The only Customer Identity and Access Management (CIAM) with hybrid, single-tenant deployment you can dev and test anywhere*

Denver, CO
A federated login you forgot you set up can hand your account to an attacker. That's what happened to about 5,000 Dropbox users: a legacy Lenovo ID integration let someone register a Lenovo ID with a victim's email and sign right in, no Dropbox password needed. Dan Moore, Senior Director of CIAM Strategy and Identity Standards at FusionAuth, breaks down the pattern in Hackread: adding a new login method to an account should require the user to prove they own it. hackread.com/hackers-accesse… #Cybersecurity #Identity #CIAM #AccountTakeover
1
44
🎉 Exciting news! FusionAuth has been featured in Cyber Press's 2026 CIAM buyer's guide! 🚀 We're thrilled to be highlighted in the value-and-control lane! Our full-featured CIAM can be self-hosted or run in our cloud, complete with standards and passkeys. Plus, our pricing is crystal clear right from the start! 💪 Check out their take on our unlimited-user self-hosting option—"turns login cost into an infrastructure line, not a success tax." Dive into the full guide here: cyberpress.org/ciam-solution… #CIAM #Identity #Authentication #Excited #CyberPress
1
2
107
Most breaches are transactional, but a data catalog breach? That's architectural. If compromised, attackers get a full view of your enterprise! You can't just rotate credentials and move on. Learn why data catalog remediation requires a new approach: cybersecurity-insiders.com/w… #CyberSecurity #DataProtection
58
When engineers ignore the AI tools you've invested in, it’s not just a matter of adoption—it’s a procurement issue. Dan Moore from FusionAuth points out in LeadDev that if you can’t pinpoint the problem your tool solves, measure its impact, and show real improvements, you're just following trends. Engineers need to be part of the tool selection process! Read more: leaddev.com/ai/you-bought-th…
76
Adding a new authentication method shouldn’t become a new engineering project. Neither should supporting another enterprise identity requirement. Betty Blocks uses FusionAuth across 10,000+ applications so its teams can keep identity manageable as the platform evolves. fusionauth.io/blog/betty-blo… #CIAM #CustomerIdentity
105
Attackers didn't need AI to break into US water systems. They exploited weaknesses we should have patched years ago. The defenses experts keep repeating are the basics: patch, keep systems off the open internet, use strong access controls, and don't leave authentication in its default state. Dan Moore, Sr. Director of CIAM Strategy at FusionAuth, breaks down why in Route Fifty's coverage of the water-sector attacks: route-fifty.com/cybersecurit… #Cybersecurity #Identity #CriticalInfrastructure #Authentication
65
A translation plugin used by 400,000 WordPress sites exposed admin password-reset links through a public API, allowing unauthenticated attackers access to admin accounts. Dan Moore, Sr. Director of CIAM Strategy at FusionAuth, shares insights on this vulnerability in The IT Nerd's coverage: itnerd.blog/2026/08/27/40000… #WordPress #Cybersecurity #Vulnerability
153
New episode of the Maintainable Software Podcast: David Hayes (FusionAuth, VP of Product) on why boring software wins. He and Robby Russell get into API decisions that outlive their authors, why customers rarely upgrade as fast as you'd like, and how technical debt conversations land better when tied to customer outcomes. There's also an unexpected detour into naval history — clear incentives, strong communication, and good checklists beat individual heroics, whether you're running a fleet or a software team. Listen here: maintainable.fm/episodes/dav…
112
400k WordPress sites compromised due to a lack of authentication on a public API. An attacker simply requested an admin password reset link. This breach highlights the need for strict user context segregation. Full story: itnerd.blog/2026/08/27/40000…
137
A rogue app breaks when it hits a wall. An AI agent looks for a way around it. Dave Hayes, VP of Product at FusionAuth, explains the real shift in this Reco report on shadow AI: an unsanctioned app connects to one system and stops if it can't do its job, while an agent connects to many and keeps pushing toward its goal regardless of the rules in its way. Dave Hayes, VP of Product at FusionAuth, shares his perspective in Tech News Vision: technewsvision.co.uk/invisib… #Cybersecurity #Identity #AIAgents #ShadowAI
1
123