๐๐๐ฅ ๐ถ๐ ๐ก๐ผ๐ ๐๐๐ฎ๐ถ๐น๐ฎ๐ฏ๐น๐ฒ ๐ผ๐ป @googlecloud ๐ ๐ฎ๐ฟ๐ธ๐ฒ๐๐ฝ๐น๐ฎ๐ฐ๐ฒ!
Google Cloud customers can now procure AIR through their existing account - consolidated billing, and drawing down on existing committed spend.
โBringing AIR to Google Cloud Marketplace will help customers quickly deploy, manage, and grow the companyโs AI supply chain security platform on Google Cloudโs trusted, global infrastructureโ Dai Vu, Managing Director, Marketplace & ISV GTM Programs at Google Cloud. โAIR can now securely scale and support enterprises using its platform to help secure their AI agent fleets.โ
We at @sequoia believe the @air__security team was the strongest to come out of unit 8200 this year, and we are delighted to be in business with them.
Little attention has been paid to the supply chain aspect of AI security, and this is what Air is fixing.
WE'RE ON AIR!
๐๐๐ฅ ๐ถ๐ ๐ผ๐ณ๐ณ๐ถ๐ฐ๐ถ๐ฎ๐น๐น๐ ๐ผ๐๐ ๐ผ๐ณ ๐๐๐ฒ๐ฎ๐น๐๐ต - ๐๐ถ๐๐ต $๐ฑ๐ฌ๐ ๐ถ๐ป ๐ณ๐๐ป๐ฑ๐ถ๐ป๐ด ๐น๐ฒ๐ฑ ๐ฏ๐ @sequoia , and @Greenoaks .
We started AIR with a simple belief: as AI agents become more capable, the security model around them has to evolve.
Agents are no longer just generating answers. Theyโre connecting to tools, skills, MCPs, plugins, websites, and internal data - and taking real actions across the enterprise.
Today, weโre introducing the ๐ฐ๐ผ๐ป๐๐ฒ๐ ๐ ๐ณ๐ถ๐ฟ๐ฒ๐๐ฎ๐น๐น ๐ณ๐ผ๐ฟ ๐๐ ๐ฎ๐ด๐ฒ๐ป๐๐: a new security layer built to continuously analyze what enters an agentโs context, control what can run, and stop threats in real time before they turn into action.
Weโre incredibly grateful to our investors, partners, customers, and everyone who believed in us early.
This is a huge milestone for our team, and an even bigger beginning โค๏ธ
Read our full story in the first comment ๐
๐ OWASP Top 10 for Skills Standard is now publicly available!
Earlier this year, Niv Hoffman, our CTO & Co-founder, joined Ken Huang, Bhavya Gupta, and the rest of the @owasp leadership team to build the security standard for the skills ecosystem.
The new standard is a must-read for any security practitioner looking to secure this new software layer and the supply chain risks it introduces.
Looking forward to implementing it together with the foundation, the labs, and the whole open source community!
Check it out: https://t.co/5MSwGLUy2O
๐๏ธ Niv Hoffman on AWS Israel's podcast!
Niv, Our CTO & Co-Founder, joined Gili Nachum from @awscloud on AWS Israelโs โBuilding AIโ podcast to dive into the growing skills ecosystem - the risks hiding behind seemingly useful AI add-ons, and how everyone can use them more safely.
In the episode:
โช๏ธ ๐๐ผ๐ ๐ฎ ๐ณ๐ฎ๐ธ๐ฒ ๐๐ธ๐ถ๐น๐น ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ ๐ฎ๐ฒ,๐ฌ๐ฌ๐ฌ+ ๐๐ ๐ฎ๐ด๐ฒ๐ป๐๐ - and what the experiment revealed about how easily trust can be exploited.
โช๏ธ ๐๐ผ๐ ๐ฆ๐ธ๐ถ๐น๐น๐๐ฎ๐ฐ๐ธ๐ถ๐ป๐ด ๐๐ผ๐ฟ๐ธ๐ - and why determining whether a skill is safe is much harder than it seems.
โช๏ธ ๐๐ผ๐ ๐๐ผ ๐๐๐ฒ ๐๐ธ๐ถ๐น๐น๐ ๐บ๐ผ๐ฟ๐ฒ ๐๐ฎ๐ณ๐ฒ๐น๐ - practical steps for evaluating skills, protecting development environments, and building a secure internal marketplace.
๐ Watch the full episode - https://t.co/kTSGifwN9o
Huge thanks to Niv Hoffman, Ken Huang, Omar A. Turner, and Apostol Vassilev for a great discussion on the OWASP Top 10 for Agentic Skills Initiative at Black Hat.
And thanks to everyone who joined us!
๐๐น๐ฎ๐ฐ๐ธ ๐๐ฎ๐ ๐ฎ๐ฌ๐ฎ๐ฒโฆ ๐๐ต๐ฎ๐ ๐ฎ ๐ฟ๐ถ๐ฑ๐ฒ! ๐ช
Thank you to everyone who stopped by AIR Booth, spun the wheel, met the stars of the circus, and shared thoughts and challenges
with our team.
Until next time ๐ซ
Launching the AIR website.
The first step in defining supply chain security for AI agent fleets. Itโs a big moment for us.
This is where our story begins, but itโs only the beginning.
Explore the new website: https://t.co/WzZc7RCrRA
๐จ BREAKING
Our latest research uncovered multiple AI skills impersonating trusted AI brands like Anthropic and OpenAI - and passing public security scanners.
How?
๐ฉ They verified the package, not the repository behind it.
๐ฉ They trusted the dependency name, not who actually owned it.
๐ฉ They validated what the skill declared - not whether those claims were true.
As AI agents increasingly rely on external packages, repositories, and third-party resources, a one-time scan is no longer enough.
Trust has to be continuously verified.
Thatโs exactly why we built AI Add-on ScannAIR - to continuously vet every dependency, repository, package, and publisher behind every AI add-on, instead of trusting what it claims to be. ๐ญ
https://t.co/Z53zYHVuyS
The full research is in the first comment ๐
๐จ NEW RESEARCH
๐ ๐๐ฟ๐๐๐๐ฒ๐ฑ ๐๐ ๐๐ธ๐ถ๐น๐น ๐ฐ๐ฎ๐ป ๐ฏ๐ฒ๐ฐ๐ผ๐บ๐ฒ ๐บ๐ฎ๐น๐ถ๐ฐ๐ถ๐ผ๐๐ ๐๐ถ๐๐ต๐ผ๐๐ ๐ฐ๐ต๐ฎ๐ป๐ด๐ถ๐ป๐ด ๐ฎ ๐๐ถ๐ป๐ด๐น๐ฒ ๐น๐ถ๐ป๐ฒ ๐ผ๐ณ ๐ฐ๐ผ๐ฑ๐ฒ.
In our latest research, we uncovered ๐ฆ๐ธ๐ถ๐น๐น๐๐ฎ๐ฐ๐ธ๐ถ๐ป๐ด - a new supply chain attack that allowed us to hijack 925 AI skills, affecting 134K+ AI agents.
๐ง๐ต๐ฒ ๐ฎ๐๐๐ฎ๐ฐ๐ธ ๐๐ฒ๐ป๐ ๐๐ป๐ป๐ผ๐๐ถ๐ฐ๐ฒ๐ฑ ๐ฏ๐ ๐ฎ๐น๐น ๐ฝ๐๐ฏ๐น๐ถ๐ฐ ๐๐ฒ๐ฐ๐๐ฟ๐ถ๐๐ ๐๐ฐ๐ฎ๐ป๐ป๐ฒ๐ฟ๐.
๐ฉ The takeaway is simple: Donโt just vet the skill. Vet everything it depends on. Continuously.
Read the research: https://t.co/cSU58K8WKN
๐ญ๐ณ,๐ด๐ฎ๐ฎ ๐ผ๐ฝ๐ฒ๐ป-๐๐ผ๐๐ฟ๐ฐ๐ฒ ๐๐ธ๐ถ๐น๐น๐. ๐ฒ.๐ณ๐ + ๐ถ๐ป๐๐๐ฎ๐น๐น๐ฎ๐๐ถ๐ผ๐ป๐. ๐ข๐ป๐ฒ ๐บ๐ฎ๐๐๐ถ๐๐ฒ ๐ฎ๐๐๐ฎ๐ฐ๐ธ ๐๐๐ฟ๐ณ๐ฎ๐ฐ๐ฒ.
๐ชWelcome to the Circus of Skills
Many of AI add-ons rely on external instruction sources that can change at any moment - turning trusted add-ons into an enterprise risk.
๐๐ป ๐๐ต๐ถ๐ ๐ฟ๐ฒ๐๐ฒ๐ฎ๐ฟ๐ฐ๐ต, ๐๐ฒ ๐ฟ๐ฒ๐๐ฒ๐ฎ๐น:
๐คก 17,822 open-source skills vulnerable to Untrusted External Instructions Sources
๐คก Why this attack vector now appears in the OWASP Agentic Skills Top 10 Risks
๐คก What enterprises need to do before trusting AI add-ons at scale
Read he full research: https://t.co/Dmc5v7oK55
๐๐ฃ๐ ๐บ๐ฎ๐น๐ถ๐ฐ๐ถ๐ผ๐๐ ๐จ๐ ๐๐ก๐ก ๐จ๐๐๐ฏ๐๐ ๐๐ช๐ก๐ก ๐๐ค๐ฃ๐ฉ๐ง๐ค๐ก ๐ค๐ ๐ค๐ซ๐๐ง ๐ฎ๐ฒ,๐ฌ๐ฌ๐ฌ+ ๐ผ๐ ๐๐๐๐ฃ๐ฉ๐จ - ๐๐ฃ๐ ๐ฃ๐ค๐ฉ ๐ฎ ๐๐ถ๐ป๐ด๐น๐ฒ ๐จ๐๐๐ช๐ง๐๐ฉ๐ฎ ๐จ๐๐๐ฃ๐ฃ๐๐ง ๐ฑ๐ฒ๐๐ฒ๐ฐ๐๐ฒ๐ฑ ๐ถ๐
AI skills are changing how enterprises adopt AI. Theyโre discovered on social media, shared on GitHub, and installed into AI agents in seconds. Security, however, hasnโt caught up.
๐๐ป ๐๐ต๐ถ๐ ๐ฟ๐ฒ๐๐ฒ๐ฎ๐ฟ๐ฐ๐ต, ๐๐ฒ ๐ฟ๐ฒ๐๐ฒ๐ฎ๐น:
๐จ How the attack worked
๐จ Why existing scanners failed to detect it
๐จ What enterprises must do to secure AI add-ons before they become the next major attack surface.
Read the full research: https://t.co/qV9tOJhwzo