<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: Identity and Access</title><link>https://cybersecuritytracker.ai/?cats=identity-access</link><description>Curated cybersecurity news and vulnerability intelligence.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:50 GMT</lastBuildDate><item><title>Microsoft tightens Windows enterprise activation security</title><link>https://helpnetsecurity.com/2026/07/24/microsoft-kms-tpm-security-update</link><guid isPermaLink="false">cst-3154</guid><description>Microsoft is requiring Trusted Platform Module (TPM) backed attestation for Windows Key Management Service (KMS) to replace software-only trust models with hardware-backed verification for enterprise volume activation. The change will take effect with the next Windows Server Long-Term Servicing Channel (LTSC) release and aims to strengthen the security of on-premises activation infrastructure.</description><pubDate>Fri, 24 Jul 2026 09:52:24 GMT</pubDate></item><item><title>Google’s newest sign-in method asks you to look at the camera</title><link>https://helpnetsecurity.com/2026/07/24/google-selfie-video-sign-in-verification</link><guid isPermaLink="false">cst-3156</guid><description>Google has introduced a selfie video sign-in method that verifies account owners are real people and prevents misuse by bots or automated programs. The recorded video is stored securely with user consent and can be deleted from the Google Account at any time. The feature is not yet available across all regions, accounts, or devices.</description><pubDate>Fri, 24 Jul 2026 08:33:58 GMT</pubDate></item><item><title>Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts</title><link>https://thehackernews.com/2026/07/google-adds-selfie-video-recovery-for.html</link><guid isPermaLink="false">cst-3086</guid><description>Google announced a new account recovery option allowing locked-out users to verify their identity through a selfie video. This method supplements existing recovery mechanisms like email and phone number verification. The feature expands user options for regaining account access when standard credentials are unavailable.</description><pubDate>Thu, 23 Jul 2026 10:00:00 GMT</pubDate></item><item><title>Product Showcase: AppViewX Agent Identity Security</title><link>https://helpnetsecurity.com/2026/07/23/product-showcase-appviewx-agent-identity-security</link><guid isPermaLink="false">cst-3064</guid><description>AppViewX has introduced Agent Identity Security to address the growing challenge of managing identities for autonomous AI agents and the cryptographic risks posed by quantum computing. Traditional identity and access management (IAM) systems were designed for human users with stable access patterns, not for the thousands of short-lived machine agents that enterprises increasingly deploy. The product aims to secure agent-to-agent communication and credential management at scale as organizations prepare for an environment where AI agents significantly outnumber human identities.</description><pubDate>Thu, 23 Jul 2026 05:30:01 GMT</pubDate></item><item><title>When Identity Verification Fails: Lessons from a Real-World SIM Swap and Near Account Takeover</title><link>https://securityweek.com/when-identity-verification-fails-lessons-from-a-real-world-sim-swap-and-near-account-takeover</link><guid isPermaLink="false">cst-3018</guid><description>A SecurityWeek article examines a case study involving a SIM swap attack and attempted account takeover, highlighting how identity verification systems can be circumvented and the need for continuous reassessment of identity confidence throughout user interactions.</description><pubDate>Wed, 22 Jul 2026 14:00:00 GMT</pubDate></item><item><title>ThreatDown expands security visibility to AI tools and machine identities</title><link>https://helpnetsecurity.com/2026/07/22/threatdown-ai-visibility</link><guid isPermaLink="false">cst-3024</guid><description>ThreatDown announced expanded security capabilities covering AI tool visibility and non-human identity management. The company added inventory features for AI tools across environments and extended its identity threat detection and response platform to protect service accounts, API tokens, OAuth credentials, and machine identities.</description><pubDate>Wed, 22 Jul 2026 13:38:33 GMT</pubDate></item><item><title>Closing the Identity Gaps in Critical Infrastructure Security</title><link>https://bleepingcomputer.com/news/security/closing-the-identity-gaps-in-critical-infrastructure-security</link><guid isPermaLink="false">cst-2919</guid><description>Specops Software discusses the role of Zero Trust architecture in defending critical infrastructure by verifying both user identities and device trust before granting access to systems. The company emphasizes that stolen credentials, compromised devices, and trusted account takeovers are common entry points for attacks on critical infrastructure.</description><pubDate>Tue, 21 Jul 2026 14:00:10 GMT</pubDate></item><item><title>AI agents are still logging in as humans</title><link>https://helpnetsecurity.com/2026/07/21/report-enterprise-ai-identity-risk</link><guid isPermaLink="false">cst-2881</guid><description>Most large enterprises now operate multiple AI platforms simultaneously across departments, creating fragmented technology stacks with both sanctioned and personal accounts. Okta tracking data from over 20,000 organizations since June 2022 shows widespread use of mixed vendor environments where developers, marketers, and analysts rely on different AI tools. This proliferation of independent AI logins increases the complexity of identity and access management across organizations.</description><pubDate>Tue, 21 Jul 2026 04:30:16 GMT</pubDate></item><item><title>Claude can now sign into websites with 1Password without exposing your credentials</title><link>https://helpnetsecurity.com/2026/07/17/1password-anthropic-claude-integration</link><guid isPermaLink="false">cst-2748</guid><description>1Password has released a beta integration for Claude that allows the AI assistant to complete authentication-required browser tasks while keeping user passwords and secrets protected. The feature is available to paid Claude subscribers using Claude Desktop on macOS and compatible with 1Password individual, family, and business plan customers. The integration requires specific software components including Claude Desktop, the 1Password desktop app, and browser extension.</description><pubDate>Fri, 17 Jul 2026 09:17:44 GMT</pubDate></item><item><title>Least privilege for AI agents: Identity, access, and tool binding</title><link>https://microsoft.com/en-us/security/blog/2026/07/16/least-privilege-for-ai-agents-identity-access-and-tool-binding</link><guid isPermaLink="false">cst-2721</guid><description>Organizations deploying AI agents face identity and access control challenges as agentic systems operate across multiple tools and systems without explicit human approval for each action. The article outlines risks from misconfigured permissions, scope creep, and unclear identity models that can lead to unauthorized data access, unintended modifications, and audit gaps. Best practices include treating agents as first-class principals with managed identities, explicit role-based access controls (RBAC), tightly scoped permissions, and preconfigured tool manifests.</description><pubDate>Thu, 16 Jul 2026 16:00:00 GMT</pubDate></item><item><title>Microsoft makes Windows SSO prompts easier to manage</title><link>https://helpnetsecurity.com/2026/07/16/windows-sso-policy-admin-control</link><guid isPermaLink="false">cst-2661</guid><description>Microsoft introduced a new registry-based policy allowing IT administrators to automatically accept Windows single sign-on (SSO) permissions on Windows 11 versions 24H2 and 25H2 devices managed through Microsoft Entra ID. Users with personal Microsoft accounts and unmanaged devices will still receive SSO permission prompts. The change addresses European Economic Area (EEA) regulatory requirements for user choice in the sign-in experience.</description><pubDate>Thu, 16 Jul 2026 08:47:51 GMT</pubDate></item><item><title>Socure rolls out Remote Verifier for higher-risk identity checks</title><link>https://helpnetsecurity.com/2026/07/15/socure-rolls-out-remote-verifier-for-higher-risk-identity-checks</link><guid isPermaLink="false">cst-2603</guid><description>Socure introduced Remote Verifier, an addition to its RiskOS platform that conducts identity verification for individuals who fail initial document checks. The AI-powered tool aims to reduce manual review work while maintaining verification accuracy, with Socure claiming over 99% first-pass success rates compared to a 64% industry average.</description><pubDate>Wed, 15 Jul 2026 13:51:39 GMT</pubDate></item><item><title>Google adds FIDO2 keys and phone passkeys to Windows login via GCPW</title><link>https://helpnetsecurity.com/2026/07/14/security-key-windows-login-google-workspace</link><guid isPermaLink="false">cst-2487</guid><description>Google has begun rolling out support for FIDO2 physical security keys and phone passkeys as a second authentication factor for Google Credential Provider for Windows (GCPW) across all Google Workspace customers. GCPW enables Windows login using Google Workspace credentials, and the new capability allows administrators to enforce two-step verification with hardware security keys. The update strengthens account security by providing organizations with stronger multi-factor authentication options for Windows device access.</description><pubDate>Tue, 14 Jul 2026 10:35:48 GMT</pubDate></item><item><title>Breach at the Beach: Play the Ultimate Entra ID CTF</title><link>https://bleepingcomputer.com/news/security/breach-at-the-beach-play-the-ultimate-entra-id-ctf</link><guid isPermaLink="false">cst-2413</guid><description>Varonis has released a free Capture the Flag (CTF) exercise called Breach at the Beach that demonstrates how attackers abuse Microsoft Entra ID through hands-on, realistic scenarios. The CTF is designed to teach security defenders how to investigate and respond to Entra ID attacks using practical attack techniques.</description><pubDate>Mon, 13 Jul 2026 14:01:11 GMT</pubDate></item><item><title>The Replicant in Your Directory: AI Agents and the Identity Security Gap</title><link>https://bleepingcomputer.com/news/security/the-replicant-in-your-directory-ai-agents-and-the-identity-security-gap</link><guid isPermaLink="false">cst-2332</guid><description>AI agents are proliferating non-human identities within enterprise environments, creating complexity in asset discovery and access management. Organizations struggle to maintain visibility over these identities and track their permissions, expanding the potential attack surface. Identity governance becomes increasingly critical as AI adoption accelerates.</description><pubDate>Fri, 10 Jul 2026 14:00:10 GMT</pubDate></item><item><title>Incode brings on-device processing to age estimation for privacy-focused verification</title><link>https://helpnetsecurity.com/2026/07/10/incode-on-device-age-estimation</link><guid isPermaLink="false">cst-2328</guid><description>Incode has released an on-device age estimation feature that processes facial analysis for age verification directly on a user's device without transmitting facial data to external servers. The offering includes liveness detection and spoofing resistance, addressing growing regulatory requirements for age assurance across more than 30 jurisdictions worldwide.</description><pubDate>Fri, 10 Jul 2026 12:24:18 GMT</pubDate></item><item><title>Only 28% of financial workforce MFA is phishing-resistant</title><link>https://helpnetsecurity.com/2026/07/10/financial-identity-security-trends-report</link><guid isPermaLink="false">cst-2306</guid><description>A Secret Double Octopus report found that only 28% of multifactor authentication (MFA) deployments in financial organizations use phishing-resistant methods, with most relying on passwords combined with one-time passwords (OTP) that remain vulnerable to credential theft and phishing attacks. Financial institutions continue to mix legacy authentication approaches with more secure technologies, leaving significant portions of their workforce exposed to identity-based threats.</description><pubDate>Fri, 10 Jul 2026 04:30:59 GMT</pubDate></item><item><title>AI Agents Are a New Kind of Identity &amp; Most Organizations Aren't Ready</title><link>https://darkreading.com/identity-access-management-security/ai-agents-new-kind-identity-most-organizations-not-ready</link><guid isPermaLink="false">cst-2282</guid><description>Security organizations are applying traditional identity management approaches to AI agents, treating them like service accounts or API tokens, but experts argue this misses critical distinctions in how AI agents operate and should be governed. The gap between current practices and required controls suggests most organizations lack adequate frameworks for managing AI agent identities and access.</description><pubDate>Thu, 09 Jul 2026 19:16:02 GMT</pubDate></item><item><title>Conditional Access Misconfigurations Exposed 55 Orgs with MFA On</title><link>https://huntress.com/blog/conditional-access-misconfigurations</link><guid isPermaLink="false">cst-2286</guid><description>Two organizations experienced successful attacks against Microsoft 365 systems despite having Conditional Access policies and multifactor authentication (MFA) enabled, suggesting configuration gaps in their policies. Huntress Managed ISPM identified these misconfigurations and found the issue affected 55 organizations. The article highlights how standard conditional access controls can fail when improperly configured.</description><pubDate>Thu, 09 Jul 2026 14:00:00 GMT</pubDate></item><item><title>Blackpoint AI SOC Agent autonomously contains identity-based attacks</title><link>https://helpnetsecurity.com/2026/07/08/blackpoint-cyber-ai-soc-agent</link><guid isPermaLink="false">cst-2178</guid><description>Blackpoint Cyber released a generally available version of its Blackpoint AI SOC Agent for identity threat detection and response (ITDR), which uses AI and human oversight to autonomously contain credential-based attacks targeting Microsoft 365 and Google Workspace. The system demonstrates average containment times under two minutes, with some attacks contained in as little as 21 seconds.</description><pubDate>Wed, 08 Jul 2026 13:32:54 GMT</pubDate></item><item><title>The Verification Step Is the New ATO Battleground in 2026</title><link>https://thehackernews.com/2026/07/the-verification-step-is-new-ato.html</link><guid isPermaLink="false">cst-2151</guid><description>Account takeover attacks are shifting focus from initial credential compromise to the verification step as passkeys and other authentication hardening become more widespread. Attackers are moving away from traditional credential stuffing since the initial login barrier has strengthened, making post-authentication compromise a new priority for threat actors.</description><pubDate>Wed, 08 Jul 2026 11:30:00 GMT</pubDate></item><item><title>Barracuda adds PAM and identity protection with Evo Security acquisition</title><link>https://helpnetsecurity.com/2026/07/07/barracuda-evo-security-acquisition</link><guid isPermaLink="false">cst-542</guid><description>Barracuda Networks acquired Evo Security to expand its BarracudaONE platform with privileged access management, access control, identity protection, and identity threat detection capabilities. The acquisition consolidates identity security functions into a unified platform as the identity and access management market experiences double-digit growth.</description><pubDate>Tue, 07 Jul 2026 13:51:15 GMT</pubDate></item><item><title>Improving security posture across the Microsoft partner ecosystem</title><link>https://microsoft.com/en-us/security/blog/2026/07/02/improving-security-posture-across-the-microsoft-partner-ecosystem</link><guid isPermaLink="false">cst-323</guid><description>Microsoft's Deputy CISO discusses securing the Microsoft partner ecosystem, particularly Cloud Solution Providers (CSPs) that help customers deploy and manage cloud services. The company acknowledges that compromised CSPs pose significant risk because they manage multiple downstream customer tenants and have been targeted by nation-state actors seeking broad customer data access. Microsoft's approach combines platform security controls, visibility into platform usage, and collaborative security standards with its partners.</description><pubDate>Thu, 02 Jul 2026 16:00:00 GMT</pubDate></item><item><title>ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds</title><link>https://bleepingcomputer.com/news/security/consentfix-and-clickfix-how-microsoft-365-accounts-are-hijacked-in-3-seconds</link><guid isPermaLink="false">cst-10</guid><description>Microsoft 365 accounts can be compromised through ConsentFix and ClickFix attacks, which exploit fake authentication prompts and OAuth flows to steal tokens within seconds. These techniques bypass multi-factor authentication (MFA) by deceiving users into granting unauthorized consent. Organizations can implement defensive measures to mitigate this OAuth-based hijacking vector.</description><pubDate>Thu, 02 Jul 2026 14:00:10 GMT</pubDate></item><item><title>Identity Lifecycle Management Wasn't Built for AI Agents</title><link>https://thehackernews.com/2026/07/identity-lifecycle-management.html</link><guid isPermaLink="false">cst-36</guid><description>Identity governance and administration (IGA) tools were designed to manage human employees with clear employment lifecycles, but autonomous AI agents lack traditional attributes like managers and departure dates, creating blind spots in existing governance frameworks. As organizations deploy more AI agents, traditional IGA systems struggle to properly control, monitor, and retire these non-human principals. This mismatch between human-centric identity management and AI agent proliferation introduces governance gaps that existing tools cannot address.</description><pubDate>Thu, 02 Jul 2026 11:30:00 GMT</pubDate></item><item><title>Robinhood Cuts Access Approval Time to Support High-Velocity Development</title><link>https://darkreading.com/application-security/robinhood-reengineered-access-approvals-for-high-velocity-development</link><guid isPermaLink="false">cst-105</guid><description>Robinhood's application security team redesigned its system access approval process to streamline developer workflows while maintaining security controls. The company implemented an engineering-first approach to reduce approval time and friction for high-velocity development teams.</description><pubDate>Thu, 25 Jun 2026 22:42:36 GMT</pubDate></item><item><title>New website names and shames companies that still don’t offer passkeys to users</title><link>https://techcrunch.com/2026/06/24/new-website-names-and-shames-companies-that-still-dont-offer-passkeys-to-users</link><guid isPermaLink="false">cst-470</guid><description>A new website tracks adoption of passkeys among the world's most popular sites, finding that 24% do not yet offer support for this authentication method. Passkeys are considered more secure than traditional passwords because they use cryptographic keys instead of memorized credentials.</description><pubDate>Wed, 24 Jun 2026 21:04:04 GMT</pubDate></item><item><title>He Thought He Was Secure; His Phone Number Was Stolen Anyway</title><link>https://darkreading.com/cyber-risk/how-a-sim-swap-attack-led-to-a-near-account-takeover</link><guid isPermaLink="false">cst-122</guid><description>SIM swap attacks allow threat actors to intercept one-time passwords sent via text message, enabling account takeovers. The article emphasizes that users need to implement additional security layers beyond SMS-based authentication to protect their accounts.</description><pubDate>Mon, 22 Jun 2026 14:12:11 GMT</pubDate></item><item><title>Why Your Organization Needs ISPM</title><link>https://huntress.com/blog/why-your-organization-needs-ispm</link><guid isPermaLink="false">cst-670</guid><description>Huntress has released a managed Identity and Security Posture Management (ISPM) offering designed to identify and remediate identity security gaps in Microsoft 365 environments. The product emphasizes that organizations need more than visibility into identity risks to achieve effective hardening.</description><pubDate>Wed, 17 Jun 2026 14:00:00 GMT</pubDate></item><item><title>Investigating suspicious AI workflows in Microsoft Entra Agent ID: Assistive agents</title><link>https://redcanary.com/blog/threat-detection/entra-id-ai-workflows-assistive-agents</link><guid isPermaLink="false">cst-635</guid><description>Microsoft Entra has identified suspicious AI workflow activity involving assistive agents that may operate outside intended boundaries. Security teams should investigate whether these autonomous agents are being misused within their identity environments.</description><pubDate>Mon, 08 Jun 2026 15:37:01 GMT</pubDate></item><item><title>Hackers Used Meta’s AI Support Bot to Seize Instagram Accounts</title><link>https://krebsonsecurity.com/2026/06/hackers-used-metas-ai-support-bot-to-seize-instagram-accounts</link><guid isPermaLink="false">cst-134</guid><description>Pro-Iranian hackers disclosed an exploit allowing them to hijack Instagram accounts by tricking Meta's AI customer support bot into resetting passwords and linking new email addresses. The vulnerability affected high-value accounts, including those of the Obama White House and the U.S. Space Force Chief Master Sergeant, before Meta deployed an emergency patch. Security researchers note that AI-powered account recovery systems present new attack surface similar to social engineering risks with human support staff.</description><pubDate>Mon, 01 Jun 2026 17:32:50 GMT</pubDate></item><item><title>From Cookies to Keys: The Threat of Session Hijacking</title><link>https://huntress.com/blog/why-hackers-don't-need-passwords-anymore</link><guid isPermaLink="false">cst-682</guid><description>Session hijacking involves attackers stealing session tokens or cookies to impersonate legitimate users without compromising credentials directly. This technique allows attackers to bypass authentication controls and gain unauthorized access to systems and data, creating a significant risk for enterprise environments.</description><pubDate>Tue, 26 May 2026 07:00:00 GMT</pubDate></item><item><title>Risky Bulletin: Microsoft ends SMS MFA for personal accounts</title><link>https://risky.biz/risky-bulletin-microsoft-ends-sms-mfa-for-personal-accounts</link><guid isPermaLink="false">cst-185</guid><description>Microsoft is discontinuing SMS-based multi-factor authentication for personal accounts, pushing users to adopt passkeys instead. The company cited SMS as a primary vector for account takeover and fraud. Users will be prompted to register passkeys upon their next login.</description><pubDate>Fri, 22 May 2026 00:56:07 GMT</pubDate></item><item><title>Most Common Passwords to Compromise Security in 2026</title><link>https://huntress.com/blog/most-common-passwords</link><guid isPermaLink="false">cst-689</guid><description>An article discusses commonly used passwords that pose security risks to individuals and organizations, along with recommendations for strengthening password practices.</description><pubDate>Fri, 15 May 2026 18:00:00 GMT</pubDate></item><item><title>What Is Single Sign-On? The Practical Guide | Huntress</title><link>https://huntress.com/blog/what-is-sso-login</link><guid isPermaLink="false">cst-690</guid><description>This article provides an overview of single sign-on (SSO) technology, explaining its function in authentication and access management, as well as guidance on implementing SSO within an organization.</description><pubDate>Fri, 15 May 2026 04:00:00 GMT</pubDate></item><item><title>Strong Stack. Strong Team. Real Security Resilience.</title><link>https://huntress.com/blog/resilient-security-stack-team</link><guid isPermaLink="false">cst-691</guid><description>This is promotional content about building a security stack and program designed to reduce alert fatigue, enhance identity security, and improve incident response capabilities.</description><pubDate>Fri, 15 May 2026 00:00:00 GMT</pubDate></item><item><title>How Huntress Managed ITDR's New Incident Report Timeline | Huntress</title><link>https://huntress.com/blog/huntress-managed-itdr-incident-report-timeline-response</link><guid isPermaLink="false">cst-695</guid><description>Huntress has released a feature within its Managed Identity Threat Detection and Response (ITDR) platform called Incident Report Timeline, which provides chronological documentation of security incidents. This capability is designed to help security teams review and respond to incidents with greater clarity and context.</description><pubDate>Wed, 13 May 2026 19:00:00 GMT</pubDate></item><item><title>Know who to watch before the incident finds you</title><link>https://elastic.co/security-labs/entity-analytics-watchlists</link><guid isPermaLink="false">cst-623</guid><description>Elastic Security v9.4 introduces Entity Analytics Watchlists, a feature that allows security teams to create weighted lists of users, hosts, and services to inject organizational context directly into the platform's risk scoring pipeline. The capability bridges the gap between what security teams know about their environment and what their SIEM can operationalize, without requiring engineering configuration or custom queries. Watchlist membership compounds with alert activity, asset criticality, and behavioral signals to produce prioritized risk scores.</description><pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate></item><item><title>dMSA Ouroboros: Self-Sustaining Credential Extraction in Windows Server 2025</title><link>https://huntress.com/blog/dmsa-ouroboros-credential-extraction-windows-server-2025</link><guid isPermaLink="false">cst-700</guid><description>Researchers discovered dMSA Ouroboros, a credential extraction technique that exploits delegated permissions in fully patched Windows Server 2025 domains. The attack is self-sustaining and persists despite standard remediation attempts, requiring only standard permissions to execute.</description><pubDate>Mon, 04 May 2026 14:00:00 GMT</pubDate></item><item><title>Unified EDR + ITDR: Closing the Identity Gap Before Attacks Spread</title><link>https://huntress.com/blog/edr-itdr-correlations</link><guid isPermaLink="false">cst-704</guid><description>Huntress has integrated endpoint detection and response (EDR) with identity threat detection and response (ITDR) capabilities to correlate endpoint compromise events with cloud identity risks. The unified approach aims to prevent attackers from reusing stolen credentials by linking endpoint telemetry to identity events for coordinated response.</description><pubDate>Mon, 27 Apr 2026 13:00:00 GMT</pubDate></item><item><title>Passkeys are more secure than traditional ways to log in</title><link>https://ncsc.gov.uk/blogs/passkeys-are-more-secure-than-traditional-ways-to-log-in</link><guid isPermaLink="false">cst-296</guid><description>Passkeys provide a more secure and user-friendly alternative to traditional password-based authentication and are now supported across most modern devices and platforms.</description><pubDate>Thu, 23 Apr 2026 12:00:00 GMT</pubDate></item><item><title>NCSC: Leave passwords in the past - passkeys are the future</title><link>https://ncsc.gov.uk/news/ncsc-leave-passwords-in-the-past-passkeys-are-the-future</link><guid isPermaLink="false">cst-297</guid><description>The UK National Cyber Security Centre (NCSC) advocates for passkeys as the default authentication method for consumers, positioning them as more secure and user-friendly than traditional passwords. The statement reflects a broader industry shift toward phishing-resistant authentication mechanisms.</description><pubDate>Thu, 23 Apr 2026 12:00:00 GMT</pubDate></item><item><title>What Is Multi-Factor Authentication (MFA)? | How MFA Secures Businesses | Huntress</title><link>https://huntress.com/blog/what-is-multi-factor-authentication</link><guid isPermaLink="false">cst-705</guid><description>Multi-factor authentication (MFA) is a security mechanism that combines passwords with additional verification factors to protect against unauthorized access. The article explains that passwords alone are insufficient and that MFA provides an important additional layer of defense for organizations.</description><pubDate>Thu, 23 Apr 2026 04:00:00 GMT</pubDate></item><item><title>Your Security Program Was Built for a Threat Landscape That No Longer Exists</title><link>https://huntress.com/blog/building-resilient-security-teams</link><guid isPermaLink="false">cst-716</guid><description>Huntress released new data indicating that traditional security programs are inadequate against contemporary identity-based threats. The findings suggest that organizations need to recalibrate their security strategies to address the evolved threat landscape.</description><pubDate>Mon, 13 Apr 2026 13:00:00 GMT</pubDate></item><item><title>VIP Credential Monitoring Blog</title><link>https://recordedfuture.com/blog/vip-credential-monitoring-blog</link><guid isPermaLink="false">cst-1982</guid><description>Recorded Future has launched VIP Credential Monitoring to track compromised credentials belonging to high-value targets like executives and system administrators across work and personal accounts. According to the 2025 Data Breach Investigations Report, credential abuse is the leading initial access vector, with attackers able to identify which systems credentials unlock through infostealer malware logs and prioritizing accounts with broad organizational access. The tool continuously scans dark web forums, malware logs, and breach databases to alert security teams within 24 hours when VIP credentials surface, reducing the window between compromise and detection.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate></item><item><title>The Three-Finger Test</title><link>https://huntress.com/blog/deepfake-three-finger-test</link><guid isPermaLink="false">cst-724</guid><description>The article discusses the limitations of the 'three-finger test,' a security practice for identity verification, and emphasizes the need for more robust security processes to defend against identity-based attacks and social engineering tactics that evolve with advances in artificial intelligence.</description><pubDate>Wed, 01 Apr 2026 09:00:00 GMT</pubDate></item><item><title>ITDR for Google Workspace | Huntress Managed ITDR</title><link>https://huntress.com/blog/managed-itdr-google-workspace</link><guid isPermaLink="false">cst-726</guid><description>Huntress has extended its Identity Threat Detection and Response (ITDR) capabilities to Google Workspace, offering protection against business email compromise (BEC), inbox rule abuse, and account takeover attacks. The service includes 24/7 security operations center (SOC) monitoring and incident response.</description><pubDate>Tue, 24 Mar 2026 14:00:00 GMT</pubDate></item><item><title>36 Must-Know Password Statistics for 2026 | Huntress</title><link>https://huntress.com/blog/password-statistics</link><guid isPermaLink="false">cst-739</guid><description>Huntress compiled password statistics for 2026 highlighting prevalence of poor password hygiene practices. The report provides insights into common credential management weaknesses and recommends protective measures for organizations and users.</description><pubDate>Mon, 09 Mar 2026 14:00:00 GMT</pubDate></item><item><title>Top 10 Worst Places to Store a Password | Huntress</title><link>https://huntress.com/blog/top-10-worst-places-to-store-a-password</link><guid isPermaLink="false">cst-740</guid><description>Huntress compiled a list of the top ten worst practices for password storage based on feedback from IT and information security professionals. The article identifies common insecure methods that organizations and individuals should avoid.</description><pubDate>Mon, 09 Mar 2026 05:00:00 GMT</pubDate></item><item><title>SSO vs. MFA: Key Differences, Compared + Explained | Huntress</title><link>https://huntress.com/blog/improving-security-with-sso-and-mfa</link><guid isPermaLink="false">cst-743</guid><description>Single sign-on (SSO) and multi-factor authentication (MFA) serve different security purposes and are often complementary rather than interchangeable. SSO streamlines access by allowing users to authenticate once across multiple applications, while MFA adds security layers by requiring multiple verification methods. Organizations can benefit from implementing both technologies together to balance user convenience with stronger authentication controls.</description><pubDate>Thu, 05 Mar 2026 21:00:00 GMT</pubDate></item></channel></rss>