Tag: identity
-
IAM for AI agents: A Practical Enterprise Framework
What is IAM for AI agents?AI agents authenticate, invoke tools, and act across enterprise systems with delegated authority. IAM for AI Agents is the identity-control architecture that governs those actors. This guide covers the limits of conventional provisioning, the components that matter, how to evaluate framework choices, and what runtime evidence proves an agent behaved…
-
Lumma, RedLine and Vidar Infostealers Fuel Cloud Credential Theft Campaigns
Tags: api, attack, cloud, credentials, cyber, data-breach, exploit, identity, infrastructure, malware, theft, threatInfostealer malware is increasingly becoming the bridge between a compromised developer workstation and an enterprise cloud environment, with Lumma, RedLine, and Vidar emerging as major threats to credentials, API keys, and active browser sessions. Identity, rather than exposed infrastructure, remains the most valuable cloud attack surface. Attackers no longer need to exploit a public-facing server…
-
Omada integriert EmpowerID und erweitert Identity Governance um Runtime-Kontrollen für KI-Agenten
Omada übernimmt EmpowerID und erweitert seine Identity-Governance-Plattform um Runtime-Autorisierung und Echtzeit-Kontrolle für autonome KI-Agenten. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/omada-integriert-empowerid-und-erweitert-identity-governance-um-runtime-kontrollen-fuer-ki-agenten/a46480/
-
Storm-3168 Hackers Abuse Compromised Service Principals to Destroy Azure Cloud Resources
Microsoft has uncovered a destructive Azure campaign linked to Storm-3168, also known as JADEPUFFER, in which attackers abused compromised service principals to map cloud environments, delete critical resources, target recovery safeguards, and obtain storage-account credentials. The activity shows how a single exposed workload identity can give attackers the automation and permissions needed to cause rapid…
-
Zero-Days, AI Agents, and Identity Attacks Define Cybersecurity Week
Weekly summary of Cybersecurity Insider newsletters First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/weekly-roundup/zero-days-ai-agents-and-identity-attacks-define-cybersecurity-week/
-
Kontrolle über unregulierte KI-Agenten
Omada Identity gab die Übernahme von EmpowerID bekannt, einem Pionier im Bereich AI-Agent-Governance. Die Übernahme bringt EmpowerID’s Fähigkeiten im Bereich Runtime-Agent-Governance in Omada ein und stärkt damit die Möglichkeit, Kontrollen für menschliche, nicht-menschliche und agentenbasierte Identitäten bereitzustellen. Viele Unternehmen betreiben heute Software, die eigenständig agiert: Sie trifft Entscheidungen, greift auf sensible Systeme zu, führt Aufgaben…
-
Island Gets $400M to Take Worker Security Into the Agent Era
Non-Human Identity and Transient Networks Extend Controls Beyond Human Workers. Island raised $400 million at a $6.4 billion valuation to extend its worker-centric security platform to AI agents, applying data, identity, network, endpoint and observability controls to non-human workers while funding growth toward profitability and a potential IPO. First seen on govinfosecurity.com Jump to article:…
-
Secrets Sprawl Is an Identity Problem That AI Just Made Impossible to Ignore
AI coding agents are changing how quickly developers can build and ship software as well as how quickly credentials can become exposed. According to GitGuardian’s 2026 State of Secrets Sprawl Report, commits identified as AI-assisted are leaking secrets at approximately twice the rate of human-written ones. Most of the fastest-growing categories of leaked credentials are…
-
Looking Back Over 14 Years of Identity Theft Scams
Retiring ITRC CEO Eva Velasquez on Identity Crime, Victim Recovery, the Work Ahead. After 14 years leading the Identity Theft Resource Center, Eva Velasquez will retire as CEO in January 2027. She reflects on the organization’s growing reach, identity crime trends and why victim support is crucial in the evolving threat landscape. First seen on…
-
Aembit Launches Support for Okta Cross App Access, Extending Enterprise Identity Controls to AI Agents
Silver Spring, Maryland, USA, September 22nd, 2026, CyberNewswire Aembit, the identity and access management (IAM) company for AI agents, today announced support for Cross App Access (XAA), an open protocol introduced by Okta that lets a user’s existing enterprise identity authorize access to downstream applications without a separate consent step for each connection. Launching this…
-
Aembit Launches Support for Okta Cross App Access, Extending Enterprise Identity Controls to AI Agents
Silver Spring, Maryland, USA, 22nd September 2026, CyberNewswire First seen on hackread.com Jump to article: hackread.com/aembit-launches-support-for-okta-cross-app-access-extending-enterprise-identity-controls-to-ai-agents/
-
AI Agents Are Rewriting the Rules of Lateral Movement
Security teams have spent decades asking whether an identity has too much access. AI agents raise a harder question: how can we determine which paths an autonomous system can discover, given the access it already has?A person may try several ways to complete a task. A deterministic application follows the flow its developer wrote. But…
-
Integrity360 launches identity practice
Tags: identityFirm moves quickly after last month’s acquisition of identity player to bolster its offering around security First seen on computerweekly.com Jump to article: www.computerweekly.com/microscope/news/366650827/Integrity360-launches-identity-practice
-
AWS Detects and Quarantines Exposed IAM Credentials in Public GitHub Repositories
AWS can automatically quarantine exposed Identity and Access Management (IAM) access keys that appear in public GitHub repositories. This process involves applying a restrictive managed policy within seconds to reduce the risk of cloud abuse. Researchers from Palo Alto Networks’ Unit 42 documented this response mechanism, showing that AWS employs the AWSCompromisedKeyQuarantine managed policy to…
-
Black Hat USA 2026: Machine Speed, Human Consequence
ISMG Pulse Report Covers AI Attack Surface, Vulnerability Management and Identity. ISMG’s Pulse Report: Machine Speed, Human Consequence includes six chapters examining the agentic attack surface, vulnerability management, identity and authority, adversary operations, governance and liability, and the changing role of cybersecurity professionals. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/black-hat-usa-2026-machine-speed-human-consequence-a-32877
-
SailPoint CEO Mark McClain: When AI Can Move ‘Thousands’ Of Times Faster Than Humans, Identity Security Is Key
While human hackers can only move so fast, the arrival of autonomous agents capable of attacking at unprecedented speeds should result in a ‘completely different calculus’ for identity and security teams, SailPoint CEO Mark McClain says during the latest episode of CRN’s Security or Else! podcast. First seen on crn.com Jump to article: www.crn.com/news/security/2026/sailpoint-ceo-mark-mcclain-when-ai-can-move-thousands-of-times-faster-than-humans-identity-security-is-key
-
Malicious HEIF Upload Reached OpenAI’s Internal GitHub, Researchers Reveal
A malicious HEIF upload exploited Discourse, crossed OpenAI’s identity layer, and reached an internal GitHub repo through a connected Codex account. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/news/news-openai-heif-github-vulnerability/
-
FBI’s CJIS v6.1: What Security Teams Need to Know.
The FBI’s CJIS Security Policy v6.1 strengthens requirements around encryption and vulnerability scanning while continuing the shift toward more continuous security assessment. Specops explains what changed and how agencies can address password, MFA, and identity requirements as they prepare for upcoming audits. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fbis-cjis-v61-what-security-teams-need-to-know/
-
Identity Visibility in 2026: The Foundation of Identity Security
Identity visibility is a starting point for modern identity security, because stolen and misused credentials are among the most frequently reported initial access vectors in breach research, including Verizon’s annual Data Breach Investigations Report. This article explains what identity visibility means in IAM, why cloud and multicloud environments complicate it, which capabilities matter in First…
-
Post-Mythos Security Rally Rewards Broad Cyber Platforms
6 Major Security Vendors Have Doubled in Value Since Anthropic Unveiled Mythos Six prominent cybersecurity vendors have doubled their valuations since Anthropic announced Claude Mythos in April, led by Okta’s 131% stock surge as investors bet that AI agents will drive demand for identity, data, network and integrated security platforms. First seen on govinfosecurity.com Jump…
-
Cisco Zero-Day Highlights API Endpoint Authentication Issues
The authentication bypass flaw CVE-2026-76460 impacts Cisco’s Identity Services Engine (ISE) and received a maximum 10 out of 10 CVSS score. First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/cisco-zero-day-api-endpoint-authentication-issues
-
Cisco ISE Vulnerability With CVSS 10.0 Score Under Active Attack
Cisco has released a fix for a maximum-severity flaw in its Identity Services Engine (ISE) platform after confirming the bug was already being exploited by attackers. The vulnerability, tracked as CVE-2026-76460, carries a perfect CVSS score of 10.0 and was patched by Cisco on September 16, 2026. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/cisco-ise-cve-2026-76460/
-
KI-Agenten sicher verwalten: Identity Governance mit Okta bei Juniper Square
Autonome KI-Agenten brauchen kontrollierte Identitäten und Zugriffsrechte. Juniper Square zeigt, wie Identity Governance zur Basis sicherer KI wird. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/ki-agenten-sicher-verwalten-identity-governance-mit-okta-bei-juniper-square/a46430/
-
Critical pgAdmin Authentication Bypass Lets Attackers Login as Administrator Without Credentials
A critical vulnerability in pgAdmin 4 could allow unauthenticated remote attackers to impersonate arbitrary users, including existing administrator accounts, by supplying a malicious HTTP identity header. This vulnerability, tracked as CVE-2026-86863, affects installations using pgAdmin’s Webserver authentication mode and has a CVSS 3.1 score of 9.8 out of 10. The issue impacts pgAdmin 4 versions…
-
98% of fraudulent hires have company credentials by the time they’re caught
A 90-day period between hiring and onboarding is creating a blind spot in enterprise identity security, according to HYPR’s State of HR Identity Fraud Detection report. … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/18/hypr-hiring-fraud-detection-report/
-
Cisco alerts customers to second actively exploited zero-day in as many days
The latest zero-day has a maximum-severity rating and affects Cisco Identity Services Engine, a product hit with three actively exploited vulnerabilities since June 2025. First seen on cyberscoop.com Jump to article: cyberscoop.com/cisco-ise-zero-day-cve-2026-76460/
-
Manufacturers make patching progress, but identity management still major weakness
Misconfigurations remain widespread in the manufacturing sector, including internet-accessible remote-access software, a new report found. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/manufacturing-cybersecurity-weaknesses-ransomware-black-kite/830299/
-
What Recent AI-Powered Attacks Mean for Your Identity Security
AI is making credential theft faster and easier to scale, giving attackers more opportunities to abuse valid identities. Specops explains why identity security must go beyond successful authentication by verifying that both the user and the device requesting access can be trusted. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/what-recent-ai-powered-attacks-mean-for-your-identity-security/
-
Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks
Cisco has warned of a fresh maximum-severity security flaw impacting Identity Services Engine (ISE) that has come under active exploitation.The vulnerability, tracked as CVE-2026-76460 (CVSS score: 10.0), could allow an unauthenticated, remote attacker to bypass authentication.”This vulnerability is due to insufficient authentication control on an API endpoint,” Cisco said. “An attacker First seen on thehackernews.com…
-
North Korean IT Workers Pay People to Sit Through Job Interviews While They Control the Computer
North Korean IT-worker operators are recruiting foreign nationals to sit on camera during remote job interviews. At the same time, the real candidate provides answers, completes coding tasks, or remotely controls the proxy’s computer, according to new research from Silent Push. The campaign turns ordinary job seekers into identity and payment intermediaries, creating a direct…

