{"id":372826,"date":"2026-07-21T03:16:00","date_gmt":"2026-07-21T10:16:00","guid":{"rendered":"https:\/\/cms-articles.softonic.io\/en\/?p=372826"},"modified":"2026-07-21T03:16:19","modified_gmt":"2026-07-21T10:16:19","slug":"machine-agents-now-create-a-major-security-blind-spot-they-log-in-as-employees","status":"publish","type":"post","link":"https:\/\/cms-articles.softonic.io\/en\/machine-agents-now-create-a-major-security-blind-spot-they-log-in-as-employees\/","title":{"rendered":"Machine agents now create a major security blind spot: they log in as employees"},"content":{"rendered":"<p class=\"wp-block-paragraph\">By 2025, workplace agents had spread into customer service, data processing, and operations, and they brought a new identity problem with them for enterprise security teams.<\/p>\n\n<p class=\"wp-block-paragraph\">A lot of these agents still log in with <strong>employee credentials<\/strong>. So when data gets pulled, records get updated, customers get answered, or actions get triggered, you can&#8217;t always tell whether it was a person or an automated system. The situation gets messier as sanctioned tools and shadow IT keep adding more accounts, more access paths, and more gaps in governance.<\/p>\n\n<p class=\"wp-block-paragraph\">Recent 2025 research puts numbers to it: <strong>75% of employees<\/strong> now use these tools at work, 59% use ones that haven&#8217;t been approved, unsanctioned use is up 156% since 2023, and 47% access generative tools through personal accounts.<\/p>\n\n<p class=\"wp-block-paragraph\">Beyond subscriptions, visibility gets <strong>thin fast<\/strong>.<\/p>\n\n<p class=\"wp-block-paragraph\">If you run security, pay attention. Shared logins weaken audit trails, accountability, compliance, and incident response, while that same 2025 research shows <strong>63% of organizations<\/strong> either still don&#8217;t have a policy or are still building one. Add in the 38% of employees who admit they shared confidential data without approval, breach costs near 670,000 from unsanctioned services, again according to the same 2025 research, and the move from chatbot experiments to autonomous systems working inside the business, and the argument for <a href=\"https:\/\/en.softonic.com\/articles\/the-crucial-importance-of-identity-security-in-the-era-of-ai\" rel=\"noopener\">dedicated non-human identities<\/a>, separate provisioning, lifecycle controls, access reviews, and monitoring gets hard to dismiss.<\/p>","protected":false},"excerpt":{"rendered":"<p>By 2025, workplace agents had spread into customer service, data processing, and operations, and they brought a new identity problem with them for enterprise security teams. A lot of these agents still log in with employee credentials. So when data gets pulled, records get updated, customers get answered, or actions get triggered, you can&#8217;t always &hellip; <a href=\"https:\/\/cms-articles.softonic.io\/en\/machine-agents-now-create-a-major-security-blind-spot-they-log-in-as-employees\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Machine agents now create a major security blind spot: they log in as employees&#8221;<\/span><\/a><\/p>\n","protected":false},"author":9326,"featured_media":372825,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","wpcf-pageviews":0},"categories":[1015],"tags":[],"usertag":[],"vertical":[],"content-category":[6771],"class_list":["post-372826","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","content-category-ai"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/372826","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/users\/9326"}],"replies":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/comments?post=372826"}],"version-history":[{"count":1,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/372826\/revisions"}],"predecessor-version":[{"id":372827,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/372826\/revisions\/372827"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/media\/372825"}],"wp:attachment":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/media?parent=372826"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/categories?post=372826"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/tags?post=372826"},{"taxonomy":"usertag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/usertag?post=372826"},{"taxonomy":"vertical","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/vertical?post=372826"},{"taxonomy":"content-category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/content-category?post=372826"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}