Install
Identity & Access
Authentication, MFA, SSO, PAM, and protecting human & service accounts.
- 27 Tracked terms
- Last 30 days Feed window
What this topic collects on
An article joins this feed when it matches these terms. Each one is also a search of its own.
Related topics
Latest in Identity & Access
How to Set Up Auth0 Organizations (SSO, Branding & Invitations)
19+ hour, 51+ min ago (298+ words) Stop Building Multi-Tenant Auth from Scratch. Use This Instead. Building a B2B SaaS application requires a complex multi-tenant infrastructure. In this technical walkthrough, Shreya Gupta and Lily Wisecarver demonstrate how to use Auth0 Organizations to effortlessly manage identity workflows for your business…...
Identity resilience in the age of advanced AI attacks
19+ hour, 40+ min ago (234+ words) Tomer Bar, Associate VP of Security Research at Semperis | Published 14 Sept 2026 GUEST OPINION: Identity Resilience: A Holistic Strategy Modern enterprises rarely operate on a single ecosystem. A resilient defence requires a clear understanding of the entire identity environment and how…...
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
1+ day, 4+ hour ago (25+ words) An engineering breakdown of AitM authentication relays, Device Code phishing, post-compromise MFA registration …...
This Tiny Fingerprint Key Unlocks Linux, Approves SSH and AI Agents
2+ day, 8+ hour ago (1767+ words) A laptop fingerprint sensor unlocks the laptop and usually stops there. Immurok wants to do quite a bit more than that. It is a tiny wireless box that can unlock your desktop session, approve a sudo command, authenticate via polkit,…...
Cognito With the Safety Off: MFA Disabled, Advanced Security Disabled
1+ day, 11+ hour ago (722+ words) ✓ Human-authored analysis; AI used for formatting and proofreading. A Cognito user pool is an identity perimeter. The pool authenticates customers, issues JWTs the application trusts, and brokers federation to social identity providers. Whatever else the application does for security such…...
The next decade of cyber resilience will depend on skills and awareness, says Kaspersky APAC chief
1+ day, 11+ hour ago (251+ words) As Bangladesh moves more of its economy and public services online, cybersecurity is becoming central to the country’s digital ambitions. This creates commercial opportunities for global cybersecurity companies, while testing whether Bangladesh can build the skills, institutions, and policies needed…...
The Chain That Opened the Crisis: How SonicWall SMA1000’s First Zero-Day Turned VPN Appliances Into MFA Harvesting Machines
1+ day, 13+ hour ago (129+ words) CVE-2026-15409 chained SSRF and code injection to achieve root on SMA1000 appliances, stealing TOTP MFA seeds and turning the VPN gateway into a persistent surveillance platform. CISA flagged it for ransomware exploitation. We covered the second chain but never the first…...
One Click Away from Account Compromise: What a Recent Microsoft 365 Phishing Campaign Teaches Us
2+ day, 2+ hour ago (352+ words) Phishing is still one of the simplest ways to target an employee. A message does not always look …...
Solana Mobile warns users of phishing risks after Brevo breach
2+ day, 15+ hour ago (387+ words) A SAML SSO vulnerability gave attackers access to 138 customer accounts, with phishing emails reaching hundreds of thousands of crypto users Email marketing platforms are the quiet infrastructure of the internet, the unglamorous pipes that move newsletters and alerts from companies…...
Passwords Have Worked for Decades. So Why Is the whole industry switching to passkeys?
2+ day, 10+ hour ago (546+ words) Passwords have been protecting our accounts for decades. We all know how they work: Enter your username → enter your password → you’re logged in. So why is the tech industry now moving toward passkeys? The answer isn’t that passwords suddenly stopped…...