WithSecure media relations
WithSecure PR
WithSecure Elements AI Security’s visibility capability shows security teams which AI tools, browser extensions and AI agents are actually running across their organisation before those tools become the next breach.
Helsinki, Finland – September 30, 2026: WithSecure, Europe’s trusted cybersecurity partner, today announced that AI Security is now available. The capability gives security teams and managed service providers (MSPs) a single view of the AI tools, browser extensions, and AI agents already active in their environment – many of which arrive without IT’s knowledge.
Employees are adopting generative AI tools faster than most security teams can track them. These tools often arrive without a formal rollout: an employee installs a browser extension or signs up for a chatbot with a personal account, and IT never finds out. Left unmonitored, this unmanaged “shadow AI” can quietly move corporate data outside the organisation, creating compliance exposure and, in the worst case, a path for intellectual property to walk out the door. Gartner® projects that “by 2028, 22% of cyberattacks and data leaks will involve generative AI.”*
Browser extensions carry a disproportionate share of that risk. Many AI extensions request broad permissions to function, including the ability to read and change data on every site a person visits. If an extension turns out to be malicious, or is compromised after installation, an attacker can use that same access to reach sensitive corporate data, login credentials, and proprietary code. Traditional antivirus and endpoint tools, built to scan files on disk, have little visibility into what happens inside the browser at runtime – exactly the gap this release is designed to close.
With this release, WithSecure Elements AI Security brings:
- Shadow AI discovery, through a dedicated AI Security Dashboard and Software Inventory that lists every AI tool in use across the organisation, including tools that were never formally installed.
- Browser extension tracking, surfacing AI-related browser plug-ins from chatbot sidebars to AI-powered productivity add-ons across every managed endpoint.
- Browser-based usage visibility and control, built on WithSecure’s existing Browsing Protection capability, giving teams a first line of sight into how AI is being accessed through the browser.
- AI and agentic identity visibility, integrated with Microsoft Entra ID, to surface AI agents, AI chat assistants, AI coding assistants, and other generative AI tools operating with their own credentials. As organisations adopt more AI agents and integrations, each one typically spins up its own credentials or service accounts, many of which escape central tracking and can carry more privilege than the people who built them. Forrester expects that machine identities will outnumber human identities by a factor of greater than 80:1 in 2029, and AI agent identities for privileged use (administration) are steeply rising.** Visibility into these identities is a foundational step in managing that risk.
AI Security is enabled as Early Access for a limited time for the eligible WithSecure™ Elements subscribers.
“Confidence for AI starts with visibility. Security teams using WithSecure Elements AI Security can discover AI tools, extensions and agents already active in their environment through the console they already know. That gives them a clearer picture of how AI is being used, and a practical starting point for managing its risks,” TL Viswanathan, Chief Product Officer, WithSecure.
This release reflects WithSecure’s ongoing investment in AI Security. The company plans to expand these capabilities with additional commercial features in the months ahead.
* Gartner, 3 Generative AI Security Red Flags for Midsize Enterprise CIOs, Patrick Long, Srishti Khanna, 2 May 2025. GARTNER is a trademark of Gartner, Inc. and/or its affiliates.
** Forrester, Global IAM Market Forecast, 2024 to 2029, Jan 2026.