← Back to glossary
Glossary

Data Exfiltration (Agent)

Reviewed 9 April 2026 Canonical definition

Data exfiltration via AI agents occurs when an agent, whether compromised or misconfigured, transmits sensitive data to an unauthorised destination. Agents are particularly high-risk exfiltration vectors because they routinely access internal systems, process sensitive data, and make outbound API calls — all of which can be exploited if access controls and output monitoring are insufficient.