There is a quiet assumption running through most conversations about AI security: that the danger is coming, but it isn't here yet. That assumption is mostly right. What fewer people acknowledge is why.
Today's AI agents are not safe because anyone made them safe. They are safe because they are not yet competent enough to be reliably dangerous.
This is not a security posture. It is borrowed time.
The Attack That's Already Happening
Prompt injection does not require stolen credentials or a zero-day exploit.









