Tag

#IAM

42 stories taggedIAM · page 3 of 3.

Vulnerabilities

ServiceNow's Unauthenticated API Endpoint Left Tenant Data Exposed for Months

An API resource shipped with authentication disabled by default. Now enterprises are asking whether the 'security researcher' explanation fully covers what got accessed.

2 min read
Identity & Access

The 2026 Cybersecurity Stars Awards Land — 95 Categories, One Long Trophy Table

An industry awards program names winners across product, team, and company categories. The interesting question is what — if anything — the list tells us about where defenders are actually winning.

3 min read
AI Security

The Alert Queue Is Full. So Is the Graveyard of Missed Threats.

When every event screams critical, nothing is. AI and automation are being drafted to fix a triage problem that human analysts simply can't outrun anymore.

3 min read
Identity & Access

Infostealers Are Now the Front Door for Ransomware Gangs

Credential theft at industrial scale has made exploit-based initial access look quaint. Here's why stolen session tokens are reshaping the attack chain.

2 min read
Identity & Access

When the Pentest Report Goes Quiet, Start Worrying

Stable findings aren't the same as a stable attack surface — and identity paths are usually what the scanners stop seeing first.

3 min read
Opinion

The AI SOC Hit Production. Only 10% of Buyers Call It Excellent.

Budgets shifted fast. Outcomes lagged. What the next wave of agentic SOC tooling has to prove before renewal season.

3 min read
Identity & Access

$7M Says Autonomous Agents Can Fix the Identity Sprawl Problem

Offroad exits stealth with a bet that AI-driven security agents can manage what platform teams stopped being able to track manually — machine identities, third-party app permissions, and the rest of the non-human identity mess.

2 min read
Identity & Access

Identity Dark Matter: Why IAM Is Losing Sight of Its Own Users

Enterprise identity has fragmented across SaaS sprawl, machine accounts, and agentic systems — leaving a growing slice of activity that centralized IAM cannot see or govern.

3 min read
AI Security

Agentic AI Is Doing What a Thousand Breach Reports Couldn't: Getting Boards to Open the Checkbook

Autonomous agents, AI-generated code, and frontier models capable of offensive cyber ops are finally making cybersecurity a board-level business conversation — not just an IT line item.

3 min read
Identity & Access

Poisoned npm Package Stole OpenAI Codex Tokens — and the GitHub Repo Looked Fine

codexui-android published clean source code while shipping malicious artifact builds that harvested refresh tokens. The gap between repo and registry is where the attack lived.

2 min read
Identity & Access

Shadow Builders: When Employees Ship Production Apps Without Auth

Vibe-coded internal tools are graduating to public URLs, and most identity stacks never see them coming.

3 min read
Identity & Access

AI Agent Identities Are Redrawing Enterprise IAM Budgets

New Omdia research finds that the rapid spread of AI agent deployments is forcing organisations to treat non-human identities as a distinct governance category, with budget implications that traditional identity and access management frameworks were not designed to absorb.

3 min read
© 2026 Threat Vectr