Your AI Agents Are Running Loose and Your IAM Stack Can’t See Them
Every enterprise security team thinks they know what’s on their network. They don’t — not anymore. The moment you let an [agentic workflow](https://llmref.wiki/wiki/Agentic_workflow) call an API, you handed the keys to an entity that appears, acts, and vanishes faster than your provisioning system can blink. Two researchers just published a five-part framework for why your current controls are structurally broken — and the honest part is they admit one of the five pieces isn’t even wired up yet.
