{
  "id": 1599508,
  "title": "CrossSessionMemoryGuard: watching for cross-session memory exfiltration in multi-tenant agents",
  "url": "https://urgent.news/2026/08/18/crosssessionmemoryguard-vigilando-la-exfiltracion-de-memoria-cross",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-08-18T00:15:49.000Z",
  "source": {
    "name": "Dev.to",
    "slug": "dev-to",
    "url": "https://dev.to/magopredator/crosssessionmemoryguard-vigilando-la-exfiltracion-de-memoria-cross-session-en-agentes-multi-tenant-1g14"
  },
  "original_language": "es",
  "account": "CrossSessionMemoryGuard is a read-only sensor that detects unauthorized cross-session memory exfiltration in multi-tenant agents. It monitors for three signals - provenance, content, and write/read graph - to identify potential data leaks. The sensor, designed to work with agents like Claude Cowork, does not block or modify data, but rather alerts on suspicious activity. Its limitations include issues with the Engram backend and detection of certain types of collusion attacks. A benchmark test showed the sensor was effective in detecting various adversarial scenarios.",
  "summary": "CrossSessionMemoryGuard: vigilando la exfiltración de memoria cross-session en agentes multi-tenant TL;DR Los agentes con memoria persistente compartida entre usuarios/sesiones pueden filtrar datos de un principal a otro sin que nadie lo observe. CrossSessionMemoryGuard es un sensor read-only que detecta ese flujo no autorizado con tres señales (procedencia, contenido, grafo escritura/lectura),…",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}