Protecting a government website requires two related but distinct defenses: secure residents’ and employees’ accounts against automated sign-in attacks, and constrain any AI agent that can access agency systems. Use phishing-resistant sign-in where supported, apply current government identity guidance to enrollment and recovery, protect tokens, and give each agent a separate, narrowly scoped identity. No single control guarantees safety.
What does “AI-agent account attack” mean?
The phrase can describe attacks on people’s accounts using automation or AI assistance, as well as risks from an agency’s own AI agents. The defenses overlap around identity and monitoring, but the threat paths are different.
Attacks on public website accounts
Automated or AI-assisted traffic may target sign-in, account creation, or recovery. CISA’s identity and authentication guidance discusses threats such as credential stuffing, password spraying, and phishing. The sources available do not establish that AI agents are uniquely responsible for any particular compromise of a government website, or give a measured prevalence rate for such attacks.
Risks from agents with agency access
An agency may authorize an agent to use tools, data, or services on behalf of a person or organization. If the agent receives broad permissions or shared credentials, a mistake or hijacked workflow can expose more than the intended task. This is an access-governance problem even when no public website account has been compromised.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
#1 Best Overall
- POWERFUL SECURITY KEY: The Security Key C NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key C NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key C NFC via USB-C and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
How should a government website protect sign-in?
Prefer phishing-resistant MFA where the service supports it
CISA recommends planning a move to FIDO/WebAuthn. These methods can prevent authentication when a user is tricked into visiting a fake site because authentication is tied to the legitimate service’s origin. A generic FIDO2/WebAuthn security key is one way a person may authenticate, but it works only where the service supports the method; it is not a substitute for sound enrollment, recovery, token, or agent controls.
If phishing-resistant MFA is not available, CISA identifies number matching as a fallback. MFA methods are not interchangeable: their resistance to phishing and push-bombing differs. When choosing among methods, assess phishing resistance, compatibility with the service, accessibility and usability, recovery, and administrative manageability. Do not assume a code sent by SMS or email, an app code, and a security key provide equivalent protection.
Rank #2
- POWERFUL SECURITY KEY: The YubiKey 5C NFC is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5C NFC secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5C NFC via USB and tap it, or tap it against your phone (NFC), to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
| Method or direction | What the guidance establishes | Practical qualification |
|---|---|---|
| FIDO/WebAuthn | CISA recommends planning for phishing-resistant MFA and describes FIDO/WebAuthn as able to block authentication at a fake site. | The service must support it; provide an accessible enrollment and recovery path. |
| Number-matching MFA | CISA identifies it as a fallback when phishing-resistant MFA is not yet available. | It is not equivalent to phishing-resistant authentication; assess the service’s risks and options. |
Protect enrollment and recovery as carefully as login
NIST Special Publication 800-63-4, finalized in July 2025, covers identity proofing, enrollment, authenticators, authentication protocols, and federation for people interacting with government information systems. It also includes measures addressing automated attacks against enrollment. Use it as the current government digital-identity baseline for designing the full account lifecycle, rather than treating a successful password or MFA check as the only point that matters.
Secure tokens, federation, and API access
Passwords are only one route into an account. NISTIR 8587, finalized September 15, 2026, addresses protection of identity tokens and assertions for agencies and cloud service providers, including key management, token verification, lifecycle controls, single sign-on, federation, and API access. Include token theft and misuse in account-security reviews, not just password exposure.
Quick wins for a faster PC:
Scan for outdated or missing drivers - takes under a minuteDriver Scan →Clear out junk files and repair common Windows errorsFree Scan →Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →Rank #3
- POWERFUL SECURITY KEY: The YubiKey 5 NFC is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5 NFC secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5 NFC via USB and tap it, or tap it against your phone (NFC), to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
Monitor the paths attackers can use
Review sign-in, enrollment, recovery, federation, and API activity as distinct paths. For public services, traffic shaping, rate limits, bot detection, and lockout design may be relevant, but the cited guidance does not provide a single operational playbook for AI-operated credential-stuffing traffic against government websites. Set and validate those controls against the service’s own threat model; avoid assuming a bot challenge or aggressive lockout is safe for every user or access need.
How should an agency control AI agents?
Give each agent a distinct, accountable identity
Do not give an agent a staff member’s password or reuse a person’s ordinary account as the agent’s identity. NIST authors Bill Fisher and Ryan Galluzzo wrote in an August 27, 2026, NIST Cybersecurity Insights article: “Credential sharing is a bad idea in all contexts.” A distinct identity makes it possible to attribute actions and revoke the agent’s access without disabling the person’s account.
Rank #4
- POWERFUL SECURITY KEY: The Security Key NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key NFC via USB-A and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
Delegate only the access needed for a defined task
Use narrowly scoped authorization, with delegated rights tied to an accountable person or service where appropriate. Limit the agent’s tools, data, and ability to act across systems. NIST warns that broad local-user permissions can let an agent impersonate a person; a separate identity alone does not make an over-privileged agent safe.
Treat documents, websites, and messages as untrusted input
Content an agent reads can contain malicious instructions designed to redirect its behavior. OWASP’s agent-risk material includes direct and indirect prompt injection, privilege escalation through tools, data exfiltration, excessive autonomy, and sensitive data exposure. The risk depends partly on what tools and permissions the agent has: reducing access and validating intended actions can limit the damage if a workflow is hijacked.
PC Slower Than It Used to Be?
A free scan shows the junk files, broken settings and background clutter dragging Windows down - then fixes them in one click.Free scan · Windows 10 & 11Outdated Drivers Are Slowing You Down
One free scan finds every outdated or missing driver and matches the right update for your exact hardware.Free scan · exact hardware matchBest Value
- POWERFUL SECURITY KEY: The YubiKey 5 is a versatile physical passkey that protects your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5 secures 100+ of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5 via USB and tap it to authenticate. No batteries, no internet connection, and no extra fees required.
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
Require oversight for consequential actions
Joint CISA and partner guidance announced May 1, 2026, recommends limiting autonomy, strong identity management, layered defenses, oversight, threat modeling, monitoring, and regular security assessment. Apply human approval or an independent check to actions with significant consequences, such as changing access or handling sensitive data. Record activity in a way that supports review and incident response.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.What do agent-hijacking test results show?
CAISI at NIST evaluated agent hijacking in simulated AgentDojo environments, not on production government websites. In one held-out Workspace evaluation in 2025, the strongest baseline attack succeeded 11% of the time, while the strongest novel red-team attack succeeded 81% of the time. Across five selected injection tasks, average attack success was 57% for one attempt and rose to 80% after 25 attempts.
These are results from particular experimental tasks, not estimates of how often government accounts are attacked or compromised. CAISI notes that results vary by task and impact; even a lower success rate may merit mitigation when the possible outcome is severe.
How to put the controls into practice
- Map the separate access paths. Document how people enroll, sign in, recover accounts, use federation or APIs, and how each agent reaches tools and data.
- Set an identity and authorization standard. Specify the acceptable sign-in methods for each service and require separate, attributable identities and task-scoped permissions for agents.
- Threat-model the workflows. Consider automated account attacks on public-facing paths and malicious content or tool misuse in agent workflows; identify sensitive actions that require an independent check.
- Test each path end to end. Exercise enrollment, recovery, sign-in, token and API use, and agent tasks separately, including failure and revocation cases.
- Review evidence and adjust. Check logs and assessment findings for unexpected access or behavior, then revise permissions and controls as the service and its agent workflows change.
NIST notes that standards and deployment practices for agent identity are still evolving; its NCCoE project is developing practical resources. Agencies should therefore validate designs for their own services rather than assume one checklist or safeguard covers every deployment.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

