Tag

#IAM

36 stories taggedIAM.

Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Ransomware

Ransomware Group The Gentlemen Claims Attack on German Secure-File Firm FTAPI Software

A criminal gang that has posted dozens of claimed victims in recent months has listed FTAPI Software on its dark-web extortion site. The Munich company serves hospitals, insurers and public agencies across Europe. Nothing has been confirmed.

3 min read
Photoreal news-editorial 16:9 image of a single smartphone lying flat on a plain concrete desk, its screen glowing with a generic six-digit authentication code
Identity & Access

The Most Common Password Is Still 123456. Here Is What Actually Fixes That.

A former CISO at Hyatt and United Airlines says the security industry keeps chasing new tools while ignoring the basics. One basic above all others stands out: multi-factor authentication, which cuts your chance of being hacked by 99 percent.

4 min read
A document displayed on screen with hidden text or embedded commands highlighted, shown alongside an AI assistant interface processing the document's instructio
AI Security

The Secret Instructions Hiding Inside Your Company's AI Assistant

A security firm is warning that criminals can hide malicious commands inside ordinary documents, and AI agents will follow those commands without question.

4 min read
A cloud security dashboard rapidly cycling through thousands of failed login attempts and vulnerability scans, progress bars filling at inhuman speed, red alert
Cloud Security

AI Agents Are Breaking Cloud Security Faster Than Human Hackers Ever Could

Automated attackers can test thousands of ways into a company's cloud systems in minutes. Most security teams are still thinking at human speed.

4 min read
A security operations center with multiple displays showing interconnected identity verification systems, access logs, and authentication protocols visualized a
Identity & Access

Why 'Identity Fabric' Is the Phrase Every Security Team Will Hear in 2026

As passwords fade and machine accounts outnumber humans, a new architecture promises to watch every login, token and API call in one place. What it actually means.

4 min read
A boardroom table with executives reviewing security performance metrics, with a CISO's office door visible in the background corridor through glass walls
Opinion

Hired to Build, Judged on the Breach That Never Happened

The skills that land someone a CISO job are rarely the ones the board scores them on a year later. That gap is quietly ending careers.

3 min read
A corporate office phone bank or IT support desk with employees at workstations, with floating data fragments like names and numbers emerging from the screens
Identity & Access

Apollo Global Hit by Social Engineering Attack That Exposed Names and Social Security Numbers

A phone-based scam tricked Apollo Global Management's IT support staff into handing over access. Names, contact details, and Social Security numbers may have been stolen.

3 min read
A security researcher's workstation displaying a spreadsheet with thousands of rows of tracked AWS credentials, with expiration dates and access levels highligh
Cloud Security

9,300 leaked AWS keys still work, and 768 hand over full control of a company's cloud

Truffle Security tracked exposed Amazon cloud keys for four years. Most were never rotated, and 88% still logged in on the day of testing.

4 min read
A compliance dashboard with real-time identity access logs, audit trails, and verification checks running continuously across multiple colored status indicators
Policy & Regulation

IAM Compliance: What the Rules Actually Require, and How to Prove It

Regulators increasingly expect continuous evidence that identity controls work, not just paperwork saying they exist.

4 min read
An enterprise office environment with employees using AI-assisted software tools at their workstations, network visualizations showing automated agents making u
AI Security

AI Agents Are Breaking Into Your Own Systems, With Your Permission

The real danger from enterprise AI isn't hackers. It's well-behaved software doing exactly what it was told, just more than anyone intended.

4 min read
A security operations center wall of screens showing AI agent activity across enterprise applications, with each screen highlighting different sensitive systems
AI Security

Obsidian Security Raises $85 Million to Watch What AI Agents Do Inside Your Company's Apps

The startup, now valued at $1.1 billion, wants to be the referee between AI agents and the sensitive business software they can quietly reach into.

4 min read
Data flowing through a network visualization, with most streams being filtered and redirected, showing selective routing of information through intelligent pipe
AI Security

DataBahn Raises $40 Million to Put AI in Charge of Enterprise Data Pipelines

The Texas startup wants companies to stop moving every byte of data everywhere and start routing only what actually matters, in real time.

3 min read
A corporate office with computer screens showing financial transaction approvals happening automatically, unobserved analysts walking past without reviewing the
AI Security

AI agents are approving transactions and nobody is watching

A new report finds most companies have handed financial controls to AI systems they cannot audit, trace, or investigate in real time.

4 min read
An AI agent with multiple oversized keys floating around it, each granting access to different company systems, with security researchers observing from the sid
Identity & Access

AI agents with too many keys: why permissions are the new identity problem

As companies rush to deploy AI assistants that act on their behalf, security researchers warn the real danger is not the AI itself but the sweeping access rights it inherits.

4 min read
Cloud infrastructure dashboard showing Azure and Google Cloud administrator control panels, with subtle indicators of unauthorized privilege escalation attempts
Cloud Security

Two Cloud Giants, Two Flaws, Zero Bug Bounties: The 'Confused Deputy' Problem That Won't Go Away

A security researcher found ways to silently hijack administrator control over both Microsoft Azure and Google Cloud infrastructure. Neither company paid a reward. One quietly fixed its flaw without saying so.

5 min read
© 2026 Threat Vectr