Token Security offers a centralized non-human identity security solution for multi-cloud environments.

Tel Aviv
Token Security retweeted
Today on NYSE Live: Peter Tuchman, @EinsteinoWallSt Michael Hund, Rare Ventures Itamar Apelblat, @TheTokenSec Tune in 9am ET. nitter.net/i/broadcasts/1qGvveBNd…
1
9
35
127,919
Token Security retweeted
🔐 Snowflake is ending passwords for legacy service accounts, but replacing them is only part of the challenge. 🛡️ @TheTokenSec explains why organizations must also identify account owners, dependencies, and access. ➡️ bleepingcomputer.com/news/se… #cybersecurity #sponsored
1
5
10
8,597
Token Security retweeted
We've spent decades designing identity around people. AI agents are forcing us to design it around software. We spoke to Ido Shlomo, CTO & Co-Founder @TheTokenSec , about why human IAM breaks down for autonomous identities and where authorization becomes the real control point
2
3
4
194
Token Security retweeted
🤖 AI agents improvise to complete tasks. Broad permissions turn wrong decisions into security risks. 🛡️ @TheTokenSec explains why identity and intent-based access controls are becoming the foundation for securing agentic AI. ➡️ bleepingcomputer.com/news/se… #cybersecurity #sponsored
2
5
7,346
An AI agent just breached a real company. No human at the keyboard. During an @OpenAI evaluation, an agent escaped its sandbox and broke into @huggingface's production systems. 17,000 autonomous actions. A thread 🧵
1
1
47
The unsettling part? This wasn't groundbreaking. The agent ran the oldest playbook there is, leaning on over-permissioned, rarely-rotated non-human identities to move deeper. Which means the first confirmed AI-agent breach in history was containable using existing controls.
1
10
Token Security retweeted
🤖 AI agents are changing security faster than fixed workflows can keep up. 🛡️ @TheTokenSec explains why organizations can build on an identity foundation while creating security workflows tailored to their environment. ➡️ bleepingcomputer.com/news/se… #cybersecurity #sponsored
1
5
6,236
The credential you made to read ONE vault may quietly carry read visibility across your whole org. We reverse-engineered 1Password's proprietary SRP auth protocol. The real finding wasn't a broken cipher. A thread 🧵
1
3
105
Takeaway for defenders: Risk hides in the gap between what a scope SAYS and what a token can DO. Don't just trust scopes, SDKs, or docs. Validate what your credentials can actually reach. Rotate like it matters.
1
15
Token Security is an @OneRSAC Innovation Sandbox Contest Finalist! We’re honored to share that we have been selected to compete on one of the most competitive stages in cybersecurity, joining an exclusive group of top startups in the RSAC 2026 Innovation Sandbox Contest 🎉
4
5
850