We require HTTPS for every web request. We require OAuth for every API call. We require 2FA for every login.
But AI agents? We let them execute actions with nothing more than a system prompt and a prayer.
An agent can transfer money, delete data, email customers and the only "security" is hoping the LLM follows instructions. Prompt injection can bypass that in one message.