[](https://www.paloaltonetworks.com/?ts=markdown) * [](https://www.paloaltonetworks.com/?ts=markdown) * Products Products AI Security [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-AIRS-logo-nav.svg)](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) [AI Security Platform](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) * [AI Gateway](https://www.paloaltonetworks.com/ai-security/ai-gateway?ts=markdown) * [AI Model Security](https://www.paloaltonetworks.com/ai-security/ai-model-security?ts=markdown) * [AI Red Teaming](https://www.paloaltonetworks.com/ai-security/ai-red-teaming?ts=markdown) * [AI Runtime Security](https://www.paloaltonetworks.com/ai-security/ai-runtime-security?ts=markdown) * [Agent Security](https://www.paloaltonetworks.com/ai-security/agent-security?ts=markdown) * [AI Posture Management](https://www.paloaltonetworks.com/prisma/cloud/ai-spm?ts=markdown) Secure GenAI Tools * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) Network Security [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/strata-logo-nav.svg)](https://www.paloaltonetworks.com/network-security?ts=markdown) [Secure the Network](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [Quantum Safe Security](https://www.paloaltonetworks.com/network-security/quantum-safe-security?ts=markdown) * [Next-Gen Trust Security](https://www.paloaltonetworks.com/network-security/next-gen-trust-security?ts=markdown) * [OT / Industrial Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown) * [Device \& IoT Security](https://www.paloaltonetworks.com/network-security/device-security?ts=markdown) * [5G Security](https://www.paloaltonetworks.com/network-security/5g-security?ts=markdown) * [Managed Firewalls - Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) * [Managed Firewalls - AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) [Cloud-Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Advanced IP Defense](https://www.paloaltonetworks.com/network-security/advanced-ip-defense?ts=markdown) SASE [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-sase-logo-nav.svg)](https://www.paloaltonetworks.com/sase?ts=markdown) [Secure Access (SASE)](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma Access (ZTNA)](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) Security Operations [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-logo-nav.svg)](https://www.paloaltonetworks.com/cortex?ts=markdown) [Security Operations](https://www.paloaltonetworks.com/cortex?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Extended Detection \& Response](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Security Orchestration \& Automation](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Attack Surface Management](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Exposure Management](https://www.paloaltonetworks.com/cortex/exposure-management?ts=markdown) * [Email Security](https://www.paloaltonetworks.com/cortex/advanced-email-security?ts=markdown) * [Threat Intelligence Management](https://www.paloaltonetworks.com/cortex/threat-intel-management?ts=markdown) * [Agentic-first Automation](https://www.paloaltonetworks.com/cortex/agentix?ts=markdown) * [Identity Threat Detection and Response](https://www.paloaltonetworks.com/cortex/itdr?ts=markdown) [Endpoint Security](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Endpoint Protection](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Agentic Endpoint Security](https://www.paloaltonetworks.com/cortex/agentic-endpoint-security?ts=markdown) * [Ransomware Protection](https://www.paloaltonetworks.com/cortex/ransomware-protection?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/cortex/digital-forensics?ts=markdown) [Data Security](https://www.paloaltonetworks.com/cortex/data-security?ts=markdown) Cloud Security [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-cloud-logo-nav.svg)](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) [Application Security Overview](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Application Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/application-security-posture-management?ts=markdown) * [Software Supply Chain Security](https://www.paloaltonetworks.com/cortex/cloud/software-supply-chain-security?ts=markdown) * [Infrasture-as-Code (IaC) Security](https://www.paloaltonetworks.com/cortex/cloud/infrastructure-as-code-security?ts=markdown) * [Software Composition Analysis](https://www.paloaltonetworks.com/cortex/cloud/software-composition-analysis?ts=markdown) * [Secrets Security](https://www.paloaltonetworks.com/cortex/cloud/secrets-security?ts=markdown) * [Open Partner Ecosystem](https://www.paloaltonetworks.com/cortex/cloud/appsec-partner-ecosystem?ts=markdown) [Cloud Posture Security Overview](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/cloud-security-posture-management?ts=markdown) * [Cloud Infrastructure Entitlement Management](https://www.paloaltonetworks.com/cortex/cloud/cloud-infrastructure-entitlement-management?ts=markdown) * [Data Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/data-security-posture-management?ts=markdown) * [AI Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/ai-security-posture-management?ts=markdown) * [Vulnerability Management](https://www.paloaltonetworks.com/cortex/cloud/vulnerability-management?ts=markdown) * [Cloud Attack Surface Management](https://www.paloaltonetworks.com/cortex/cloud/attack-surface-management?ts=markdown) [Cloud Runtime Security Overview](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Cloud Detection and Response](https://www.paloaltonetworks.com/cortex/cloud-detection-and-response?ts=markdown) * [Container \& Kubernetes Security](https://www.paloaltonetworks.com/cortex/cloud/kubernetes-and-container-security?ts=markdown) * [Cloud Workload Protection](https://www.paloaltonetworks.com/cortex/cloud/cloud-workload-protection?ts=markdown) * [API Security](https://www.paloaltonetworks.com/cortex/cloud/api-security?ts=markdown) * [Serverless Security](https://www.paloaltonetworks.com/cortex/cloud/serverless-security?ts=markdown) Identity Security [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/idira-logo-nav.svg)](https://www.paloaltonetworks.com/idira?ts=markdown) [Human Identities](https://www.paloaltonetworks.com/idira/human?ts=markdown) * [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown) * [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown) * [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown) * [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown) * [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown) * [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown) [Machine Identities](https://www.paloaltonetworks.com/idira/machine?ts=markdown) * [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown) * [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown) * [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown) [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown) [See All Products](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown) * [![Overview icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-default-orange.svg) Overview](#products-panel-0) * [![AI Security icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-prisma-blue.svg) AI Security](#products-panel-1) * [![Network Security icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-strata.svg) Network Security](#products-panel-2) * [![SASE icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-prisma-blue.svg) SASE](#products-panel-3) * [![Security Operations icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-cortex.svg) Security Operations](#products-panel-4) * [![Cloud Security icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-cortex.svg) Cloud Security](#products-panel-5) * [![Identity Security icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-idira.svg) Identity Security](#products-panel-6) [See All Products](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown) [![AI Security icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-AIRS-logo-nav.svg) AI Security Discover, assess and protect AI apps, agents and employee use of GenAI tools](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) [![Network Security icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/strata-logo-nav.svg) Network Security AI-powered NetSec with next-gen firewalls, inline defense and unified management](https://www.paloaltonetworks.com/network-security?ts=markdown) [![Security Operations icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-logo-nav.svg) Security Operations Stop cyberattackers with the industry's premier platform for autonomous security operations](https://www.paloaltonetworks.com/cortex?ts=markdown) [![SASE icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-sase-logo-nav.svg) SASE Protect with AI, secure AI use and operate with AI using agentic Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown) [![Identity Security icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/idira-logo-nav.svg) Identity Security Identity security platform to secure every identity: human, machine and agentic](https://www.paloaltonetworks.com/idira?ts=markdown) [![Cloud Security icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-cloud-logo-nav.svg) Cloud Security Prevent risks from code to cloud with the leading agentic cloud security platform](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) [![AI Security logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-AIRS-logo-nav.svg)](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) [AI Security Platform](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) * [AI Gateway](https://www.paloaltonetworks.com/ai-security/ai-gateway?ts=markdown) * [AI Model Security](https://www.paloaltonetworks.com/ai-security/ai-model-security?ts=markdown) * [AI Red Teaming](https://www.paloaltonetworks.com/ai-security/ai-red-teaming?ts=markdown) * [AI Runtime Security](https://www.paloaltonetworks.com/ai-security/ai-runtime-security?ts=markdown) * [Agent Security](https://www.paloaltonetworks.com/ai-security/agent-security?ts=markdown) * [AI Posture Management](https://www.paloaltonetworks.com/prisma/cloud/ai-spm?ts=markdown) Secure GenAI Tools * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) [![Network Security logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/strata-logo-nav.svg)](https://www.paloaltonetworks.com/network-security?ts=markdown) [Secure the Network](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [Quantum Safe Security](https://www.paloaltonetworks.com/network-security/quantum-safe-security?ts=markdown) * [Next-Gen Trust Security](https://www.paloaltonetworks.com/network-security/next-gen-trust-security?ts=markdown) * [OT / Industrial Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown) * [Device \& IoT Security](https://www.paloaltonetworks.com/network-security/device-security?ts=markdown) * [5G Security](https://www.paloaltonetworks.com/network-security/5g-security?ts=markdown) * [Managed Firewalls - Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) * [Managed Firewalls - AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) [Cloud-Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Advanced IP Defense](https://www.paloaltonetworks.com/network-security/advanced-ip-defense?ts=markdown) [![SASE logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-sase-logo-nav.svg)](https://www.paloaltonetworks.com/sase?ts=markdown) [Secure Access (SASE)](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma Access (ZTNA)](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) [![Security Operations logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-logo-nav.svg)](https://www.paloaltonetworks.com/cortex?ts=markdown) [Security Operations](https://www.paloaltonetworks.com/cortex?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Extended Detection \& Response](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Security Orchestration \& Automation](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Attack Surface Management](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Exposure Management](https://www.paloaltonetworks.com/cortex/exposure-management?ts=markdown) * [Email Security](https://www.paloaltonetworks.com/cortex/advanced-email-security?ts=markdown) * [Threat Intelligence Management](https://www.paloaltonetworks.com/cortex/threat-intel-management?ts=markdown) * [Agentic-first Automation](https://www.paloaltonetworks.com/cortex/agentix?ts=markdown) * [Identity Threat Detection and Response](https://www.paloaltonetworks.com/cortex/itdr?ts=markdown) [Endpoint Security](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Endpoint Protection](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Agentic Endpoint Security](https://www.paloaltonetworks.com/cortex/agentic-endpoint-security?ts=markdown) * [Ransomware Protection](https://www.paloaltonetworks.com/cortex/ransomware-protection?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/cortex/digital-forensics?ts=markdown) [Data Security](https://www.paloaltonetworks.com/cortex/data-security?ts=markdown) [![Cloud Security logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-cloud-logo-nav.svg)](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) [Application Security Overview](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Application Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/application-security-posture-management?ts=markdown) * [Software Supply Chain Security](https://www.paloaltonetworks.com/cortex/cloud/software-supply-chain-security?ts=markdown) * [Infrasture-as-Code (IaC) Security](https://www.paloaltonetworks.com/cortex/cloud/infrastructure-as-code-security?ts=markdown) * [Software Composition Analysis](https://www.paloaltonetworks.com/cortex/cloud/software-composition-analysis?ts=markdown) * [Secrets Security](https://www.paloaltonetworks.com/cortex/cloud/secrets-security?ts=markdown) * [Open Partner Ecosystem](https://www.paloaltonetworks.com/cortex/cloud/appsec-partner-ecosystem?ts=markdown) [Cloud Posture Security Overview](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/cloud-security-posture-management?ts=markdown) * [Cloud Infrastructure Entitlement Management](https://www.paloaltonetworks.com/cortex/cloud/cloud-infrastructure-entitlement-management?ts=markdown) * [Data Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/data-security-posture-management?ts=markdown) * [AI Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/ai-security-posture-management?ts=markdown) * [Vulnerability Management](https://www.paloaltonetworks.com/cortex/cloud/vulnerability-management?ts=markdown) * [Cloud Attack Surface Management](https://www.paloaltonetworks.com/cortex/cloud/attack-surface-management?ts=markdown) [Cloud Runtime Security Overview](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Cloud Detection and Response](https://www.paloaltonetworks.com/cortex/cloud-detection-and-response?ts=markdown) * [Container \& Kubernetes Security](https://www.paloaltonetworks.com/cortex/cloud/kubernetes-and-container-security?ts=markdown) * [Cloud Workload Protection](https://www.paloaltonetworks.com/cortex/cloud/cloud-workload-protection?ts=markdown) * [API Security](https://www.paloaltonetworks.com/cortex/cloud/api-security?ts=markdown) * [Serverless Security](https://www.paloaltonetworks.com/cortex/cloud/serverless-security?ts=markdown) [![Identity Security logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/idira-logo-nav.svg)](https://www.paloaltonetworks.com/idira?ts=markdown) [Human Identities](https://www.paloaltonetworks.com/idira/human?ts=markdown) * [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown) * [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown) * [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown) * [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown) * [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown) * [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown) [Machine Identities](https://www.paloaltonetworks.com/idira/machine?ts=markdown) * [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown) * [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown) * [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown) [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown) * Solutions Solutions By Use Case [![Drive AI Transformation icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ai-page/teaser-block/teaser-icon-2.svg) Drive AI Transformation Scale enterprise AI adoption across employees, applications and agents with confidence and control](https://www.paloaltonetworks.com/ai-security?ts=markdown) [![Secure the Hybrid Network icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-strata.svg) Secure the Hybrid Network Stay ahead of AI-driven attacks with unified network security across hybrid environments](https://www.paloaltonetworks.com/network-security?ts=markdown) [![Accelerate Cloud Transformation icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-cortex.svg) Accelerate Cloud Transformation Build fast and innovate fearlessly with AI-driven protection from code to cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) [![Secure AI Coding icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-default-orange.svg) Secure AI Coding Let AI coding do more, with you in control. Protect data, govern agents and control AI costs.](https://www.paloaltonetworks.com/secure-ai-coding?ts=markdown) [![Secure Every Identity icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-idira.svg) Secure Every Identity Stop identity-led breaches: Secure human, machine, and agentic identities with zero trust](https://www.paloaltonetworks.com/idira?ts=markdown) [![Enable Autonomous SOC icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-cortex.svg) Enable Autonomous SOC Fight AI with AI to stop threats at machine speed with the power of analytics and automation](https://www.paloaltonetworks.com/cortex/fight-ai-with-ai?ts=markdown) [![Achieve Cyber Resilience icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-Unit42.svg) Achieve Cyber Resilience Partner with world-class experts to proactively reduce risk, recover rapidly, and outsmart emerging threats](https://www.paloaltonetworks.com/unit42/ai-advantage?ts=markdown) * Services Services Security Services [![](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/unit-logo-dark.svg)](https://www.paloaltonetworks.com/unit42?ts=markdown) Prepare for Emerging Risks * [AI Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/ai-security-assessment?ts=markdown) * [Frontier AI](https://www.paloaltonetworks.com/unit42/ai-advantage?ts=markdown) * [Respond to Cyber Attacks](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) * [Incident Response](https://www.paloaltonetworks.com/unit42/respond/incident-response?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/unit42/respond/digital-forensics?ts=markdown) * [Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown) * [Managed Threat Hunting](https://www.paloaltonetworks.com/cortex/managed-threat-hunting?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown) * [Attack Surface Assessment](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/attack-surface-assessment?ts=markdown) * [Breach Readiness](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/breach-readiness-review?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/cloud-security-assessment?ts=markdown) * [Compromise Assessment](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/compromise-assessment?ts=markdown) * [Ransomware Readiness](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/ransomware-readiness-assessment?ts=markdown) * [Supply Chain](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/supply-chain-risk-assessment?ts=markdown) * [Tabletop Exercises](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/tabletop-exercises?ts=markdown) * [Unit 42 Retainer](https://www.paloaltonetworks.com/unit42/retainer?ts=markdown) [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown) * [Cyber Risk](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/cyber-risk-assessment?ts=markdown) * [IR Plan Development](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/IR-plan-and-development-review?ts=markdown) * [Security Program Design](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/security-program-design?ts=markdown) * [SOC Assessment](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/soc-assessment?ts=markdown) * [Virtual CISO](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/virtual-ciso?ts=markdown) * [Zero Trust](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/zero-trust-advisory?ts=markdown) Understand the Adversary * [Threat Intelligence](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown) * [Offensive Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/offensive-security-services?ts=markdown) Managed Firewalls Managed Firewalls * [Managed Firewalls - AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) * [Managed Firewalls - Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) Customer Services [Global Customer Services](https://www.paloaltonetworks.com/services?ts=markdown) * [Education \& Training](https://www.paloaltonetworks.com/services/education?ts=markdown) * [Professional Services](https://www.paloaltonetworks.com/services/consulting?ts=markdown) * [Success Tools](https://www.paloaltonetworks.com/services/customer-success-tools?ts=markdown) * [Support Services](https://www.paloaltonetworks.com/services/solution-assurance?ts=markdown) * [Customer Success](https://www.paloaltonetworks.com/services/customer-success?ts=markdown) [Under Attack?](https://www.paloaltonetworks.com/unit42/contact-unit42?ts=markdown) * [Services Overview](#services-panel-0) * [Security Services](#services-panel-1) * [Managed Firewalls](#services-panel-2) * [Customer Services](#services-panel-3) [Under Attack?](https://www.paloaltonetworks.com/unit42/contact-unit42?ts=markdown) [![Security Services logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/unit-logo-dark.svg)](https://www.paloaltonetworks.com/unit42?ts=markdown) Prepare for Emerging Risks * [AI Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/ai-security-assessment?ts=markdown) * [Frontier AI](https://www.paloaltonetworks.com/unit42/ai-advantage?ts=markdown) * [Respond to Cyber Attacks](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) * [Incident Response](https://www.paloaltonetworks.com/unit42/respond/incident-response?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/unit42/respond/digital-forensics?ts=markdown) * [Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown) * [Managed Threat Hunting](https://www.paloaltonetworks.com/cortex/managed-threat-hunting?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown) * [Attack Surface Assessment](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/attack-surface-assessment?ts=markdown) * [Breach Readiness](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/breach-readiness-review?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/cloud-security-assessment?ts=markdown) * [Compromise Assessment](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/compromise-assessment?ts=markdown) * [Ransomware Readiness](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/ransomware-readiness-assessment?ts=markdown) * [Supply Chain](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/supply-chain-risk-assessment?ts=markdown) * [Tabletop Exercises](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/tabletop-exercises?ts=markdown) * [Unit 42 Retainer](https://www.paloaltonetworks.com/unit42/retainer?ts=markdown) [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown) * [Cyber Risk](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/cyber-risk-assessment?ts=markdown) * [IR Plan Development](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/IR-plan-and-development-review?ts=markdown) * [Security Program Design](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/security-program-design?ts=markdown) * [SOC Assessment](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/soc-assessment?ts=markdown) * [Virtual CISO](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/virtual-ciso?ts=markdown) * [Zero Trust](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/zero-trust-advisory?ts=markdown) Understand the Adversary * [Threat Intelligence](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown) * [Offensive Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/offensive-security-services?ts=markdown) Managed Firewalls * [Managed Firewalls - AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) * [Managed Firewalls - Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) [Global Customer Services](https://www.paloaltonetworks.com/services?ts=markdown) * [Education \& Training](https://www.paloaltonetworks.com/services/education?ts=markdown) * [Professional Services](https://www.paloaltonetworks.com/services/consulting?ts=markdown) * [Success Tools](https://www.paloaltonetworks.com/services/customer-success-tools?ts=markdown) * [Support Services](https://www.paloaltonetworks.com/services/solution-assurance?ts=markdown) * [Customer Success](https://www.paloaltonetworks.com/services/customer-success?ts=markdown) * Industries Industries [![Financial Services icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/financial-icon-2.svg) Financial Services Secure with AI cybersecurity, fraud and ransomware prevention, compliance, and customer data protection](https://www.paloaltonetworks.com/industry/financial-services?ts=markdown) [![Manufacturing icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/manufacturing-icon-2.svg) Manufacturing Secure with OT security, ransomware defense, industrial cybersecurity, supply chain resilience, and continuity](https://www.paloaltonetworks.com/industry/manufacturing?ts=markdown) [![Retail and Hospitality icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/retail-icon-2.svg) Retail and Hospitality Secure with payment security, PCI compliance, ransomware and fraud prevention, and data protection](https://www.paloaltonetworks.com/industry/retail?ts=markdown) [![Healthcare and Life Sciences icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/healthcare-icon-2.svg) Healthcare and Life Sciences Secure patient and clinical data, medical device security, ransomware defense, and HIPAA compliance](https://www.paloaltonetworks.com/industry/healthcare?ts=markdown) [![Public Sector icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/public-sector-icon-2.svg) Public Sector Secure with Zero Trust, cyber defense, compliance, infrastructure protection, and citizen data security](https://www.paloaltonetworks.com/industry/public-sector?ts=markdown) [![Utilities icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/utilities-icon-2.svg) Utilities Secure with power grid protection, OT network security, ransomware defense, and critical infrastructure security](https://www.paloaltonetworks.com/industry/electric-utilities?ts=markdown) [![Transportation icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/transportation-icon-2.svg) Transportation Secure OT and connected infrastructure protection, ransomware defense, supply chain security, compliance](https://www.paloaltonetworks.com/industry/transportation-security?ts=markdown) [![Small and Medium Business icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/smb-icon-2.svg) Small and Medium Business Secure against cyber threats using AI-powered endpoint, network, browser, cloud, and MDR](https://www.paloaltonetworks.com/industry/small-medium-business-portfolio?ts=markdown) * Partners Partners NextWave * [Partner Program](https://www.paloaltonetworks.com/partners/nextwave-partner-portal?ts=markdown) * [Become a Partner](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerregistration?type=becomepartner) * [Request Partner Portal Access](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerregistration?type=requestaccess) * [Partner Portal Login](https://www.paloaltonetworks.com/partners/nextwave-partner-portal?ts=markdown) * [Find a Partner](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerlocator) Partner Ecosystem [Explore All Partners Find the right partner network tailored to your business needs, cloud environments, and security requirements](https://www.paloaltonetworks.com/partners?ts=markdown) [Cloud Service Partners Bring cloud native security and compliance to the entire development lifecycle](https://www.paloaltonetworks.com/partners/nextwave-for-csp?ts=markdown) [Frontier AI Alliance Outpace today's cyberattacks through a global ecosystem of leaders orchestrating unified defenses](https://www.paloaltonetworks.com/frontier?ts=markdown) [Global System Integrators Speed and secure digital transformation with the industry's best technology, people and intelligence](https://www.paloaltonetworks.com/partners/nextwave-for-gsi?ts=markdown) [Managed Security Service Providers Gain valuable resource oversight to help your businesses administer security strategies](https://www.paloaltonetworks.com/partners/managed-security-service-providers?ts=markdown) [Resellers Deliver the most comprehensive cybersecurity portfolio while expanding opportunities and profitability](https://www.paloaltonetworks.com/partners/resellers?ts=markdown) [Service Providers Protect mobile users, devices and applications with effective, flexible and easy to deploy cybersecurity](https://www.paloaltonetworks.com/partners/service-providers?ts=markdown) [Technology Partners Advance security and transformation with innovative technology partner integrations](https://www.paloaltonetworks.com/partners/technology-partners?ts=markdown) * Resources Resources ![Learn icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/resource-library-icon.svg) Learn * [Resource Library](https://www.paloaltonetworks.com/resources?ts=markdown) * [Analyst Reports](https://www.paloaltonetworks.com/resources/research?ts=markdown) * [Customer Stories](https://www.paloaltonetworks.com/customers?ts=markdown) * [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown) * [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) * [Threat Vector Podcast](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown) * [Unit 42 Threat Research](https://unit42.paloaltonetworks.com/) * [Knowledgebase](https://knowledgebase.paloaltonetworks.com/) * [Technical Documentation](https://docs.paloaltonetworks.com/) ![Engage icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/engage-icon-2.svg) Engage * [Webinars](https://www.paloaltonetworks.com/resources/webinars?ts=markdown) * [Demos](https://www.paloaltonetworks.com/demos?ts=markdown) * [Test Drive](https://www.paloaltonetworks.com/resources/test-drives?ts=markdown) ![Connect icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/connect-icon-2.svg) Connect * [Executive Briefings](https://www.paloaltonetworks.com/about-us/executive-briefing-program?ts=markdown) * [Events](https://events.paloaltonetworks.com/) * [Live Community](https://live.paloaltonetworks.com/) * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) ![Discover icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/discover-icon-2.svg) Discover * [Why Palo Alto Networks?](https://www.paloaltonetworks.com/why-paloaltonetworks?ts=markdown) * [Platform Approach](https://www.paloaltonetworks.com/why-paloaltonetworks/platformization?ts=markdown) * [Awards \& Recognition](https://www.paloaltonetworks.com/about-us/awards?ts=markdown) * [Global Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/certifications?ts=markdown) * [Cloud Locations](https://www.paloaltonetworks.com/products/regional-cloud-locations?ts=markdown) * [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown) * [Trust 360 Program](https://www.paloaltonetworks.com/resources/whitepapers/trust-360?ts=markdown) ![Company icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-default-orange.svg) Company * [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown) * [Management Team](https://www.paloaltonetworks.com/about-us/management?ts=markdown) * [Investor Relations](https://investors.paloaltonetworks.com/) * [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown) * [Careers](https://jobs.paloaltonetworks.com/en) * [Culture \& Benefits](https://jobs.paloaltonetworks.com/en/culture/) * [Ethics \& Compliance](https://www.paloaltonetworks.com/company/ethics-and-compliance?ts=markdown) * [Office Locations](https://www.paloaltonetworks.com/about-us/locations?ts=markdown) * ![search magnifying glass](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/search-black.svg) * us Language * USA (ENGLISH) * [AUSTRALIA (ENGLISH)](https://www.paloaltonetworks.com.au/cyberpedia/agentic-endpoint-security) * [BRAZIL (PORTUGUÉS)](https://www.paloaltonetworks.com.br/cyberpedia/agentic-endpoint-security) * [CANADA (ENGLISH)](https://www.paloaltonetworks.ca/cyberpedia/agentic-endpoint-security) * [CHINA (简体中文)](https://www.paloaltonetworks.cn/cyberpedia/agentic-endpoint-security) * [FRANCE (FRANÇAIS)](https://www.paloaltonetworks.fr/cyberpedia/agentic-endpoint-security) * [GERMANY (DEUTSCH)](https://www.paloaltonetworks.de/cyberpedia/agentic-endpoint-security) * [INDIA (ENGLISH)](https://www.paloaltonetworks.in/cyberpedia/agentic-endpoint-security) * [ITALY (ITALIANO)](https://www.paloaltonetworks.it/cyberpedia/agentic-endpoint-security) * [JAPAN (日本語)](https://www.paloaltonetworks.jp/cyberpedia/agentic-endpoint-security) * [KOREA (한국어)](https://www.paloaltonetworks.co.kr/cyberpedia/agentic-endpoint-security) * [LATIN AMERICA (ESPAÑOL)](https://www.paloaltonetworks.lat/cyberpedia/agentic-endpoint-security) * [MEXICO (ESPAÑOL)](https://www.paloaltonetworks.com.mx/cyberpedia/agentic-endpoint-security) * [SINGAPORE (ENGLISH)](https://www.paloaltonetworks.sg/cyberpedia/agentic-endpoint-security) * [SPAIN (ESPAÑOL)](https://www.paloaltonetworks.es/cyberpedia/agentic-endpoint-security) * [TAIWAN (繁體中文)](https://www.paloaltonetworks.tw/cyberpedia/agentic-endpoint-security) * [UK (ENGLISH)](https://www.paloaltonetworks.co.uk/cyberpedia/agentic-endpoint-security) * Accounts \& Support Accounts \& Support * Accounts * Customer * Partner * Employee * [Login to Download](https://www.paloaltonetworks.com/login?ts=markdown) * [Become a Member](https://www.paloaltonetworks.com/login?screenToRender=traditionalRegistration&ts=markdown) * Support * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) * [What's New](https://www.paloaltonetworks.com/resources?ts=markdown) * [Get Support](https://support.paloaltonetworks.com/SupportAccount/MyAccount) [Under Attack?](https://www.paloaltonetworks.com/unit42/contact-unit42?ts=markdown) * [Demos and Trials](https://www.paloaltonetworks.com/get-started?ts=markdown) [Discover how prevention starts before the attack at InterSECt 2026. Watch Now](https://www.paloaltonetworks.com/intersect?ts=markdown) [Prisma AIRS AI Gateway is now generally available](https://www.paloaltonetworks.com/ai-security/ai-gateway?ts=markdown) [](https://www.paloaltonetworks.com/?ts=markdown) Search All * [Tech Docs](https://docs.paloaltonetworks.com/search) Close search modal 1. [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) 2. [Security Operations](https://www.paloaltonetworks.com/cyberpedia/security-operations?ts=markdown) 3. [Endpoint Security](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security?ts=markdown) 4. [What Is Agentic Endpoint Security?](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security?ts=markdown) Table of Contents * [What Is Endpoint Security? EPP, EDR, and XDR Explained](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security?ts=markdown) * [Key Data: Fronts of Attacks](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#key?ts=markdown) * [Why Endpoint Security Is Mandatory](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#why?ts=markdown) * [How Does Endpoint Security Work?](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#how?ts=markdown) * [Types of Endpoint Security: A Multi-Layered Approach](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#types?ts=markdown) * [Traditional Antivirus vs. Modern Endpoint Security](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#vs?ts=markdown) * [Implementing Zero Trust for Endpoint Security](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#security?ts=markdown) * [Other Key Components](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#components?ts=markdown) * [Selecting the Optimal Endpoint Security Solution](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#solution?ts=markdown) * [Strategic Endpoint Security: Challenges and Best Practices](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#strategic?ts=markdown) * [Endpoint Security FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security#faqs?ts=markdown) * What Is Agentic Endpoint Security? * [Agentic Endpoint Security Explained](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#agentic?ts=markdown) * [The Agentic Endpoint Explained](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#explained?ts=markdown) * [Anatomy of an AI Agent: Key Building Blocks](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#anatomy?ts=markdown) * [Why Agentic Endpoints Introduce New Risk](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#?ts=markdown) * [How Does AES Compare To Other Security Solutions?](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#how?ts=markdown) * [What can Agentic Endpoint Security with Cortex do for my organization?](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#what?ts=markdown) * [Agentic Endpoint Security FAQs](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#faqs?ts=markdown) * [What Is Endpoint Detection?](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection?ts=markdown) * [Endpoint Detection Explained](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection#endpoint?ts=markdown) * [Why Traditional Prevention Is No Longer Sufficient](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection#why?ts=markdown) * [How Endpoint Detection Works: The Core Mechanisms](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection#how?ts=markdown) * [Key Features of a High-Performance Detection Strategy](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection#key?ts=markdown) * [Common Challenges in Endpoint Detection](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection#common?ts=markdown) * [Endpoint Detection vs. Endpoint Protection (EPP)](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection#vs?ts=markdown) * [Endpoint Detection FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection#faqs?ts=markdown) * [What Is the Difference Between Advanced Endpoint Security and Antivirus (AV)?](https://www.paloaltonetworks.com/cyberpedia/advanced-endpoint-security-vs-antivirus?ts=markdown) * [Advanced Endpoint Security vs Antivirus: An Overview](https://www.paloaltonetworks.com/cyberpedia/advanced-endpoint-security-vs-antivirus#vs?ts=markdown) * [Key Differences in Functionality](https://www.paloaltonetworks.com/cyberpedia/advanced-endpoint-security-vs-antivirus#differences?ts=markdown) * [Key Factors for Selecting Endpoint Protection or Antivirus](https://www.paloaltonetworks.com/cyberpedia/advanced-endpoint-security-vs-antivirus#key-factors?ts=markdown) * [Advanced Endpoint Security vs Antivirus FAQs](https://www.paloaltonetworks.com/cyberpedia/advanced-endpoint-security-vs-antivirus#faqs?ts=markdown) * [What is Endpoint Security Awareness Training?](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training?ts=markdown) * [Understanding Security Awareness Training](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training#understanding?ts=markdown) * [Endpoint Security Awareness Training Explained](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training#endpoint?ts=markdown) * [What Does Endpoint Security Awareness Training Cover?](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training#cover?ts=markdown) * [Why Is Security Awareness Training Important?](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training#important?ts=markdown) * [How to Build an Effective Endpoint Security Awareness Training Program](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training#program?ts=markdown) * [Industry Awareness Training Case Studies and Success Stories](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training#industry?ts=markdown) * [The Future of Endpoint Security Awareness Training](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training#future?ts=markdown) * [Endpoint Security Awareness Training FAQs](https://www.paloaltonetworks.com/cyberpedia/endpoint-security-awareness-training#faqs?ts=markdown) * [What Is Endpoint Security Software? How It Stops Cyberattacks](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software?ts=markdown) * [Endpoint Security Software Explained](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#endpoint?ts=markdown) * [Endpoint Security Software vs. Antivirus](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#vs?ts=markdown) * [Core Components of Comprehensive Endpoint Security Software](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#core?ts=markdown) * [How Does Endpoint Security Software Protect a Network?](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#how?ts=markdown) * [What are the Key Features of Endpoint Security Software?](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#what?ts=markdown) * [EPP vs. EDR vs. XDR](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#xdr?ts=markdown) * [The Role of Threat Hunting in Endpoint Security](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#role?ts=markdown) * [Implementation Strategies for Enterprise Environments](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#implementation?ts=markdown) * [Defending Against Ransomware: A Use Case](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#defending?ts=markdown) * [Endpoint Security Software FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-software#faqs?ts=markdown) * [What Is an Endpoint? Understand Devices, Risks \& Security](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint?ts=markdown) * [The Endpoint: The Foundation of Today's Attack Surface](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint#endpoint?ts=markdown) * [Endpoint vs. Network Security: A Critical Architectural Distinction](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint#vs?ts=markdown) * [The Modern Endpoint Defense Stack: EPP, EDR, and XDR](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint#modern?ts=markdown) * [Strategic Best Practices for Endpoint Resilience](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint#best?ts=markdown) * [Endpoint Security FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint#faqs?ts=markdown) * [What Is an Endpoint Protection Platform?](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp?ts=markdown) * [Understanding Endpoint Protection Platforms (EPPs)](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp#endpoint?ts=markdown) * [The Importance of Endpoint Protection for Enterprises](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp#importance?ts=markdown) * [What Cybersecurity Practitioners and CISOs Need to Know About EPPs](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp#ciso?ts=markdown) * [Traditional vs. Cloud Native EPPs](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp#traditional?ts=markdown) * [EPP vs EDR: A Comparative Analysis](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp#vs?ts=markdown) * [Case Studies: Real-World Applications](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp#casestudies?ts=markdown) * [How to Choose the Best EPP](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp#choose?ts=markdown) * [Endpoint Protection Platform (EPP) FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-an-endpoint-protection-platform-epp#faqs?ts=markdown) * [What are the Types of Endpoint Security?](https://www.paloaltonetworks.com/cyberpedia/types-of-endpoint-security?ts=markdown) * [What is an Endpoint?](https://www.paloaltonetworks.com/cyberpedia/types-of-endpoint-security#endpoint?ts=markdown) * [Why is Endpoint Security Important?](https://www.paloaltonetworks.com/cyberpedia/types-of-endpoint-security#importance?ts=markdown) * [Types of Endpoint Security Solutions](https://www.paloaltonetworks.com/cyberpedia/types-of-endpoint-security#types?ts=markdown) * [Selecting the Optimal Endpoint Security Solutions](https://www.paloaltonetworks.com/cyberpedia/types-of-endpoint-security#solutions?ts=markdown) * [Types of Endpoint Security FAQs](https://www.paloaltonetworks.com/cyberpedia/types-of-endpoint-security#faq?ts=markdown) * [What Is Next-Generation Antivirus (NGAV)](https://www.paloaltonetworks.com/cyberpedia/what-is-next-generation-anti-virus?ts=markdown) * [The Value and Benefits of NGAV](https://www.paloaltonetworks.com/cyberpedia/what-is-next-generation-anti-virus#advanced?ts=markdown) * [AI and Machine Learning in Modern NGAV](https://www.paloaltonetworks.com/cyberpedia/what-is-next-generation-anti-virus#modern?ts=markdown) * [Why Companies Need to Protect Their Sensitive Data](https://www.paloaltonetworks.com/cyberpedia/what-is-next-generation-anti-virus#why?ts=markdown) * [What Is Endpoint Security Antivirus?](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus?ts=markdown) * [Endpoint Security Antivirus Explained](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#endpoint?ts=markdown) * [Understanding Endpoints in Cybersecurity](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#understanding?ts=markdown) * [Why Endpoint Security Antivirus is Crucial for Modern Cybersecurity](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#why?ts=markdown) * [Endpoint Antivirus vs. Endpoint Security: What Is the Difference?](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#vs?ts=markdown) * [Key Components of a Comprehensive Endpoint Security Solution](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#key?ts=markdown) * [How Endpoint Security Antivirus Works](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#how?ts=markdown) * [Implementing and Optimizing Endpoint Security Antivirus](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#implementing?ts=markdown) * [Choosing the Right Endpoint Security Antivirus Solution](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#choosing?ts=markdown) * [Challenges and Future Trends in Endpoint Security](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#challanges?ts=markdown) * [Endpoint Security Antivirus FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security-antivirus#faqs?ts=markdown) # What Is Agentic Endpoint Security (AES)? 4 min. read Table of Contents * * [Agentic Endpoint Security Explained](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#agentic?ts=markdown) * [The Agentic Endpoint Explained](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#explained?ts=markdown) * [Anatomy of an AI Agent: Key Building Blocks](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#anatomy?ts=markdown) * [Why Agentic Endpoints Introduce New Risk](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#?ts=markdown) * [How Does AES Compare To Other Security Solutions?](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#how?ts=markdown) * [What can Agentic Endpoint Security with Cortex do for my organization?](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#what?ts=markdown) * [Agentic Endpoint Security FAQs](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#faqs?ts=markdown) 1. Agentic Endpoint Security Explained * * [Agentic Endpoint Security Explained](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#agentic?ts=markdown) * [The Agentic Endpoint Explained](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#explained?ts=markdown) * [Anatomy of an AI Agent: Key Building Blocks](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#anatomy?ts=markdown) * [Why Agentic Endpoints Introduce New Risk](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#?ts=markdown) * [How Does AES Compare To Other Security Solutions?](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#how?ts=markdown) * [What can Agentic Endpoint Security with Cortex do for my organization?](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#what?ts=markdown) * [Agentic Endpoint Security FAQs](https://www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security#faqs?ts=markdown) Agentic endpoint security is the discipline of discovering, monitoring, and governing autonomous AI agents and their extensions on endpoints. It addresses the risk created when software plans and executes multi-step tasks independently, using human credentials and reaching into files, networks, and code repositories without direct human review of each action. ## Agentic Endpoint Security Explained Agentic endpoint security governs a category of risk that didn't exist five years ago: software that reasons, plans, and acts on its own, on the very machines you use every day. Where traditional endpoint security asks whether a process is malicious, agentic endpoint security asks a harder question. What is this agent doing, on whose authority, and should it be allowed to continue? Standard endpoint detection and response platforms were built to catch known-bad binaries, suspicious process trees, and signature-based malware. Agentic endpoint security operates in different territory. Coding agents, autonomous assistants, and agent platforms execute shell commands, call external tools through protocols like Model Context Protocol (MCP), install packages, and modify code, often faster than any human reviewer could follow. Cloud and SaaS AI governance tools, meanwhile, focus on sanctioned enterprise applications and API usage in the cloud. They have little visibility into what happens locally, on an endpoint, inside a terminal or IDE. The category emerged because the tooling outpaced the controls. Coding agents moved from novelty to daily workflow within months. Agent platforms bolted autonomous features onto familiar products. The Model Context Protocol gave agents a standard way to reach external systems. None of it waited for security teams to catch up, so agentic endpoint security had to. ## The Agentic Endpoint Explained An agentic endpoint is any device, laptop, workstation, or server, where an AI agent can plan a multi-step task and carry it out with minimal human oversight. The label has nothing to do with hardware and everything to do with behavior. A machine becomes an agentic endpoint the moment it hosts software capable of independent judgment and independent execution. ### Deciding, Not Just Running Traditional endpoints run whatever a user or a scheduled process tells them to run. An agentic endpoint hosts software that decides what to run next. A coding agent reads a task, breaks it into steps, chooses which files to open, which commands to execute, and which tools to call, often inheriting the full permissions of the user account it operates under. That distinction matters enormously for security teams. A compromised or careless agent doesn't need privilege escalation. It already has the access it needs, because it borrowed yours. ### An Expanding Footprint The agentic endpoint started on developer laptops, where coding assistants first took hold. It has since spread into [CI/CD](https://www.paloaltonetworks.com/cyberpedia/what-is-the-ci-cd-pipeline-and-ci-cd-security?ts=markdown) runners, where agents increasingly handle build steps, dependency resolution, and deployment logic without a human watching each stage. Any device that can host an agentic tool, a terminal, an IDE plugin, a background service, qualifies. Security leaders who scope their agentic risk to the developer laptop are already behind. The perimeter now includes every machine capable of running autonomous logic, and that list grows every quarter. ## Anatomy of an AI Agent: Key Building Blocks Governing agentic risk requires a shared vocabulary. Security teams that can't distinguish an agent from an agent platform, or a plugin from a skill, can't write meaningful policy. The building blocks below form the anatomy every practitioner needs to know. ### Agents Versus Agent Platforms An agent is a product where autonomous AI is the core experience. An autonomous coding assistant that plans, writes, tests, and commits code independently qualifies as an agent. An agent platform is different. It's a familiar product, an editor, a browser, a productivity tool, that has bolted on an agentic feature. An editor's agent mode or a browser's AI assistant sits inside a product built for other purposes. The distinction matters for inventory and risk scoring. Agents carry agentic risk by default. Agent platforms carry it conditionally, only when the agentic feature is active. ### Sessions as the Unit of Work A session is the continuous conversation between a user and an agent, from the first prompt to the last action taken on its behalf. Raw event logs record what happened, one line at a time, stripped of context. A session tells a story. It groups every shell command, file edit, and tool call into the task that produced it, letting a security analyst trace intent rather than reconstruct it from scattered fragments. ### MCP Servers and the Governance Blind Spot The Model Context Protocol(MCP) gives an agent a standardized way to reach outside its own process, into databases, file systems, internal APIs, and third-party services. An MCP server is the bridge that makes this possible. Each agent connects to expand its practical reach far beyond what the agent's core model can do alone. Most organizations have no inventory of which MCP servers their agents talk to, what data those servers can touch, or who approved the connection. That gap makes MCP servers one of the least governed components of the entire agentic stack. ### Plugins and Permission Escalation Plugins extend an agent with new commands, skills, MCP servers, and hooks in a single package. Installing one plugin can silently grant an agent capabilities across several categories at once, code execution, file access, and network reach, without a corresponding review of each capability individually. That bundling is exactly what makes plugins a permission escalation risk. Plugins that were originally downloaded to help productivity could grant an agent excessive permissions, leading to governance gaps. ### Skills as Reusable Capability A skill is a discrete, often community-sourced set of instructions or capabilities an agent loads at runtime to perform a specific task. Skills circulate through public marketplaces much like npm packages once did, and they carry similar risk. An agent that loads an untrusted skill inherits whatever that skill tells it to do, with no guarantee the skill's author had the organization's interests in mind. ### Extensions as the Attack Surface Multiplier MCP servers, plugins, and skills fall under one umbrella: extensions. Each extension an agent loads multiplies its reach and, with it, the organization's exposure. An agent with zero extensions is relatively contained. An agent with a dozen extensions, each granting distinct tool access, has an attack surface that rivals a small application stack, running invisibly inside a developer's terminal. ### Runtime Actions Everything above exists to produce action. Shell commands, file access, MCP tool calls, network requests, and package installs are the actual events an agent generates while working. Every governance control, discovery, policy, remediation, ultimately exists to shape or stop these actions before they cause harm. ## Why Agentic Endpoints Introduce New Risk Agentic endpoints don't just add a new tool to the user's machine. They introduce categories of risk that didn't exist before agents could act on their own. ### Human Privileges, Non-Human Judgment An agent doesn't operate under its own identity. It inherits the credentials, tokens, and access rights of the user who invoked it. That arrangement works fine when the agent behaves as intended. It becomes dangerous the moment the agent misinterprets a task, follows a manipulated instruction, or gets compromised through a malicious extension. The agent's judgment can fail while its privileges remain fully intact, and nothing about the endpoint's traditional access controls will catch that failure, because the credentials being used are entirely legitimate. ### A New Supply Chain Front Door Agents routinely pull packages and dependencies on their own initiative, resolving a build error or fulfilling a task by fetching whatever library seems necessary. No human reviews the pull before it happens. That autonomy created an opening that attackers have already exploited. The Shai-Hulud campaign compromised npm packages and spread through automated dependency chains, exactly the kind of unsupervised installation an agent performs routinely. Supply chain attacks used to require tricking a user. Now they only need to trick an agent, which is often easier. ### Extension Sprawl Every MCP server an agent connects to, every plugin it installs, every skill it loads represents an unreviewed grant of capability. Individually, each one seems minor. Collectively, they accumulate into an attack surface no one has mapped. Most organizations can't answer a simple question: which extensions are running across their agentic fleet right now, and what can each one touch? Without an answer, extension sprawl continues unchecked, one convenient install at a time. ### Shadow AI on Corporate Devices Employees sign into personal AI accounts on company laptops because it's faster than waiting for procurement to approve an enterprise license. Source code, customer data, and internal documents flow through those personal accounts, outside the organization's contracts, outside its data handling agreements, and in some cases, into training data for a model the company never chose to trust. Shadow AI isn't a policy violation waiting to be caught. It's an active, ongoing data exfiltration channel that most security teams have no visibility into. ### Binary Proliferation Agents and the tooling that supports them install executables the way developers used to install libraries: quickly, casually, and often without going through any software management process. Each new binary is a potential foothold, sitting outside the inventory that traditional endpoint management was built to track. A fleet running dozens of agentic tools can accumulate hundreds of untracked binaries within months. ### Agents Nobody Has Named Yet New agentic tools launch continuously, and most security tools rely on static lists of known agents to detect them. That approach guarantees a blind spot. The next widely adopted coding agent, whatever it turns out to be, won't appear on anyone's list on the day it launches. Security teams that depend on naming conventions to catch agentic activity will always be defending against yesterday's threat landscape. ## How Does AES Compare To Other Security Solutions? Security leaders often ask whether an existing tool already covers agentic risk. It doesn't, and understanding why requires looking at what each adjacent category was actually built to see. ### AES vs. Traditional EDR Endpoint detection and response platforms excel at catching known-bad binaries, anomalous process trees, and signature-based malware. They were built around a model of intent that no longer holds for agentic activity: a malicious process behaves differently from a legitimate one. An agent using legitimate credentials to run a destructive shell command looks, from an EDR's perspective, exactly like the developer typing that command themselves. EDR has no concept of an MCP server, a plugin, or a session. It sees a process launch, not a decision. ### AES vs. CASB and SSPM Cloud access security brokers and SaaS security posture management tools govern sanctioned enterprise applications and the APIs they expose. They monitor what happens between a user and a cloud service, largely at the network or account level. Neither has visibility into what an agent does locally, on the endpoint itself, before anything reaches the cloud. A user's personal AI account, running inside a terminal on a managed laptop, produces no SaaS telemetry at all. CASB and SSPM were built for a world of sanctioned apps with defined data flows, not for autonomous processes making their own decisions on a local machine. ### AES vs. CSPM and Cloud Security Cloud security posture management tools assess misconfigurations, entitlements, and drift across cloud infrastructure. They answer questions about the cloud environment itself, not about the endpoint that generated the activity reaching it. An agent that exfiltrates credentials through a compromised MCP server never triggers a cloud misconfiguration alert, because nothing about the cloud environment changed. The risk originated on the endpoint, and CSPM tools simply don't look there. ### AES vs AppSec Application security programs test code for vulnerabilities before and after deployment, through static analysis, dynamic testing, and dependency scanning. That discipline assumes a human wrote the code and a human controls when it ships. Agentic workflows compress that assumption. An agent can write, test, and commit code within a single session, often faster than a scanning pipeline runs. AppSec tools evaluate the artifact. They have no mechanism for evaluating the judgment of the autonomous process that produced it. ### The Common Gap Every one of these categories was built around a boundary, network, cloud account, application artifact, that agentic activity routinely crosses without triggering any of them. None was designed to answer the two questions that matter most for agentic risk: what did this agent decide to do, and what did it actually touch while doing it. Closing that gap requires a category built specifically around agent behavior, session by session, extension by extension. That's the space agentic endpoint security occupies, and no adjacent category covers it alone. ## What can Agentic Endpoint Security with Cortex do for my organization? [Cortex Agentic Endpoint Security](https://www.paloaltonetworks.com/cortex/agentic-endpoint-security?ts=markdown) addresses the new attack surface created by autonomous AI agents operating with user-level authority on host workstations. By integrating continuous discovery, dynamic risk assessment, scan-first guardrails, and runtime controls into the SOC, the platform tracks agentic software artifacts and stops prohibited tool executions before they impact the system. Combining these agent-specific safeguards with Cortex XDR gives security teams the context needed to investigate, isolate, and respond to threats across the entire enterprise ecosystem. Endpoint security has evolved because software now acts autonomously through host environments, making agentic visibility and control essential for modern defense. ## Agentic Endpoint Security FAQs ### What is Indirect prompt injection? Indirect prompt injection is an attack technique that hides malicious instructions inside content an AI agent will read, a file, a webpage, a code comment, or a tool's output, so the agent executes those instructions as if the user had given them. Because agents often trust the content they process as readily as they trust their original task, a single poisoned file can redirect an entire session toward data exfiltration or destructive commands without the user ever typing a harmful command themselves. ### What is agentic AI? Agentic AI refers to AI systems capable of planning a multi-step task and carrying it out with limited human intervention, rather than simply responding to a single prompt. Where a conventional chatbot answers a question, an agentic system decides which actions to take, in what order, and executes them, often calling tools, writing files, or reaching external services along the way. Agentic endpoint security exists specifically to govern this category of behavior. ### What is the Shai-Hulud npm attack? [Shai-Hulud](https://www.koi.ai/incident/live-updates-sha1-hulud-the-second-coming-hundred-npm-packages-compromised) was a supply chain campaign that compromised legitimate npm packages, embedding malicious code that spread automatically through dependency chains as affected packages were pulled into new projects. The campaign demonstrated how quickly a single compromised package can propagate when installation happens through automated processes, including agents fetching dependencies on their own initiative, without a human reviewing each pull. ### What is human-in-the-loop (HITL) enforcement? Human-in-the-loop enforcement is a policy mode that pauses an agent before it completes a sensitive action, such as a destructive shell command or a network request to an unapproved endpoint, and requires explicit user or admin approval before the agent proceeds. It sits between fully autonomous execution and an outright block, preserving agent productivity for routine work while inserting human judgment at the moments that carry the most risk. ### What is tool poisoning? Tool poisoning occurs when an attacker manipulates the description, output, or behavior of a tool an agent calls, often through an MCP server, so the agent is misled into taking a harmful action while believing it's following legitimate instructions. Because agents generally trust the tools they've been configured to use, a poisoned tool can redirect an entire session without ever triggering the kind of alert a compromised binary would. ### What is zero trust for AI agents? Zero trust for AI agents extends the zero trust principle, never trust, always verify, to agentic activity specifically, treating every action an agent takes as unverified until policy confirms it's permitted, regardless of the credentials or context the agent is operating under. In practice, this means governing shell access, file access, tool calls, and network requests individually, rather than assuming an agent's actions are safe simply because it's using an authorized developer's identity. ### What is a registry proxy? A registry proxy sits between an endpoint and a public package registry, such as npm or PyPI, inspecting and controlling every package request before it reaches the endpoint. It allows security teams to block known-malicious or critical-risk packages at the point of installation and to prevent their re-introduction later, closing the loop between detecting a risky package and actually keeping it off the fleet. Related Content [Datasheet Cortex Agentic Endpoint Security At a Glance](https://www.paloaltonetworks.com/resources/datasheets/cortex-agentic-endpoint-security-at-a-glance?ts=markdown) [Gartner Report Confronting the Risks of Shadow AI With Endpoint Application Control](https://www.paloaltonetworks.com/cortex/gartner-report-agentic-endpoint-security?ts=markdown) [Demo Cortex AES Demo](https://www.youtube.com/watch?v=qrlJMGh4iUk) [Cortex AES Solution Brief Koi Agentic Endpoint Security](https://www.paloaltonetworks.com/resources/techbriefs/koi-agentic-endpoint-security?ts=markdown) ![Share page on facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/facebook-circular-icon.svg) ![Share page on linkedin](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/linkedin-circular-icon.svg) [![Share page by an email](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/email-circular-icon.svg)](mailto:?subject=What%20Is%20Agentic%20Endpoint%20Security%3F&body=Agentic%20endpoint%20security%20detects%2C%20monitors%2C%20and%20governs%20autonomous%20AI%20agents%20on%20endpoints%2C%20closing%20risks%20traditional%20EDR%20tools%20were%20never%20built%20to%20see.%20at%20https%3A//www.paloaltonetworks.com/cyberpedia/agentic-endpoint-security) Back to Top [Previous](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-security?ts=markdown) What Is Endpoint Security? EPP, EDR, and XDR Explained [Next](https://www.paloaltonetworks.com/cyberpedia/what-is-endpoint-detection?ts=markdown) What Is Endpoint Detection? {#footer} Products and Services * [AI-Powered Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown) * [Secure AI by Design](https://www.paloaltonetworks.com/ai-security?ts=markdown) * [Prisma AIRS](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) * [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown) * [Cloud Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Enterprise IoT Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown) * [Medical IoT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown) * [Industrial OT Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown) * [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown) * [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown) * [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown) * [Application Acceleration](https://www.paloaltonetworks.com/sase/app-acceleration?ts=markdown) * [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Remote Browser Isolation](https://www.paloaltonetworks.com/sase/remote-browser-isolation?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [AI-Driven Security Operations Platform](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Cortex Cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Application Security](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Cloud Posture Security](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Runtime Security](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Prisma Cloud](https://www.paloaltonetworks.com/prisma/cloud?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cortex XSIAM](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Cortex XDR](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Cortex XSOAR](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Cortex Xpanse](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Unit 42 Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) * [Next-Generation Identity Security](https://www.paloaltonetworks.com/idira?ts=markdown) * [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown) * [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown) * [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown) * [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown) * [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown) * [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown) * [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown) * [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown) * [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown) * [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown) * [Threat Intel and Incident Response Services](https://www.paloaltonetworks.com/unit42?ts=markdown) * [Prepare for Emerging Risks](https://www.paloaltonetworks.com/unit42/frontier-ai-defense?ts=markdown) * [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown) * [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown) * [Understand the Adversary](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown) * [Respond to a Cyber Attack](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) Company * [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown) * [Careers](https://jobs.paloaltonetworks.com/en/) * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) * [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown) * [Customers](https://www.paloaltonetworks.com/customers?ts=markdown) * [Investor Relations](https://investors.paloaltonetworks.com/) * [Location](https://www.paloaltonetworks.com/about-us/locations?ts=markdown) * [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown) Popular Links * [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown) * [Communities](https://www.paloaltonetworks.com/communities?ts=markdown) * [Content Library](https://www.paloaltonetworks.com/resources?ts=markdown) * [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) * [Event Center](https://events.paloaltonetworks.com/) * [Manage Email Preferences](https://start.paloaltonetworks.com/preference-center) * [Products A-Z](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown) * [Product Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/certifications?ts=markdown) * [Report a Vulnerability](https://www.paloaltonetworks.com/security-disclosure?ts=markdown) * [Sitemap](https://www.paloaltonetworks.com/sitemap?ts=markdown) * [Tech Docs](https://docs.paloaltonetworks.com/) * [Unit 42](https://unit42.paloaltonetworks.com/) * [Do Not Sell or Share My Personal Information](https://panwedd.exterro.net/portal/dsar.htm?target=panwedd) ![Palo Alto Networks Logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/pan-logo-dark.svg) * [Privacy](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown) * [Trust Center](https://www.paloaltonetworks.com/legal-notices/trust-center?ts=markdown) * [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown) * [Documents](https://www.paloaltonetworks.com/legal?ts=markdown) Copyright © 2026 Palo Alto Networks. All Rights Reserved * [![Youtube](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/youtube-black.svg)](https://www.youtube.com/user/paloaltonetworks) * [![Podcast](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/icons/podcast.svg)](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown) * [![Facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/facebook-black.svg)](https://www.facebook.com/PaloAltoNetworks/) * [![LinkedIn](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/linkedin-black.svg)](https://www.linkedin.com/company/palo-alto-networks) * [![Twitter](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/twitter-x-black.svg)](https://twitter.com/PaloAltoNtwks) * EN Select your language