May 15, 2026
AI
The Agentic Era Just Got the Authentication Model It Needs
Workload identity federation has come to AI agents. The agentic identity era starts here. Using API Keys to access AI platforms was never going to survive the agentic era. Anthropic’s support for Workload Identity Federation is a confirmation of that reality. By supporting Workload Identity Federation, AI agents can now authenticate with short-lived, cryptographically verifiable …
September 17, 2025
Real-World Lessons
Shai-Hulud npm Supply Chain Attack: Why Secrets Fueled the Worm
September 2, 2025
Real-World Lessons
From OAuth Tokens to API Keys: The Toxic Data Behind the Salesloft Drift / Salesforce Breach
August 18, 2025
AI
MFA vs Multi-Attestation: Why AI Needs a New Identity Model
August 5, 2025
Identity
Service Accounts Were a Shortcut. Now They’re a Liability. It’s time to go Accountless.
July 31, 2025
Real-World Lessons
Wiz’s Base44 Vulnerability Findings Spotlight a Fixable Gap: Non-Human Identity
July 16, 2025
Real-World Lessons
Another Day, Another Leaked API Key — This Time, It’s xAI
July 11, 2025
Real-World Lessons
McDonald’s McHire Breach Shows Why APIs Need Non-Human Identity and Strong Auth
July 9, 2025
CI/CD
Want Control Over Secrets? Start with Your Strategic Control Point: CI/CD.
June 30, 2025
Identity
Secret Sprawl: Understand It To Reduce Your Risk
June 19, 2025
Real-World Lessons
Asana’s MCP Bug Wasn’t Unique — It Was a Sign of What’s Coming
June 17, 2025
AI