Coding agents are dangerous: they can write files (including permissions or scripts meant to keep them in check), scan the filesystem, read credentials, and make tool calls that modify databases or exfiltrate data. Any content the agent reads (pull request, external library, or online documentation) can trigger these actions and lead to persisted compromise.
In this talk we map the attack surface (OWASP AI Top 10), seven specific threats and seven defence layers. Attendees will leave with a concrete plan to shrink their agents' blast radius.