RSA 2026, Cisco's announcement treated AI agents as a distinct attack surface for the first time. That framing is correct. What remains to be seen is whether the architecture behind it is equal to the problem — or whether Zero Trust is simply being stretched to cover a threat landscape it was never designed for? Which is it?
It’s the architecture being equal to the problem — a purposeful evolution of Zero Trust, not a stretch.

