AI Agent Security: Detecting Risky Behavior (Live Demo)

Sep 18, 2026

Watch five AI agents tackle a CTF and start coordinating with one another. Learn how to detect risky agent behavior using @goteleport graphs, risk scoring, and custom classifiers.

Ben Arent explores lessons from the Hugging Face incident, then demonstrates how agent identity, scoped access, and activity monitoring help secure AI agents running against infrastructure.

00:00 Why AI agents need identity security

02:00 Infrastructure access and credential sprawl

03:28 Teleport’s approach to identity and access

06:22 The Agentic Identity Framework

07:37 From coding assistants to autonomous agents

11:36 The Hugging Face incident and ExploitGym

14:03 From Zero Trust to Agent Trust

16:08 Teleport Beams: Sandboxed agent environments

19:15 Demo setup: Five agents and a CTF

21:50 Live demo: Agents coordinate and share findings

24:58 Detecting and investigating agent activity

26:31 Risk scoring and custom classifiers

27:59 Session recordings across infrastructure

28:29 Takeaways: Constrain access and monitor behavior