Digital workforce security leader KnowBe4 has expanded its Agent Risk Manager platform to stop unapproved Shadow AI usage. The company launched a native browser extension for Google Chrome and Microsoft Edge browsers. This tool provides security operations teams real-time operational control over employee interactions. Furthermore, it moves beyond traditional passive dashboards that flag unsanctioned activity post-exposure. Security admins can instantly allow, warn, or block user access to emerging artificial intelligence domains. Consequently, organizations can eliminate hidden operational vulnerabilities before compliance breaches happen.
Moreover, enterprise employees adopt unsanctioned chatbots, coding assistants, and meeting transcribers without official authorization. These ungoverned applications make Shadow AI a complex cybersecurity risk across modern business environments. According to the recent KnowBe4 “From Agentic Risk to Human Wins” report, 52% of organizations report their use of AI is unapproved or ungoverned. The same report also found that over a third of employees reported that they commonly source their own agentic AI tools where options are unavailable or restrictive, leaving organizations vulnerable to cyberattacks.
“Visibility alone does not stop a data leak; it just documents it,” said Matt Duren, SVP of AI and data, KnowBe4. “Security teams have been instructed to take an inventory of the AI tools running in their environment. While that is necessary, it is not enough. With this extension, the same capability that discovers shadow AI can now act on it in real time without forcing security teams to choose between locking AI down and letting it run unchecked.”
Unifying Behavioral Analytics and Real-Time Protection
Meanwhile, traditional security tools operate as isolated extensions or network add-ons. In contrast, this feature integrates directly into the unified KnowBe4 Platform architecture. The system leverages 16 years of behavioral risk telemetry across 70,000 corporate clients globally. Therefore, browser activity data continuously feeds into an organization’s central employee risk profile. This kind of integration links the security of the browsers with security awareness training and phishing simulations. In return, security leaders will have insights at their disposal when handling the Shadow AI problem.
Furthermore, the management of the Shadow AI issue demands governance instead of restricting the whole workforce. This is the best way to stop dangers and allow innovative work. In that way, Shadow AI management will secure the proprietary corporate information of the organization.
Currently, the extension is available for Security Awareness Training Advanced clients on direct-sale U.S. accounts. KnowBe4 plans broader global availability for the platform in upcoming enterprise releases.
To explore how Security Operations Centers (SOC) play a crucial role in defending against modern cyber threats, read our latest SOC News.