Identity Security stories
As logins replace break‑ins, experts urge a shift from perimeter defence to operational cyber resilience grounded in identity security.
AI rollouts are eroding UK identity controls, as firms ease safeguards for machine accounts despite glaring gaps in oversight and governance.
Rubrik links Microsoft Defender with new AI governance engine SAGE to speed identity attack recovery and tighten control of autonomous agents.
Rubrik launches data protection for Google Workspace, promising immutable backups and faster recovery for Gmail and Google Drive users.
Delinea warns that rapid AI rollout is eroding identity controls, leaving machine accounts exposed and widening security blind spots.
SpecterOps broadens BloodHound Enterprise to map identity attack paths across Okta, GitHub and Jamf-managed Macs in hybrid environments.
Illumio adds Network Posture to its Insights platform, using an AI security graph to expose and contain lateral movement risk across networks.
Rapid7's Exposure Command now adds runtime validation and DSPM to rank real attack paths in hybrid and multi-cloud environments.
Token Security launches intent-based controls to govern AI agents' access by purpose, aiming to curb over-privileged, autonomous system behaviour.
Coalfire's new DivisionHex service hunts shadow AI and rogue agents as most firms report AI-driven security incidents without proper oversight.
Rushing to embrace AI, most firms are easing identity controls despite visibility gaps around powerful non-human and AI-linked accounts.
AppViewX acquires AI identity start-up Eos and appoints its co-founder Archit Lohokare as Chief Executive, targeting non-human identity security.
Graylog launches explainable AI and agentic workflows to help lean SecOps teams automate threat triage, investigations and response.
HackerOne launches live Agentic Prompt Injection Testing to expose real-world AI exploit paths as prompt injection threats surge 540%.
Dropzone launches AI Threat Hunter to compress 40-hour manual threat hunts into 90 minutes, promising 24/7 autonomous SOC coverage by 2026.
SentinelOne and Cloudflare deepen ties, feeding edge and Zero Trust telemetry into Singularity AI SIEM to unify threat detection and response.
Keeper launches KeeperDB to centralise zero-trust database access, hiding credentials and recording sessions within its existing security vault.
Barracuda reports a global surge in identity-based cyber attacks, with stolen credentials, supply-chain abuse and weaponised PDFs on the rise.
Rapid7 warns exploited high and critical software flaws more than doubled in 2025, as attackers compress disclosure-to-attack windows.
Opal Security unveils AI agents and tools to root out unused access rights as research shows permissions sprawl swamping security teams.