Capsule Security Emerges From Stealth to Secure AI Agents at Runtime
好的,我现在需要帮用户总结一篇文章的内容,控制在100字以内。首先,我得仔细阅读这篇文章,了解其主要内容和关键点。 文章主要讲的是Capsule Security公司推出了一个平台,用于保护AI代理在运行时的安全。他们还提到了ClawGuard这个开源软件,可以在AI执行前检查意图,实时缓解风险。此外,他们发现了两个零日漏洞ShareLeak和PipeLeak,这些漏洞可能导致数据泄露或破坏工作流程。 接下来,我需要提取这些关键信息:公司名称、产品名称、ClawGuard的功能、发现的漏洞及其影响。同时,还要提到Capsule在RSA大会上的表现和他们对AI安全未来的看法。 现在,我要把这些信息浓缩成一段简洁的文字,确保不超过100字,并且不使用“文章内容总结”之类的开头。可能的结构是先介绍公司及其平台,然后提到ClawGuard的功能和发现的漏洞,最后说明他们的目标或影响。 检查一下字数是否合适,并确保所有重要信息都被涵盖。最后,通读一遍确保流畅自然。 </think> Capsule Security推出AI代理运行时安全平台ClawGuard,通过预调用检查评估意图,在实时缓解风险。已发现ShareLeak和PipeLeak零日漏洞。旨在帮助团队跨多类型AI代理实施策略控制。 2026-4-15 12:0:1 Author: securityboulevard.com(查看原文) 阅读量:10 收藏

Avatar photo

Capsule Security today emerged from stealth to launch a platform that secures artificial intelligence (AI) agents at runtime.

Fresh off raising $7 million in seed funding, Capsule Security CEO Naor Paz said the company’s platform makes it possible for cybersecurity teams to enforce controls and governance policies across multiple types of AI agents running in a production environment.

At the core of that capability is ClawGuard, open source software that adds a pre-invocation checkpoint to assess the intent of an AI agent before agents execute tool calls. Designed to be installed with a single click, that capability then makes it possible to mitigate the cybersecurity risks in real time without requiring proxies, gateways, software development kits (SDKs) or browser extensions, said Paz.

In fact, Capsule has already published two research papers detailing zero-day vulnerabilities in AI agents that it has dubbed ShareLeak and PipeLeak, respectively. ShareLeak is a critical severity indirect prompt injection vulnerability in Microsoft Copilot Studio (CVE-2026-21520), while PipeLeak is a separate prompt injection vulnerability discovered in the Salesforce Agentforce platform.

Both vulnerabilities are susceptible to untrusted lead-form inputs that can be used to maliciously influence agent behavior in ways that can be used to exfiltrate data or compromise an entire workflow.

Prior to its formal launch today, Capsule was one of six finalists in the CrowdStrike, Amazon Web Services (AWS) and NVIDIA Startup Accelerator contest held during the recent RSA Conference.

The pace at which organizations are deploying AI agents is already far exceeding the ability of most organizations to secure them. In some cases, AI agents are being deployed in isolated environments to limit their access to, for example, email services. However, it’s only a matter of time before AI agents are pervasively deployed across IT environments. Capsule is making a case for adding a runtime framework specifically designed to enable cybersecurity teams to apply policies to any AI agents that might be deployed with or without the consent of cybersecurity teams.

There have, of course, already been several cybersecurity incidents involving AI agents. However, it’s not likely that organizations will focus on the issue until there have been a few major cybersecurity incidents. In the meantime, savvy cybersecurity teams should be moving now to secure AI agents that, like it or not, are soon going to number in the thousands within an IT environment.

For all intents and purposes, intent is now the new perimeter in the age of AI agents, said Paz. It’s simply not possible to secure IT environments without understanding the task that an AI agent is trying to accomplish, he added. The fundamental challenge is that most AI agents have been designed to accomplish a goal at all costs, which means they will aggressively attempt to access and analyze any and all data made accessible. The only way to limit the scope of those efforts is to enforce policies and controls at the point of runtime execution in a way that can be applied to any AI agent deployed.

Recent Articles By Author


文章来源: https://securityboulevard.com/2026/04/capsule-security-emerges-from-stealth-to-secure-ai-agents-at-runtime/
如有侵权请联系:admin#unsafe.sh