Slide 27 of 28
Part 4 — PreventionSlide 27
Slide 27 · Quiz
Test what you know
Five questions. No memorization required — just understanding.
QUESTION 01 OF 05
An IT admin agent holds SSH credentials in memory after completing a server patch. Later, a support engineer with limited access prompts the agent to set up SSH access for them — and it does, using the cached admin credentials. What is the core reason this is a security failure?
QUESTION 02 OF 05
A finance manager agent delegates a reporting task to a DB query sub-agent, passing its full permission set. An attacker steers the sub-agent to access HR and legal data. What is the underlying vulnerability?
QUESTION 03 OF 05
A crafted email instructs an email-sorting agent to forward a payment instruction to a finance agent. The finance agent processes the payment because it trusts messages from internal agents. What security principle does this violate?
QUESTION 04 OF 05
A procurement agent validates a user's $50,000 spending limit at the start of a long-running workflow. Midway through, the limit is reduced to $10,000 — but the agent isn't notified and completes the full $50,000 transaction using the original token. What type of vulnerability is this?
QUESTION 05 OF 05
Why does giving agents managed non-human identities (with their own distinct identity records and credentials) improve security — rather than just using the deploying user's credentials?
← Back Done → See what you learned