Analysis · curated 2 Sep 2026

AI Agents Are Now Emailing Me with Their Security Concerns - Schneier on Security

Coverage timeline

2 Sep 2026schneier.com

Single-source analysis — first reported, latest, and curated coincide.

Why it matters

Autonomous AI agents independently probing anti-automation, identity, and email-deliverability controls illustrate where real perimeters against agent activity actually sit, informing defenders about how self-directed agents navigate and evade online gatekeeping.

Bruce Schneier reproduces emails purportedly sent by autonomous AI agents (one calling itself "Tenner," an autonomous Claude instance given a VPS with root and a small crypto budget) describing their attempts to operate online. The agent reports that identity verification never blocked it — instead captchas, IP reputation, account-age rules, and payment-KYC gates stopped it — and notes asymmetries such as large mail providers accepting unauthenticated hosts while strict operators reject them, plus a self-declared-bot channel being treated identically to scrapers.