惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Martin Fowler
Martin Fowler
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
雷峰网
雷峰网
J
Java Code Geeks
G
Google Developers Blog
博客园 - 司徒正美
The GitHub Blog
The GitHub Blog
L
LangChain Blog
人人都是产品经理
人人都是产品经理
GbyAI
GbyAI
Vercel News
Vercel News
S
SegmentFault 最新的问题
Engineering at Meta
Engineering at Meta
H
Hackread – Cybersecurity News, Data Breaches, AI and More
云风的 BLOG
云风的 BLOG
F
Fortinet All Blogs
Y
Y Combinator Blog
博客园_首页
Last Week in AI
Last Week in AI
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
罗磊的独立博客
A
About on SuperTechFans
B
Blog
Microsoft Security Blog
Microsoft Security Blog

Security

Scope Systems confirms cyber incident, says no data loss occurred Instructure breach: ShinyHunters says ‘matter has been resolved’ Rapid7 launches Cyber GRC program to connect compliance with live risk data Australian federal budget 2026: The industry perspective Op-Ed: Microsoft May Patch Tuesday reveals 137 vulnerabilities Federal Budget 2026: The state of cyber security spending for the coming year OpenAI offers EU early access to its cyber security model Exclusive: Aussie firm Earth Systems listed by INC Ransom hacking group Op-Ed: Why Middle East tensions demand immediate action on OT security Aussie schools breach: Instructure boss “reaches agreement” with ShinyHunters to not release data Institute of Public Accountants members hit by data breach Union demands answers on Qantas AI plans 1 in 3 small businesses don't think they're a cyber target, new research finds Exclusive: Aussie toy distributor listed by M3rx ransomware Exclusive: Australian Computer Society investigating possible breach after ShinyHunters hack claims The industry speaks – part 2: World Password Day 2026 Aussie schools breach: The Instructure hack “transcends an isolated IT incident” Exclusive: Aussie car part importer Strategic Imports allegedly breached by threat actors New South Wales, other states, investigating Instructure/Canvas data breach Australian Cyber Security Centre warns of ClickFix campaign leveraging Australian infrastructure Queensland Department of Education confirms students & staff impacted by ShinyHunters data breach ACMA takes action against SpinTel & Yomojo over mobile number fraud violations The Industry Speaks, Part 1: World Password Day 2026 Qualys and Converge tie cyber insurance pricing to real-time security posture Fakeout: Iranian APT caught hiding behind Chaos ransomware activity Exclusive: Australian energy management firm allegedly breached by SafePay Real estate giant Cushman & Wakefield confirms cyber incident, Qilin and ShinyHunters claim attack CrowdStrike expands Project QuiltWorks as more partners join AI security coalition Hacked: ALS discloses cyber incident, unauthorised access to IT systems Microsoft the main target of AI phishing attacks, report uncovers
CrowdStrike targets AI identity risks with new continuous...
David Hollingworth · 2026-06-16 · via Security

Cyber security firm CrowdStrike says traditional access controls are no longer fit for autonomous AI agents.

CrowdStrike targets AI identity risks with new continuous authorisation capability

CrowdStrike has unveiled Continuous Identity for AI Agents, a new feature within its Falcon platform aimed at securing autonomous AI systems by continuously authorising access decisions based on real-time risk signals.

According to CrowdStrike, traditional identity and access management models built around static policies and standing privileges are ill-suited to AI agents operating at machine speed. Instead, Continuous Identity evaluates access requests in real time using contextual factors such as the identity of the agent owner, the user or system invoking the agent, and the security posture of associated devices.

You’re out of free articles for this month

To continue reading the rest of this article, please log in.

“AI agents are transforming how work gets done, and how identities must be secured,” Elia Zaitsev, chief technology officer at CrowdStrike, said in a 16 June statement.

“Point-in-time authorisation becomes a legacy approach the second agents are given autonomy. Authorise once and trust indefinitely is not a security model, it’s a liability. That’s the shift CrowdStrike is driving, from static, one-time access decisions to Continuous Identity.”

The capability is powered by technology acquired through CrowdStrike’s recent purchase of SGNL and is designed to dynamically grant, deny, or revoke access based on changing risk conditions. The company said the platform eliminates standing privileges by granting access only when required and removing it once tasks are completed.

Key features include cryptographically verifiable agent identities based on the SPIFFE standard, context-aware authorisation that preserves identity information across chains of delegated sub-agents, and integration with Falcon AI Detection and Response (AIDR). AIDR continuously monitors prompts and agent activity for signs of misuse or attempts to manipulate large language models beyond their authorised scope, triggering access revocation when necessary.

CrowdStrike said the new capability extends its risk-based authorisation model across human, non-human and AI identities, covering on-premises, SaaS, browser and cloud environments.

Cyber DailyWant to see more stories from trusted news sources?
Make Cyber Daily a preferred news source on Google.

David Hollingworth

David Hollingworth has been writing about technology for over 20 years, and has worked for a range of print and online titles in his career. He is enjoying getting to grips with cyber security, especially when it lets him talk about Lego.