Topic: identity and access management
-
Securing Critical Infrastructure by Closing Identity Gaps
The Colonial Pipeline ransomware attack exploited an inactive VPN account lacking multi-factor authentication, shutting down fuel supplies across the U.S. East Coast and demonstrating how compromised credentials can cripple critical infrastructure. State-backed actors like Volt Typhoon target cri...
Read More » -
Teleport secures AI agents with LLM Proxy and Delegated Identity
Teleport launched two new features in its Agentic Identity Framework public beta: LLM Proxy, which provides secure, identity-aware access management for AI agents, and Delegated Identity, which grants agents temporary, scoped permissions without exposing long-lived credentials. The LLM Proxy acts...
Read More » -
Proofpoint merges email, data, AI security to cut blind spots
The rise of AI agents collaborating with humans in enterprise systems creates a novel cybersecurity challenge, requiring security teams to analyze behavioral patterns and intent beyond simple identity verification. Proofpoint is unifying its email security defenses by integrating its Secure Email...
Read More » -
Secure Machine and AI Identity Management
The rise of AI agents has merged machine and AI identity management into a single, exponential security challenge that legacy human-centric platforms cannot address. A unified control plane, combining certificate lifecycle management with dedicated agent governance, is required to provide visibil...
Read More » -
CISO Guide: Aligning Security With Business Goals
Modern cybersecurity programs are strategic business enablers, accelerating critical processes like M&A by removing operational friction and moving beyond a defensive or compliance-only posture. Building and maintaining digital trust through effective security is a key competitive advantage, as i...
Read More » -
Week in review: Cisco 0-day exploited, Patch Tuesday outlook
OWASP's new Agent Memory Guard project provides a runtime defense against memory poisoning in AI agents, serving as a reference for the OWASP Top 10 for Agentic Applications. A security assessment of 100 production AI agents found only 11% pass the security bar, with most vulnerable to takeover f...
Read More » -
Google Workspace gets unified email, file & OAuth security
Modern cyber threats are unified: attacks combine phishing, data exposure, and OAuth abuse, but traditional siloed security tools fail to connect these signals, leaving breaches undetected for an average of 241 days. Material Security consolidates email security, sensitive data protection (PHI/PI...
Read More » -
Zero-Trust Database Access Joins Privileged Access Management
Keeper Security has launched KeeperDB, a new feature that integrates secure database access controls directly into its privileged access management platform to address the critical vulnerability of insecure database credentials. The solution allows authorized personnel to connect to major databas...
Read More »