Guardrails as Infrastructure: Policy-First Control for Tool-Orchestrated Workflows
Fuente:
arXiv
Salvato in:
| Autori principali: | Sigdel, Akshey, Baral, Rista |
|---|---|
| Natura: | Preprint |
| Pubblicazione: |
2026
|
| Soggetti: | |
| Accesso online: | |
| Tags: |
Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
|
Documenti analoghi
Schema First Tool APIs for LLM Agents: A Controlled Study of Tool Misuse, Recovery, and Budgeted Performance
di: Sigdel, Akshey, et al.
Pubblicazione: (2026)
di: Sigdel, Akshey, et al.
Pubblicazione: (2026)
ToolMisuseBench: An Offline Deterministic Benchmark for Tool Misuse and Recovery in Agentic Systems
di: Sigdel, Akshey, et al.
Pubblicazione: (2026)
di: Sigdel, Akshey, et al.
Pubblicazione: (2026)
ChainFuzzer: Greybox Fuzzing for Workflow-Level Multi-Tool Vulnerabilities in LLM Agents
di: Wu, Jiangrong, et al.
Pubblicazione: (2026)
di: Wu, Jiangrong, et al.
Pubblicazione: (2026)
Identity Control Plane: The Unifying Layer for Zero Trust Infrastructure
di: Avirneni, Surya Teja
Pubblicazione: (2025)
di: Avirneni, Surya Teja
Pubblicazione: (2025)
Unpacking Security Scanners for GitHub Actions Workflows
di: Fares, Madjda, et al.
Pubblicazione: (2026)
di: Fares, Madjda, et al.
Pubblicazione: (2026)
Provenance of Adaptation in Scientific and Business Workflows -- Literature Review
di: Stage, Ludwig, et al.
Pubblicazione: (2025)
di: Stage, Ludwig, et al.
Pubblicazione: (2025)
On the effectiveness of Large Language Models for GitHub Workflows
di: Zhang, Xinyu, et al.
Pubblicazione: (2024)
di: Zhang, Xinyu, et al.
Pubblicazione: (2024)
Exploring Security Practices in Infrastructure as Code: An Empirical Study
di: Verdet, Alexandre, et al.
Pubblicazione: (2023)
di: Verdet, Alexandre, et al.
Pubblicazione: (2023)
SecDOAR: A Software Reference Architecture for Security Data Orchestration, Analysis and Reporting
di: Chauhan, Muhammad Aufeef, et al.
Pubblicazione: (2024)
di: Chauhan, Muhammad Aufeef, et al.
Pubblicazione: (2024)
When Specifications Meet Reality: Uncovering API Inconsistencies in Ethereum Infrastructure
di: Ma, Jie, et al.
Pubblicazione: (2026)
di: Ma, Jie, et al.
Pubblicazione: (2026)
Heimdallr: Characterizing and Detecting LLM-Induced Security Risks in GitHub CI Workflows
di: Ruan, Bonan, et al.
Pubblicazione: (2026)
di: Ruan, Bonan, et al.
Pubblicazione: (2026)
Integrating Log-Based Security Analytics in Agile Workflows: A Real-World Experience Report
di: Thool, Arpit, et al.
Pubblicazione: (2026)
di: Thool, Arpit, et al.
Pubblicazione: (2026)
Reinforcement Learning-Driven Adaptation Chains: A Robust Framework for Multi-Cloud Workflow Security
di: Soveizi, Nafiseh, et al.
Pubblicazione: (2025)
di: Soveizi, Nafiseh, et al.
Pubblicazione: (2025)
SafeToolBench: Pioneering a Prospective Benchmark to Evaluating Tool Utilization Safety in LLMs
di: Xia, Hongfei, et al.
Pubblicazione: (2025)
di: Xia, Hongfei, et al.
Pubblicazione: (2025)
Building Privacy-and-Security-Focused Federated Learning Infrastructure for Global Multi-Centre Healthcare Research
di: Zhang, Fan, et al.
Pubblicazione: (2026)
di: Zhang, Fan, et al.
Pubblicazione: (2026)
GenSIaC: Toward Security-Aware Infrastructure-as-Code Generation with Large Language Models
di: Li, Yikun, et al.
Pubblicazione: (2025)
di: Li, Yikun, et al.
Pubblicazione: (2025)
Comment and Control: Hijacking Agentic Workflows via Context-Grounded Evolution
di: Fendley, Neil, et al.
Pubblicazione: (2026)
di: Fendley, Neil, et al.
Pubblicazione: (2026)
Evaluating Tool Cloning in Agentic-AI Ecosystems
di: Kim, Taein, et al.
Pubblicazione: (2026)
di: Kim, Taein, et al.
Pubblicazione: (2026)
Auditing MCP Servers for Over-Privileged Tool Capabilities
di: Huang, Charoes, et al.
Pubblicazione: (2026)
di: Huang, Charoes, et al.
Pubblicazione: (2026)
Are AI-assisted Development Tools Immune to Prompt Injection?
di: Huang, Charoes, et al.
Pubblicazione: (2026)
di: Huang, Charoes, et al.
Pubblicazione: (2026)
SBOM Generation Tools in the Python Ecosystem: an In-Detail Analysis
di: Cofano, Serena, et al.
Pubblicazione: (2024)
di: Cofano, Serena, et al.
Pubblicazione: (2024)
Symbolic Guardrails for Domain-Specific Agents: Stronger Safety and Security Guarantees Without Sacrificing Utility
di: Hong, Yining, et al.
Pubblicazione: (2026)
di: Hong, Yining, et al.
Pubblicazione: (2026)
PentestGPT: An LLM-empowered Automatic Penetration Testing Tool
di: Deng, Gelei, et al.
Pubblicazione: (2023)
di: Deng, Gelei, et al.
Pubblicazione: (2023)
Centralized Defense: Logging and Mitigation of Kubernetes Misconfigurations with Open Source Tools
di: Russell, Eoghan, et al.
Pubblicazione: (2024)
di: Russell, Eoghan, et al.
Pubblicazione: (2024)
Building a Cybersecurity Risk Metamodel for Improved Method and Tool Integration
di: Ponsard, Christophe
Pubblicazione: (2024)
di: Ponsard, Christophe
Pubblicazione: (2024)
HyperPUT: Generating Synthetic Faulty Programs to Challenge Bug-Finding Tools
di: Felici, Riccardo, et al.
Pubblicazione: (2022)
di: Felici, Riccardo, et al.
Pubblicazione: (2022)
Smart Contract and DeFi Security Tools: Do They Meet the Needs of Practitioners?
di: Chaliasos, Stefanos, et al.
Pubblicazione: (2023)
di: Chaliasos, Stefanos, et al.
Pubblicazione: (2023)
Policy-Governed RAG - Research Design Study
di: Ray, Jean-Marie Le
Pubblicazione: (2025)
di: Ray, Jean-Marie Le
Pubblicazione: (2025)
MCP-SandboxScan: WASM-based Secure Execution and Runtime Analysis for MCP Tools
di: Tan, Zhuoran, et al.
Pubblicazione: (2026)
di: Tan, Zhuoran, et al.
Pubblicazione: (2026)
Model Context Protocol Threat Modeling and Analyzing Vulnerabilities to Prompt Injection with Tool Poisoning
di: Huang, Charoes, et al.
Pubblicazione: (2026)
di: Huang, Charoes, et al.
Pubblicazione: (2026)
Clawdrain: Exploiting Tool-Calling Chains for Stealthy Token Exhaustion in OpenClaw Agents
di: Dong, Ben, et al.
Pubblicazione: (2026)
di: Dong, Ben, et al.
Pubblicazione: (2026)
UniBOM -- A Unified SBOM Analysis and Visualisation Tool for IoT Systems and Beyond
di: Safronov, Vadim, et al.
Pubblicazione: (2025)
di: Safronov, Vadim, et al.
Pubblicazione: (2025)
Unity is Strength: Enhancing Precision in Reentrancy Vulnerability Detection of Smart Contract Analysis Tools
di: Wang, Zexu, et al.
Pubblicazione: (2024)
di: Wang, Zexu, et al.
Pubblicazione: (2024)
From Obfuscated to Obvious: A Comprehensive JavaScript Deobfuscation Tool for Security Analysis
di: Zhou, Dongchao, et al.
Pubblicazione: (2025)
di: Zhou, Dongchao, et al.
Pubblicazione: (2025)
HarnessAgent: Scaling Automatic Fuzzing Harness Construction with Tool-Augmented LLM Pipelines
di: Yang, Kang, et al.
Pubblicazione: (2025)
di: Yang, Kang, et al.
Pubblicazione: (2025)
IssueGuard: Real-Time Secret Leak Prevention Tool for GitHub Issue Reports
di: Rahman, Md Nafiu, et al.
Pubblicazione: (2026)
di: Rahman, Md Nafiu, et al.
Pubblicazione: (2026)
Many Tools, Few Exploitable Vulnerabilities: A Survey of 246 Static Code Analyzers for Security
di: Hermann, Kevin, et al.
Pubblicazione: (2026)
di: Hermann, Kevin, et al.
Pubblicazione: (2026)
Who Tests the Testers? Systematic Enumeration and Coverage Audit of LLM Agent Tool Call Safety
di: Chen, Xuan, et al.
Pubblicazione: (2026)
di: Chen, Xuan, et al.
Pubblicazione: (2026)
RiskHarvester: A Risk-based Tool to Prioritize Secret Removal Efforts in Software Artifacts
di: Basak, Setu Kumar, et al.
Pubblicazione: (2025)
di: Basak, Setu Kumar, et al.
Pubblicazione: (2025)
AssetHarvester: A Static Analysis Tool for Detecting Secret-Asset Pairs in Software Artifacts
di: Basak, Setu Kumar, et al.
Pubblicazione: (2024)
di: Basak, Setu Kumar, et al.
Pubblicazione: (2024)
Documenti analoghi
-
Schema First Tool APIs for LLM Agents: A Controlled Study of Tool Misuse, Recovery, and Budgeted Performance
di: Sigdel, Akshey, et al.
Pubblicazione: (2026) -
ToolMisuseBench: An Offline Deterministic Benchmark for Tool Misuse and Recovery in Agentic Systems
di: Sigdel, Akshey, et al.
Pubblicazione: (2026) -
ChainFuzzer: Greybox Fuzzing for Workflow-Level Multi-Tool Vulnerabilities in LLM Agents
di: Wu, Jiangrong, et al.
Pubblicazione: (2026) -
Identity Control Plane: The Unifying Layer for Zero Trust Infrastructure
di: Avirneni, Surya Teja
Pubblicazione: (2025) -
Unpacking Security Scanners for GitHub Actions Workflows
di: Fares, Madjda, et al.
Pubblicazione: (2026)