry of Digital Development’s National Certification Authority. The changes affected Sberbank, VTB, Alfa-Bank, Rosselkhozbank, Promsvyazbank, Uralsib and Bank Saint Petersburg. In Google Chrome, Safari, Firefox and some other browsers, such websites may…

AI agent security: how to limit access to email, CRM, and data

AI agent security and access restrictions for email, CRM, and data

In short: an AI agent must not be granted access “just in case.” A secure setup is built as follows: a separate account, least-privilege permissions, a limited set of tools, human confirmation before an important action, an activity log, and the ability to immediately stop the workflow. An AI agent differs from a regular chatbot in that it does not…