Topic: non-human identities

  • SailPoint acquires Entro to strengthen Agentic Fabric

    SailPoint acquires Entro to strengthen Agentic Fabric

    SailPoint acquired Entro for approximately $200 million to strengthen its machine identity security, addressing the rapid proliferation of non-human identities where there are now 45 machine accounts for every human user. Entro provides agentless scanning that discovers over 1,000 types of machin...

    Read More »
  • AI Agents Cause 76% Surge in NHIs, Revealing Governance Gaps

    AI Agents Cause 76% Surge in NHIs, Revealing Governance Gaps

    A 2026 survey finds a rapid increase in non-human identities (NHIs), like AI agents and API keys, with 76% of organizations reporting a significant expansion of their digital attack surface. The rise of autonomous AI agents, used by 74% of organizations, introduces a potent new risk due to their ...

    Read More »
  • C1 strengthens identity governance with shadow AI detection

    C1 strengthens identity governance with shadow AI detection

    C1's shadow AI discovery automatically detects unauthorized AI agents, tools, and credentials across cloud and endpoint surfaces, integrating them into the existing identity governance platform to address security blind spots. The feature maps MCP servers, APIs, data stores, and local configurati...

    Read More »
  • 2026 Identity Security: A New Plan Under Pressure

    2026 Identity Security: A New Plan Under Pressure

    Machine identities now vastly outnumber human ones, creating immense operational risk due to reliance on manual processes and inconsistent governance for these non-human accounts. While AI adoption for identity management is widespread in pilots, its deployment is fragmented and faces implementat...

    Read More »
  • ThreatDown boosts security visibility for AI tools and machine identities

    ThreatDown boosts security visibility for AI tools and machine identities

    ThreatDown launched AI visibility to provide security and MSP teams with a comprehensive inventory of AI tools across their environments, while extending ITDR capabilities to secure non-human identities like service accounts and API tokens. These additions address critical security gaps where una...

    Read More »
  • Breach at the Beach: Master the Ultimate Entra ID CTF

    Breach at the Beach: Master the Ultimate Entra ID CTF

    Varonis researchers created "Breach at the Beach," a free Capture the Flag (CTF) training tool that immerses cybersecurity professionals in real-world data exfiltration tactics targeting Microsoft Entra ID, where non-human identities like AI agents have expanded the attack surface. The CTF teache...

    Read More »
  • Secure Your Systems: Why Non-Human Identity Governance is Critical

    Secure Your Systems: Why Non-Human Identity Governance is Critical

    Boards must govern cybersecurity by setting risk tolerance, allocating resources, and ensuring operational resilience, as regulations and major incidents make it a top-level issue. A critical vulnerability is the ungoverned sprawl of non-human identities (like API keys), which vastly outnumber hu...

    Read More »
  • Secure SaaS, Cloud, and AI Identity with Zluri

    Secure SaaS, Cloud, and AI Identity with Zluri

    The enterprise identity landscape has expanded beyond human users to include non-human identities like service accounts and AI agents, creating new security challenges that traditional tools cannot address. Zluri has introduced an Identity Security Platform to help organizations discover, govern,...

    Read More »
  • AI Overload: The Identity Crisis in IAM Systems

    AI Overload: The Identity Crisis in IAM Systems

    Legacy identity and access management (IAM) systems are ill-suited for AI, as they transfer existing vulnerabilities like credential sprawl and inconsistent lifecycle controls into dynamic AI systems, creating significant security gaps. There is a dangerous lack of visibility and governance for A...

    Read More »
  • Non-Human Identities: The New Frontier of Identity Security

    Non-Human Identities: The New Frontier of Identity Security

    Modern organizations face a monumental challenge managing identity debt, where hundreds of millions of active entitlements create blind spots as unused access accumulates, making least privilege difficult to achieve. A significant portion of identities are dormant or orphaned, with 38% of users i...

    Read More »
  • Securing Identity in the Age of AI Agents

    Securing Identity in the Age of AI Agents

    Traditional security frameworks are inadequate for governing autonomous AI agents, which operate outside conventional perimeters and make independent decisions across multiple platforms. Key risks include shadow agents that bypass formal procedures, privilege escalation enabling unauthorized admi...

    Read More »
  • Cayosoft Enhances AI Identity Security for Hybrid Environments

    Cayosoft Enhances AI Identity Security for Hybrid Environments

    Cayosoft has updated its Guardian platform to integrate AI agent identities into security workflows, providing visibility, alerting, and automated rollback without a new dashboard. The platform now monitors AI identities to address security risks from their autonomous operations and excessive per...

    Read More »
  • SailPoint's AI Identity Security Gets Adaptive Framework

    SailPoint's AI Identity Security Gets Adaptive Framework

    SailPoint has launched major AI-driven platform upgrades to enable continuous, intelligent governance across all identity types, moving beyond manual processes to address modern security challenges. Key enhancements include total visibility into privilege risk to enforce least privilege, extended...

    Read More »
  • AI Agents Now Handle Sensitive Security Tasks for Most Firms

    AI Agents Now Handle Sensitive Security Tasks for Most Firms

    93% of global organizations are using or planning to deploy AI agents for security tasks like password resets, despite risks of breaches and data leaks. 92% of respondents have AI installed on local machines with access to SSH and encryption keys, and 74% agree AI will increase attacks on identit...

    Read More »
  • Delinea Acquires StrongDM to Boost Identity Security

    Delinea Acquires StrongDM to Boost Identity Security

    Delinea's acquisition of StrongDM merges enterprise privileged access management with just-in-time authorization, creating a unified platform for continuous environments and non-human identities. The integrated solution enables a shift toward zero standing privilege, reducing the attack surface b...

    Read More »
  • Mitiga launches Agentic Runtime Security for cloud, SaaS, AI

    Mitiga launches Agentic Runtime Security for cloud, SaaS, AI

    Mitiga's Agentic Runtime Security redefines runtime detection and response for modern infrastructure (cloud, SaaS, identity, AI) by using log-based defense instead of endpoint agents, enabling real-time behavioral detection and containment where traditional EDR cannot reach. The approach addresse...

    Read More »
  • CIS, Astrix & Cequence Release AI Security Best Practices

    CIS, Astrix & Cequence Release AI Security Best Practices

    A new partnership between CIS, Astrix Security, and Cequence Security will develop specialized security best practices and guides to extend the CIS Critical Security Controls framework into AI and agentic systems. The initiative will produce two guides focusing on securing AI Agent Environments a...

    Read More »
  • How Digital Identity Challenges Are Driving IntegraTRACE’s Enterprise Vision

    How Digital Identity Challenges Are Driving IntegraTRACE’s Enterprise Vision

    IntegraTRACE, founded by Steve Emmanuel, provides a SOC 2 Type II compliant platform that centralizes visibility of human, non-human, and agentic digital identities across cloud environments, addressing the lack of a single source of truth for access management. Identity-based attacks accounted f...

    Read More »
  • Entra ID Admin Role Could Let Hackers Hijack Service Principals

    Entra ID Admin Role Could Let Hackers Hijack Service Principals

    Microsoft patched a critical privilege escalation flaw in Entra ID's Agent Identity Platform in April 2026, where the Agent ID Administrator role could be exploited to hijack arbitrary service principals across a tenant. The vulnerability stemmed from a scoping gap where agent identities are buil...

    Read More »
  • Druva Restores Access by Linking Identity Data to User Behavior

    Druva Restores Access by Linking Identity Data to User Behavior

    Identity-driven attacks are a major security threat, and Druva's new Identity Resilience solution provides a unified SaaS platform to protect, detect, and recover from identity compromises across providers like Okta and Microsoft. The platform uses an identity-aware methodology, modeling identiti...

    Read More »