University of Bahrain · Senior Research 2026

Developing an Agentic AI
Vulnerabilities Framework

Senior Research ProjectUniversity of Bahrain, 2026

Agentic AI
Security Research
Vulnerability Analysis
Scroll
The Research

About the Project

A research effort to identify, classify, and mitigate the unique security vulnerabilities present in agentic AI systems.

Research Abstract

Developing an Agentic AI Vulnerabilities Framework

The emergence of agentic artificial intelligence (AI) presents the next iteration of intelligent systems, characterized by their ability to think independently, make use of memories, make decisions, and execute external tools. While these qualities enable better automation and increased effectiveness, agentic systems also introduce unique cybersecurity vulnerabilities distinct from those in conventional AI or traditional software. This paper proposes a framework for examining vulnerabilities in agentic AI systems, analyzing security threats across five operational layers: Interaction, Context & Memory, Reasoning, Tool & Execution, and Governance & Trust. Additionally, this research introduces the concept of cross-layer vulnerability propagation — threats that cascade across multiple stages of an agentic system rather than remaining isolated. The framework was evaluated through qualitative interviews with cybersecurity professionals and AI practitioners. Findings confirm that the proposed framework, along with concepts such as vulnerability propagation and prompt injection, is highly relevant and broadly supported by domain experts.

Five Operational Layers of the Framework

InteractionContext & MemoryReasoningTool & ExecutionGovernance & Trust

Institution

University of Bahrain

Year

2026

Type

Senior Project

Supervisor

Dr. Yaqoob Salman Alslais

Research Paper

Download the complete research paper covering our framework, methodology, and findings on agentic AI vulnerabilities.

Download Research Paper

Research Scope

Framework Layers5
Team Members2
Focus AreaAI Security
MethodologyQualitative
Year2026

Key Research Pillars

Agentic AI Systems

Analysis of autonomous AI agents, their architectures, and how they interact with external environments and tools.

Vulnerability Detection

Systematic identification and classification of security vulnerabilities unique to agentic AI deployments.

Security Frameworks

Development of structured frameworks and methodologies for assessing and hardening agentic AI systems.

Risk Assessment

Quantitative and qualitative approaches to evaluating threat surfaces and risk posture in AI-driven pipelines.

The Team

Meet the Researchers

Two cybersecurity students from the University of Bahrain driving this research forward.

MH

Mohamed Husam Mohamed Darwish

Cybersecurity enthusiast | BS Cybersecurity @ UoB

Cybersecurity enthusiast with hands-on experience in ethical hacking, penetration testing, system hardening, and risk management. Skilled in building secure applications using Python, Go, and JavaScript, with a strong foundation in client-server architecture, real-time systems, and network security. Actively pursuing advanced credentials in cloud architecture and penetration testing.

Technical Skills

PythonGoJavaJavaScriptHTMLCSSRESTful APIsSQLiteGitDockerReal-Time SystemsPenetration TestingNetwork SecuritySystem Hardening

Certifications

AWS Cloud Practitioner (2025)
Pursuing AWS Solutions Architect
Pursuing eJPTv2 (eLearnSecurity)

Key Projects

Real-Time News Aggregation System — Python, Sockets, SSL
Artist Events Dashboard — Go, REST APIs
Real-Time Forum — Go, JavaScript, SQLite, WebSockets
Ant Colony Pathfinding Simulator — Go
Browser-Based Arcade Game Engine — JavaScript, DOM

Experience & Volunteering

Hub Administrator — D11 Gaming Hub, Dana Mall (2024)
IT Volunteer — Bahrain Asian Youth Games 2025
Volunteer — Arab International Cybersecurity Conference (AICS) 2025
Volunteer — First Cyber Security Youth Forum, UoB
KA

Kaltham Abdulla Mohamed Basalar

Cybersecurity Student

Responsible and detail-oriented cybersecurity student looking forward to making an impact in the field.

Technical Skills

Microsoft 365WiresharkPacket TracerPythonJava

Certifications

AWS Certified Cloud Practitioner (2025)
Essentials of Career Development — ThinkSmart (2025)
INJAZ for Innovation (Digital Entrepreneurship)

Experience & Activities

Internship at D11 Gaming Hub (2025)
Arab International Cybersecurity Conference & Exhibition (ICS) 2023
Contact

Get in Touch

Interested in our research or want to connect? Reach out to either researcher directly.

MH

Mohamed Husam Mohamed Darwish

Cybersecurity enthusiast | BS Cybersecurity @ UoB

KA

Kaltham Abdulla Mohamed Basalar

Cybersecurity Student