📰 Once an AI agent steps out of the chat box, what cybersecurity firms face is no longer just “whether the model might answer incorrectly.” Instead, it comes down to whether, with legitimate credentials, it can read SharePoint, run SQL, modify code, and even click through payment approvals in an ERP.
To be honest, the most troublesome part is right here: an agent isn’t an employee, yet it holds system credentials; it isn’t traditional software, yet it can proactively call tools, access data, and carry out tasks. Even with a valid identity and a normal login, it may still perform actions nobody expects—because of overly broad permissions, incorrect tool calls, or malicious prompt influence.
🔥 So the focus of this round of cybersecurity is shifting—from perimeter networks and endpoints to identity, data, and runtime. In the past, firewalls, EDR, and IAM were handled in separate lanes, but once agents appear, enterprises have to ask: are the things it’s doing still consistent with the original purpose it was authorized for?
PANW is taking a platform approach: it has bundled network security, cloud security, SOC, identity, and AI security under one umbrella, with the latest quarterly revenue reaching $3.41 billion, up 34% year over year. CRWD is closer to where the action happens. Since an agent ultimately runs scripts, writes files, and modifies system processes, it will land on servers, containers, or endpoints—its latest quarterly revenue grew 26% year over year, and ARR grew 25%.
💡 What’s really interesting is the identity-and-data side. SAIL’s latest quarterly ARR grew 25% year over year; SaaS ARR grew 36%; AI-driven ARR has already surpassed $70 million; and AI products contributed more than 30% of net new ARR. VRNS’s SaaS ARR grew 52% year over year—its goal is to solve what data an agent can actually see and what permissions it holds.
As agents increasingly enter enterprise internal networks, what cybersecurity firms sell may no longer be only “attack prevention.” They’ll also need to control machine identities, tool usage, and the execution process. Which direction do you think is most likely to see a breakthrough first: identity governance, data permissions, or runtime security?
#AI安全 #网安 #AIAgent #Web3-инвестирование