cd /news/ai-safety/your-ai-agents-system-prompt-is-not-… · home topics ai-safety article
[ARTICLE · art-119965] src=helpnetsecurity.com ↗ pub= topic=ai-safety verified=true sentiment=· neutral

Your AI agent’s system prompt is not a security control

AWS and SANS Institute experts warn that system prompts are not a security control for AI agents, as they can be bypassed through prompt injection. Gee Rittenhouse, who oversees Security Hub, GuardDuty, and Inspector at AWS, and Eric Johnson, a fellow at the SANS Institute, recommend enforcing user permissions at retrieval time within role-based or attribute-based access systems.

read1 min views2 publishedSep 3, 2026

An AI agent told in its system prompt to show a user only what that user is cleared to see will hand over more the moment someone talks it into doing so. Gee Rittenhouse, who oversees Security Hub, GuardDuty, and Inspector at AWS, and Eric Johnson, a fellow at the SANS Institute, put the fix one layer down: scope the query to the user’s permissions at retrieval time, inside the role-based or attribute-based access system … More

The post Your AI agent’s system prompt is not a security control appeared first on Help Net Security.

── more in #ai-safety 4 stories · sorted by recency
── more on @aws 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/your-ai-agents-syste…] indexed:0 read:1min 2026-09-03 ·