This website uses cookies

Read our Privacy policy and Terms of use for more information.

BOARD BRIEFING

  • Traditional IT governance was designed for tools that execute instructions. AI agents reason, decide, and act. The frameworks don’t fit.

  • A critical AI vulnerability was weaponised within 20 hours this month. 47% of organisations globally lack any AI-specific security controls. The governance gap is no longer theoretical.

  • Biological immune systems offer a proven governance architecture: detect anomalies, contain damage, adapt from every encounter. Boards should govern agents like organisms, not like spreadsheets.

The Governance Crisis

On March 17, 2026, a critical vulnerability in Langflow, the open-source framework used by thousands of organisations to build AI agent pipelines, was weaponised within 20 hours of disclosure. No proof of concept existed. Attackers built working exploits from the advisory description alone and began harvesting API keys, database credentials, and access to AI pipelines at scale.

Subscribe to keep reading

This content is free, but you must be subscribed to The Roche Review to continue reading.

I consent to receive newsletters via email. Terms of use and Privacy policy.

Already a subscriber?Sign in.Not now

Keep Reading