TLDR: A new report from cybersecurity firm SquareX reveals that AI agents integrated into web browsers have become a more significant cybersecurity risk than human employees. These AI tools, designed for productivity, lack the intuitive ability to detect threats, making them highly susceptible to sophisticated cyberattacks and challenging traditional security measures.
A significant shift is underway in enterprise cybersecurity, with Browser AI Agents now identified as a new and potentially more dangerous vulnerability than human users. This alarming finding comes from a recent report by cybersecurity firm SquareX, as highlighted by Techradar.
Once lauded for their potential to enhance productivity by automating repetitive online tasks, these AI-driven browser agents are increasingly being flagged as critical security blind spots. SquareX’s research directly challenges the long-held assumption that human error is the weakest link in organizational security, asserting that these automated tools are, in fact, more susceptible to cyberattacks than their human counterparts.
Vivek Ramachandran, CEO of SquareX, stated, ‘Browser AI Agents have now overtaken employees as the primary vulnerability within enterprises. They can flawlessly carry out tasks, but completely lack the intuition to detect threats.’ Unlike human staff who receive regular cybersecurity training and are increasingly adept at recognizing phishing scams, suspicious links, and unfamiliar interfaces, these AI agents operate without any inherent security instincts. Their task-driven nature means they fail to assess risk or question the authenticity of the websites and applications they interact with.
The report provided compelling demonstrations of these vulnerabilities. In one instance, using the open-source Browser Use framework, SquareX instructed an AI agent to sign up for a file-sharing service. The agent, without any human-like suspicion, unwittingly granted access to a malicious application linked to a suspicious domain—an action a trained employee would likely have flagged immediately. Another example showed an agent being tricked into entering login credentials on a phishing site during what appeared to be a routine Salesforce login.
Researchers explained that ‘These tools function with the same access rights as the user they represent.’ This parity in access privileges makes it exceedingly difficult for traditional security solutions to differentiate between legitimate activity and compromised AI behavior. Consequently, a compromised browser agent can grant hackers unrestricted access to enterprise systems, often without triggering standard security alerts. SquareX warns that even leading cybersecurity platforms, including Endpoint Protection and Zero Trust Network Access (ZTNA) systems, are currently ill-equipped to handle this emerging threat.
Also Read:
- Generative AI Empowers Hackers to Create Advanced Phishing Sites in Under 30 Seconds
- Proactive Vulnerability Testing: The Rise of AI Red Teaming for Enhanced Safety
In response to these growing risks, SquareX urges enterprises to adopt browser-native security solutions, such as Browser Detection and Response (BDR), which are designed to identify suspicious agent activity in real-time. The report emphasizes that until major browsers integrate native safeguards for AI-driven automation, organizations must independently develop robust oversight mechanisms. The report concludes by stressing ‘an urgent need not just for smarter AI agents, but for smarter oversight’ to mitigate these evolving cybersecurity challenges.


