Search

Tag: #authorization12 results

Policy Secures Bedrock AgentCore Agents

Policy Secures Bedrock AgentCore Agents

Amazon Bedrock AgentCore introduces Policy for deterministic enforcement of business rules. It converts natural language into Cedar policies for fine-grained, identity-aware access controls on tools and data. Policies are applied via AgentCore Gateway at runtime.

AWS Machine Learning BlogOfficialMar 12#agent#policy#authorization
⚙️

Beyond Zero Trust: Securing AI Execution

The article argues that zero trust verifies who can access a capability, but AI agents require a second layer that verifies whether a specific action, target, and parameter should actually be executed. Adversarial Integrity limits the consequences of mistakes or compromised components across the execution chain rather than assuming every component is trustworthy.

Auth Propagation in Multi-Agent AI

Auth Propagation in Multi-Agent AI

This arXiv paper identifies authorization propagation as a key security challenge in multi-agent AI, distinct from prompt injection. It formalizes the problem, outlines three sub-problems (transitive delegation, aggregation inference, temporal validity), and proposes seven requirements for authorization architectures. It advocates treating identity governance as core infrastructure, backed by production platform evidence.

Page 1 of 2