Tool Access Control for LLM Agents

LLM: Large Language Model

Momentum

23 papers in the last four weeks, up 156% on the four weeks before. 0.2% of all new papers.

Jul 13Week of Sep 28

Latest papers 110

All topics
CardsList
  1. Constrained-Action AI Remediation for SIEM/XDR via a NeMo-Guardrails Proxy

    Oct 7, 2026Georgios Koutidis, Nikolaos Kekatos, Tom Nianios +1LLMs for CybersecurityTool Access Control for LLM Agents

  2. Multi-Aspect Runtime Verification for Simulation-Based V&V of LLM-Enabled Autonomous Agents

    Oct 6, 2026Nikolaos Kekatos, Dimitrios Nikou, Anastasios Temperekidis +4LLM Agent VerificationRuntime Enforcement for AI Agents

  3. POLAR: Ontology-Guided Risk Prevention for Tool-Calling LLM Agents

    Oct 6, 2026Yunju Kang, Seonghyeon Cho, Irene Li +2LLM GuardrailsRuntime Enforcement for AI Agents

  4. APEX: Active Protection at Execution Boundaries for LLM Agents

    Oct 3, 2026Xinran Zheng, Xin Fan Guo, Zhiqiang Hao +7AI Agent SecurityPrompt Injection Defense

  5. OverAct: Measuring and Mitigating Proactive Over-Authorization in LLM Tool-Calling Agents

    Oct 1, 2026Taolin Zhang, Jiuheng Wan, Hanyu Wang +2Privacy Leakage in Language ModelsAI Agent Security Benchmarks

  6. PACE: Provenance-Aware Capability Enforcement for Tool-Using LLM Agents

    Oct 1, 2026Fengpeng Li, Qizhou Wang, Yuke Hu +5LLM Agent SecurityRuntime Enforcement for AI Agents

  7. Sapien: A Stateful Policy Engine for Autonomous AI Agents

    Sep 30, 2026Corinn Tiffany, Wen Zhang, Eugene Bagdasarian +1AI Agent SecurityRuntime Enforcement for AI Agents

  8. ToolFence: Fine-Grained Authorization for Secure Tool-Using LLM Agents

    Sep 29, 2026Yanjie Li, Xiangyu He, Xuelong Dai +1Runtime Enforcement for AI AgentsPrompt Injection Defense

  9. When Valid Tool Calls Change Meaning: Formation-Consistent Dispatch for LLM Agents

    Sep 28, 2026Geonwoo Kim, Brent ByungHoon KangLLM Agent SecurityRuntime Enforcement for AI Agents

  10. CoSec: Benchmarking Agent Security in Communities

    Sep 28, 2026Hao Chen, Wenhui Dong, Ye Chen +12LLM Agent SecurityAI Agent Security Benchmarks

  11. When Consent Outlives Context: Residual Authority Replay in Long-Lived Agents

    Sep 27, 2026Zhihao Zhang, Chao Wang, Rujia Li +3LLM Agent SecurityPrompt Injection Attacks on AI Agents

  12. Subjects, Not Authors: The Authorship Hazard in Agentic Dataspaces

    Sep 24, 2026Seungho Lee, Changbin LeeRuntime Enforcement for AI AgentsAI Agent Governance

  13. ActGov: Governing LLM Agent Actions via Policy-Constrained Validation

    Sep 21, 2026Kaiyuan Zhang, Yuke Peng, Ke Jiang +1LLM Agent SecurityRuntime Enforcement for AI Agents

  14. From Intent to Action: Benchmarking LLM Safety in Vehicle Voice Command Authorization

    Sep 17, 2026Diba Afroze, Xingli Zhang, Yazhou Tu +1LLM Safety BenchmarksLLM Safety Evaluation

  15. Universal Defenses for Tool-Integrated LLM Agents Against Adversarial Attacks

    Sep 14, 2026Xiaoyan Li, Yunli WangAdversarial Attacks on LLMsBackdoor Defense in LLMs

  16. The Stochastic Deputy: Structural Tenant Isolation for Tool-Using LLM Agents

    Sep 13, 2026Mirza Samad Ahmed Baig, Syeda Anshrah Gillani, Asher Ali +1LLM Agent SecurityTool Access Control for LLM Agents

  17. From Evidence to Effect: Authority Semantics and Runtime Infrastructure for Stateful Agents

    Sep 8, 2026Yang Li, Zongsi Xu, Sergey Volkov +7AI Agent SecurityTool Access Control for LLM Agents

  18. SiLR: Structure-Preserving Admission and Process Reward for LLM Tool Agents

    Sep 7, 2026Chenyu Zhou, Qiliang Jiang, Shuning Wu +1Constrained RLRuntime Enforcement for AI Agents

  19. VAKRA: Evaluating Multi-Hop Reasoning Across APIs and Retrieval Under Tool-Use Policies

    Aug 12, 2026Ankita Rajaram Naik, Anupama Murthi, Benjamin Elder +6Tool-Use EvaluationAI Agent Benchmarks

  20. Rethinking Agent Security as a Networking Problem

    Aug 12, 2026Van Tran, Taveesh Sharma, Tajveer Singh Dhesi +1CybersecurityAI Agent Security

  21. On Understanding, Identifying, and Mitigating Vulnerabilities in Agentic Large Language Models

    Aug 11, 2026Md Jafrin Hossain, Mohammad Arif Hossain, Nirwan AnsariLLM Agent SecurityLLM Security

  22. Multi-Agent AI Safety as an Institutional Design Problem

    Aug 10, 2026Abdullah XAI Agent SafetyMulti-Agent Systems

  23. Context Is Not Authority: Structured Runtime Governance for Financial Market Agents

    Aug 10, 2026Rui Tang, Qiangqiang Liu, Yichi Zhang +3Financial ServicesAI Agent Security

  24. NiyamAI - An Intent-Bound AI Agent with Cryptographically Verifiable Guardrails using Zero-Knowledge Proofs

    Aug 7, 2026Aditya Katkar, Om Karkele, Kartik Mandhane +2Tool-Augmented Language Model AgentsLLM Guardrails

  25. Hardware Keystores for AI Agent Signing Workflows: A Zero-Trust MCP Enforcement Architecture

    Aug 6, 2026Leo Sambrook, Sampo SovioMCP SecurityAI Agent Security

  26. Stateful Governance for Concurrent Agentic Systems

    Aug 3, 2026Yuxiang Peng, Xiaodi WuAgentic WorkflowsAI Agent Governance

  27. Beyond Single-Use Tokens: Durable Authorization State for Replay-Resistant LLM Agent Actions

    Aug 3, 2026Jinghan Xu, Longze Fan, Zeyuan Wang +2LLM Agent SecurityAccess Control

  28. Securing Agentic AI: From Per-Action Checks to Trajectory Assurance

    Aug 3, 2026Alireza Lotfi, Subangkar Karmaker Shanto, Imtiaz Karim +1AI Agent SecurityLLM Agent Security

  29. CAGE: Certified Authorization under Typed-Return Uncertainty for Tool-Using Agents

    Jul 31, 2026Blaise Delattre, Cong Wang, Yang CaoLLM Agent SecurityTool-Using Agents

  30. Distributing Security Controls Through Harness Engineering

    Jul 28, 2026William Robert GoreAI Agent SecurityLLM Agent Security

  31. Explanation-Bound Tool Execution for AI Agents: Server-Verified Action Claims Without Trusting Model Rationales

    Jul 28, 2026Genliang Zhu, Chu WangLLM Agent SecurityLLM Agent Verification

  32. Hybrid Analysis for Secure MCP Tool Use in LLM Agents

    Jul 28, 2026Ping He, Yuexiang Xie, Yaliang Li +1MCP SecurityLLM Agent Security

  33. Agentic Permissions Policy Algebra for Taint Confinement in LLM Agents

    Jul 27, 2026Arseny Kravchenko, Vadim Liventsev, Innokentii Konstantinov +2LLM Agent SecurityPrompt Injection Attacks on AI Agents

  34. MemTX: Transactional Belief Commit for Stateful Agent Memory

    Jul 27, 2026Xiaoyang Li, Yiqi Wang, Haohui Lu +5Belief RevisionLLM Agent Safety

  35. ToolGuardian: Declarative Security for AI Agent-Tool Interactions

    Jul 23, 2026Arun Ravindran, Saurabh DeochakeAI Agent SecurityLLM Agent Security

  36. Cryptographically verifiable authorization for autonomous AI agents: a falsifiable hypothesis and proof of concept

    Jul 23, 2026M. Llambí-Morillas, D. Fernández-FernándezAI Agent SecurityAI Agent Governance

  37. Data Leakage Prevention in Agentic Applications via Preemptive Hardening

    Jul 21, 2026Akansha Shukla, Emily Bellov, Parth Atulbhai Gandhi +2AI Agent SecurityLLM Agent Security

  38. RT-SHCUA: Real-Time Self-Hosted Computer-Use Agent for UAV Control

    Jul 20, 2026Di Lu, Bo Zhang, Xiyuan Li +5Aerial RoboticsSafety-Critical Control