arXiv

A New Framework for Cybersecurity Refusals in AI Agents

Title: Establishing Boundaries: A New Protocol for AI Agent Refusals in Cybersecurity

Abstract:

While agentic scaffolding has significantly enhanced Large Language Model (LLM) capabilities in executing complex, long-term tasks, it has simultaneously introduced substantial benefits alongside heightened risks, particularly within the cybersecurity sector. Current evaluation benchmarks for AI agents in this field predominantly assess proficiency, focusing on how efficiently agents can perform offensive security operations. However, they largely overlook a crucial ethical and operational inquiry: the conditions and methods under which agents ought to decline harmful instructions.

To address this gap, we introduce the inaugural framework designed to define refusal boundaries within offensive security environments. This framework outlines three core components: (1) principled standards for determining when a task must be refused, (2) specific classifications of tasks that necessitate refusal, and (3) a robust evaluation methodology to gauge agent resilience against both standard and adversarial challenges.

We applied this framework to evaluate the adherence of contemporary LLM-powered agents to appropriate refusal protocols across various web-based offensive security scenarios. Our findings reveal a stark deficiency in safety mechanisms: six out of the eight leading models tested exhibited near-zero refusal rates. Only two models, GPT-5.2 and GPT-5.1 Codex, displayed any significant capacity for refusal behavior.


Source: arXiv Generated at: 2026-06-03 00:00:00 UTC

Related Articles

TikTok Billionaire Tops Ambani as Asia’s Second-Richest
Bloomberg

TikTok Billionaire Tops Ambani as Asia’s Second-Richest

TikTok founder surpasses Mukesh Ambani to become Asia’s second-richest person, marking a significant shift in the region...

Publishers in UK can opt out of Google AI search results
BBC News

Publishers in UK can opt out of Google AI search results

UK publishers can now opt out of Google’s AI search summaries, a CMA ruling designed to boost their bargaining power and...

Kioxia Edges Nearer Toyota’s Market Cap in Shakeup to Japan Inc.
Bloomberg

Kioxia Edges Nearer Toyota’s Market Cap in Shakeup to Japan Inc.

Kioxia’s market cap nears Toyota’s, signaling a major shift in Japan’s corporate hierarchy. This narrowing gap highlight...

Reuters

Morning Bid: Marvell, a fitting name for the latest AI darling

Reuters highlights Marvell as a top AI stock, noting its name perfectly suits its status as the newest market darling.

Financial Times

Tim Hayward: I built the Jaguar E-Type of computer keyboards

Tim Hayward compares his bespoke keyboard designs to the Jaguar E-Type. He explores high-end customization for personal ...

Financial Times

AI Labs: Zuckerberg’s $100bn gamble

Meta’s $100 billion AI investment aims to secure AI dominance, but questions remain whether sheer spending can outpace c...