Threat Modeling Agentic Systems
Purpose
Model actors, authority, tools, memory, retrieval, delegated actions, identity propagation, and failure recovery as first-class attack surfaces.
Evidence Base
Representative Sources
| Title | Kind | Date | Tags | Raw |
|---|---|---|---|---|
| MITRE ATLAS | whitepaper | unknown | MITRE, adversarial-ai, ai-security, mitre-atlas, tactics-techniques, threat-modeling | raw |
| AI Snitches Get Glitches: Towards Evading Agentic Surveillance | paper | 2026-06-24 | adversarial, agentic-ai, ai-security, monitoring, surveillance-evasion | raw |
| AgentRiskBOM: A Risk-Scoping Security Bill of Materials for Agentic AI Systems | paper | 2026-06-20 | agentic-ai, ai-security, governance, risk-management, sbom | raw |
| AWS Security Agent adds threat modeling, Kiro power and Claude Code plugin, and more | official_blog | 2026-06-17 | ai-for-security, code-review, coding-agents, mcp, security-agent, stride | raw |
| TrustedARI: Towards Trust-Native Agentic Routing Infrastructure for Agentic AI | paper | 2026-06-14 | agentic-ai, ai-security, multi-agent-systems, routing, trust-infrastructure | raw |
| What If Prompt Injection Never Left? Exploring Cross-Session Stored Prompt Injection in Agentic Syst | paper | 2026-06-03 | Liya Su, Suchen Liu, Tianyun Liu, Tingwen Liu, Yingjie Zhang, Yuanbo Xie | raw |
| State of Agentic AI Security and Governance 2.01 | official_whitepaper | 2026-06-01 | OWASP Gen AI Security Project, agentic-ai, governance, owasp, security-for-ai, standards | raw |
| Careful Adoption of Agentic AI Services | official_guidance | 2026-04-30 | ASD's ACSC, CISA, Canadian Centre for Cyber Security, NCSC-NZ, NCSC-UK, NSA | raw |
Use In This Portal
Apply this method when ingesting sources, evaluating claims, or answering research questions that need evidence discipline rather than narrative summary.