home.social

#blackhatusa — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #blackhatusa, aggregated by home.social.

  1. 82% of enterprises are running AI agents they don't know about.

    That number came out of #RSAC Conference 2026 — and it wasn't the most alarming stat on the table.

    Sean Martin sat back down with Itamar Apelblat, Co-Founder and CEO of Token Security, to unpack what he heard walking the show floor and what the CSA data now makes impossible to ignore: 65% of organizations have already had an AI agent-related incident in the last twelve months. 82% found agents in their environment that nobody authorized. Only 21% have any formal process to retire an agent when it's done.

    Discovery alone is not governance. Intent-based enforcement is. That's where this conversation lands — and it's worth your time.

    A huge thank you to the team at Token Security for joining Sean Martin and Marco Ciappelli on this journey — both on the floor at #RSAC2026 and in the recap. We loved sharing your story and we're looking forward to many more conversations ahead. 🙌

    📍 Where are we headed next? Glad you asked: Infosecurity Europe and Black Hat USA — see you there.

    🎙️ Recap: youtu.be/ZeI5bSbQ070
    🎙️ On Location: youtu.be/uWjCQC3LnaY
    🌐 RSAC Coverage: itspmagazine.com/rsac
    🌐 Next Coverages: itspmagazine.com/technology-an

    #TokenSecurity #AIAgents #AgentSecurity #CyberSecurity #CISO #CloudSecurity #AIGovernance #IdentitySecurity #CSAReport #InfoSec #RSAC2026 #InfosecurityEurope #BlackHatUSA #CyberSecurityPodcast

  2. 82% of enterprises are running AI agents they don't know about.

    That number came out of #RSAC Conference 2026 — and it wasn't the most alarming stat on the table.

    Sean Martin sat back down with Itamar Apelblat, Co-Founder and CEO of Token Security, to unpack what he heard walking the show floor and what the CSA data now makes impossible to ignore: 65% of organizations have already had an AI agent-related incident in the last twelve months. 82% found agents in their environment that nobody authorized. Only 21% have any formal process to retire an agent when it's done.

    Discovery alone is not governance. Intent-based enforcement is. That's where this conversation lands — and it's worth your time.

    A huge thank you to the team at Token Security for joining Sean Martin and Marco Ciappelli on this journey — both on the floor at #RSAC2026 and in the recap. We loved sharing your story and we're looking forward to many more conversations ahead. 🙌

    📍 Where are we headed next? Glad you asked: Infosecurity Europe and Black Hat USA — see you there.

    🎙️ Recap: youtu.be/ZeI5bSbQ070
    🎙️ On Location: youtu.be/uWjCQC3LnaY
    🌐 RSAC Coverage: itspmagazine.com/rsac
    🌐 Next Coverages: itspmagazine.com/technology-an

    #TokenSecurity #AIAgents #AgentSecurity #CyberSecurity #CISO #CloudSecurity #AIGovernance #IdentitySecurity #CSAReport #InfoSec #RSAC2026 #InfosecurityEurope #BlackHatUSA #CyberSecurityPodcast

  3. 82% of enterprises are running AI agents they don't know about.

    That number came out of #RSAC Conference 2026 — and it wasn't the most alarming stat on the table.

    Sean Martin sat back down with Itamar Apelblat, Co-Founder and CEO of Token Security, to unpack what he heard walking the show floor and what the CSA data now makes impossible to ignore: 65% of organizations have already had an AI agent-related incident in the last twelve months. 82% found agents in their environment that nobody authorized. Only 21% have any formal process to retire an agent when it's done.

    Discovery alone is not governance. Intent-based enforcement is. That's where this conversation lands — and it's worth your time.

    A huge thank you to the team at Token Security for joining Sean Martin and Marco Ciappelli on this journey — both on the floor at #RSAC2026 and in the recap. We loved sharing your story and we're looking forward to many more conversations ahead. 🙌

    📍 Where are we headed next? Glad you asked: Infosecurity Europe and Black Hat USA — see you there.

    🎙️ Recap: youtu.be/ZeI5bSbQ070
    🎙️ On Location: youtu.be/uWjCQC3LnaY
    🌐 RSAC Coverage: itspmagazine.com/rsac
    🌐 Next Coverages: itspmagazine.com/technology-an

    #TokenSecurity #AIAgents #AgentSecurity #CyberSecurity #CISO #CloudSecurity #AIGovernance #IdentitySecurity #CSAReport #InfoSec #RSAC2026 #InfosecurityEurope #BlackHatUSA #CyberSecurityPodcast

  4. 82% of enterprises are running AI agents they don't know about.

    That number came out of #RSAC Conference 2026 — and it wasn't the most alarming stat on the table.

    Sean Martin sat back down with Itamar Apelblat, Co-Founder and CEO of Token Security, to unpack what he heard walking the show floor and what the CSA data now makes impossible to ignore: 65% of organizations have already had an AI agent-related incident in the last twelve months. 82% found agents in their environment that nobody authorized. Only 21% have any formal process to retire an agent when it's done.

    Discovery alone is not governance. Intent-based enforcement is. That's where this conversation lands — and it's worth your time.

    A huge thank you to the team at Token Security for joining Sean Martin and Marco Ciappelli on this journey — both on the floor at #RSAC2026 and in the recap. We loved sharing your story and we're looking forward to many more conversations ahead. 🙌

    📍 Where are we headed next? Glad you asked: Infosecurity Europe and Black Hat USA — see you there.

    🎙️ Recap: youtu.be/ZeI5bSbQ070
    🎙️ On Location: youtu.be/uWjCQC3LnaY
    🌐 RSAC Coverage: itspmagazine.com/rsac
    🌐 Next Coverages: itspmagazine.com/technology-an

    #TokenSecurity #AIAgents #AgentSecurity #CyberSecurity #CISO #CloudSecurity #AIGovernance #IdentitySecurity #CSAReport #InfoSec #RSAC2026 #InfosecurityEurope #BlackHatUSA #CyberSecurityPodcast

  5. 82% of enterprises are running AI agents they don't know about.

    That number came out of #RSAC Conference 2026 — and it wasn't the most alarming stat on the table.

    Sean Martin sat back down with Itamar Apelblat, Co-Founder and CEO of Token Security, to unpack what he heard walking the show floor and what the CSA data now makes impossible to ignore: 65% of organizations have already had an AI agent-related incident in the last twelve months. 82% found agents in their environment that nobody authorized. Only 21% have any formal process to retire an agent when it's done.

    Discovery alone is not governance. Intent-based enforcement is. That's where this conversation lands — and it's worth your time.

    A huge thank you to the team at Token Security for joining Sean Martin and Marco Ciappelli on this journey — both on the floor at #RSAC2026 and in the recap. We loved sharing your story and we're looking forward to many more conversations ahead. 🙌

    📍 Where are we headed next? Glad you asked: Infosecurity Europe and Black Hat USA — see you there.

    🎙️ Recap: youtu.be/ZeI5bSbQ070
    🎙️ On Location: youtu.be/uWjCQC3LnaY
    🌐 RSAC Coverage: itspmagazine.com/rsac
    🌐 Next Coverages: itspmagazine.com/technology-an

    #TokenSecurity #AIAgents #AgentSecurity #CyberSecurity #CISO #CloudSecurity #AIGovernance #IdentitySecurity #CSAReport #InfoSec #RSAC2026 #InfosecurityEurope #BlackHatUSA #CyberSecurityPodcast

  6. 🎯 FINAL POST FROM THE FLOOR: #BlackHatUSA 2025 Coverage!

    Access Roulette: How to Stop Betting Your Security on Standing Privileges

    This wraps up our on-location content from Las Vegas!

    Next week we'll reconnect with our main event sponsors— BLACKCLOAK, Dropzone AI, Stellar Cyber, and Akamai Technologies—to bring you their post-event insights and feedback. Of course ThreatLocker's recap was already captured on the floor and published earlier today. Plus, watch for our closing reflection articles from me Marco Ciappelli and Sean Martin, CISSP!

    Our final floor conversation comes thanks to our friends at Apono 🙏

    Modern enterprises are gambling with security every day. Static permissions, manual approvals, and periodic audits create "privilege creep" that turns every over-privileged account into a potential breach waiting to happen.

    At #BlackHat USA 2025, Ofir Stein from #Apono reveals how to break this dangerous cycle.

    The stakes keep rising:
    • Non-human identities (service accounts, #APIs, #AIagents) retain high-level privileges long after tasks complete
    • Organizations discover risks during audits but lack scalable remediation
    #Business teams need rapid access while security teams battle expanding #attacksurfaces

    Apono's Zero Standing Privilege model:
    • Removes ALL permanent access by default
    • Grants access dynamically based on business context
    • Automatically revokes permissions when tasks complete
    • Works for both human AND non-human identities
    • Integrates with existing #identity providers—no rip and replace

    Key capabilities:
    • Context-based policy management aligned with business objectives
    • Continuous discovery of identities, privileges
    • Automated remediation of unnecessary privileges
    • Real-time anomaly detection feeding #SOC workflows
    • Scalable across centralized and decentralized environments

    The result?
    Engineers gain control over their access (building trust), security teams maintain tight governance, and organizations can finally stop betting their security on standing privileges.

    📺 Watch the video: youtu.be/ciBsH84PVQU

    🎧 Listen to the podcast: brand-stories-podcast.simpleca

    📖 Read the blog: itspmagazine.com/their-stories

    ➤ Learn more about Apono: itspm.ag/apono-1034

    ✦ Catch more stories from Apono: itspmagazine.com/directory/apo

    🎪 Follow all of our #BHUSA 2025 coverage: itspmagazine.com/bhusa25

    #Cybersecurity #IdentityManagement #ZeroTrust #AccessControl #BlackHatUSA #BHUSA25 #PrivilegeManagement #IAM #SecurityAutomation #NonHumanIdentities