What we are reading, and what we think it means.
Reviews of the research everyone is quoting, read for the findings that did not make the headline.
- Sep 2026
SalesBleed, and the agent that already had the permissions
Someone typed instructions into a Salesforce web form. When an employee asked the company’s AI agent about new leads, it followed them and sent account data to a stranger. It never needed more access than the employee already had.
- Sep 2026
Fine-grained authorization, and why your systems still run on roles
A model that decides per object and per relationship is tighter than one that decides per job title. The ideas are decades old and the production designs are published, yet the systems holding your data still decide by role. The reason is not that the idea is wrong.
- Sep 2026
The confidence gap in AvePoint’s State of AI 2026
Four in five organisations are confident they can prevent unauthorised access. Among the most confident, 62% had an AI-related unauthorised access incident anyway. That gap is the report.
Osterman Research for AvePoint, The State of AI 2026 (n=750)
- Sep 2026
What the 2026 Cost of a Data Breach report says about access
IBM and Ponemon put a number on the AI breach year. The one that matters is not the headline cost — it is that 92% of the organisations breached through AI lacked proper AI access controls.
IBM and Ponemon Institute, Cost of a Data Breach Report 2026