AI agents rewrite cloud security rules
Autonomous AI attackers can chain cloud misconfigurations at machine speed, forcing CISOs to rethink defense.
30 results for “identity”
Autonomous AI attackers can chain cloud misconfigurations at machine speed, forcing CISOs to rethink defense.
LACMA's 2025 breach exposed social security and medical data; notifications sent.
Attackers shift focus from login to onboarding and account recovery, exploiting weak identity verification.
ReliaQuest says ShinyHunters accessed an identity dashboard briefly but no customer data was compromised.
CVE-2026-18963 allows full account takeover via reset flow; patches out.
An open database from ClarityCheck exposed 9M+ facial images, risking identity theft and phishing.
Australian apart-hotel chain Quest warns guests of a data breach via a third-party provider, risking identity fraud.
Major acquisitions by Bank of America, CrowdStrike, and Cyera signal continued consolidation in cybersecurity.
State and FBI warnings highlight how fake remote workers bypass hiring controls to gain network access.
A momentary face-swap failure helped Spanish police identify a man accused of obtaining digital certificates under stolen identities.
As AI accelerates account takeover attacks, experts argue credentials alone can no longer secure access.
Threat actors are bypassing standard enterprise security by using vishing attacks to compromise personal mobile devices.
A Canadian national has admitted to his role in a massive 2024 campaign that compromised over 165 major corporate Snowflake accounts.
A new report identifies a strategic shift among threat actors, moving away from simple malware toward identity and trust-based exploits.
A health IT firm is notifying over 350,000 individuals following an unauthorized access incident within its AWS environment.
Okta plans to acquire Permiso Security to bolster its identity threat detection capabilities within multi-cloud environments.
Enterprise security frameworks require adaptation rather than complete replacement to address the rise of autonomous AI agents.
Hush Security secures $30 million in Series A funding to address the growing identity and governance challenges posed by AI agents.
An Illinois man was sentenced to 76 months in federal prison for orchestrating a campaign to compromise 750 social media accounts.
A critical authorization vulnerability in OpenDJ allows SASL PLAIN users to bypass intended scope checks for proxied identity.
A March network intrusion at logistics firm OnTrac has triggered data protection warnings for affected customers.
The biometric verification firm, co-founded by Sam Altman, raised capital through a restricted 12-month lockup of its WLD crypto token.
Time is running out for victims of the 2024 Fidelity data breach to claim their share of a $2.5 million settlement fund.
New architectural approaches to age verification aim to satisfy global mandates while keeping biometric data off centralized servers.
Modern security programs are failing to see deep inside SaaS platforms, leaving sensitive data exposed through quiet misconfigurations.
A Russian tourist remains in Armenian custody as legal experts claim he was misidentified as a notorious ransomware operative.
A critical identity-binding bug in n8n's token exchange feature allowed unauthorized account access by ignoring multi-issuer constraints.
Freshly emerged from stealth, Oak secures $60 million to tackle identity fragmentation across human, AI, and machine vectors.
New findings reveal that compromised credentials are now the primary catalyst for ransomware breaches, eclipsing software flaws.
A study of 85 browser-based wallets reveals systemic privacy flaws that allow for cross-site tracking and the de-anonymization of users.