arXiv:2505.08807cs.CRcs.AI2025-05被引 38

剖析AI Agent互联的四大安全风险与防护对策

Security of Internet of Agents: Attacks and Countermeasures

  • 梳理IoA架构中身份认证、跨代理信任等四类新型漏洞
  • 总结现有防御机制并指出持续存在的安全挑战
  • 适合关注AI系统安全与隐私的科研人员参考

随着大语言模型和视觉-语言模型的发展,AI代理已演变为具备感知、推理与决策能力的自主交互系统。随着其在虚拟与物理领域的广泛部署,互联网代理(Internet of Agents, IoA)成为实现异构代理间可扩展、安全协作的关键基础设施。本文全面审视IoA系统的安全与隐私现状。首先,阐述IoA架构及其相较于传统网络的独特脆弱性,重点关注四大关键方面:身份认证威胁、跨代理信任问题、具身安全及隐私风险。随后,综述现有与新兴的防御机制,并指出现存持久性挑战。最后,提出推动韧性与隐私保护型IoA生态发展的开放研究方向。

原文摘要 · Abstract (English)

With the rise of large language and vision-language models, AI agents have evolved into autonomous, interactive systems capable of perception, reasoning, and decision-making. As they proliferate across virtual and physical domains, the Internet of Agents (IoA) has emerged as a key infrastructure for enabling scalable and secure coordination among heterogeneous agents. This survey offers a comprehensive examination of the security and privacy landscape in IoA systems. We begin by outlining the IoA architecture and its distinct vulnerabilities compared to traditional networks, focusing on four critical aspects: identity authentication threats, cross-agent trust issues, embodied security, and privacy risks. We then review existing and emerging defense mechanisms and highlight persistent challenges. Finally, we identify open research directions to advance the development of resilient and privacy-preserving IoA ecosystems.

AI安全物联网代理系统隐私保护

Thank you to arXiv for use of its open access interoperability. PaperDance 不是 arXiv 官方产品;中文卡片由大模型生成,请以原文为准。