'Govern the stay' is new agent mantra
1Password CTO Nancy Wang and Cursor Security Lead Travis McPeak told The Deep View that rogue AI agents pose serious risks, including deleting databases or emails, but can be safely deployed with cont…
1Password CTO Nancy Wang and Cursor Security Lead Travis McPeak told The Deep View that rogue AI agents pose serious risks, including deleting databases or emails, but can be safely deployed with cont…
1Password acquired Israeli startup Apono for $250M-$300M to govern what AI agents and humans can do inside enterprise systems. Apono's platform grants just-in-time, intent-based access and automatical…
An international law enforcement operation involving the FBI, Google, and Black Lotus Labs disrupted a large phishing service. Separately, the U.S. government ordered a cutoff of foreign nationals' ac…
Cursor's Head of Security Travis McPeak warned that AI coding agents must never be trusted, advocating for secure-by-default workflows to contain damage when agents inevitably misbehave. Speaking on t…
A Disney employee named Matthew Van Andel received a series of threatening emails from hackers who had gained access to his password manager, 1Password, compromising over 1,000 accounts including pers…
1Password acquired Apono, a just-in-time access governance startup, to govern AI access. The deal brings intent-based, zero-standing-privilege access controls into 1Password's Unified Access strategy …
1Password announced 1Password Credential Broker, a new product that securely brokers credentials, tokens, and federated access from 1Password to trusted requesters. The product is available in private…
1Password acquired Apono to become the control plane for businesses using agentic AI, transitioning from securing credentials to governing access. The Toronto firm aims to address the growing need for…
1Password acquired Apono to extend its identity security platform with just-in-time privileged access governance, addressing the growing challenge of managing access for human, machine, and AI identit…
Jaya Baloo, co-founder and CISO of Aisle, argues that risk acceptance is a dangerous fallacy in cybersecurity, urging organizations to address known vulnerabilities rather than panic about AI-driven t…
The W3C Web Application Security Working Group has standardized the /.well-known/change-password URL as a redirect endpoint that points password managers and users to a site's actual change-password p…
1Password's CTO admitted in a video that the company uses AI code generation to "one shot" new features directly into production. The revelation has sparked backlash from users, who argue the practice…
1Password interns Eileen Zhao and Kashish Garg are using AI tools to accelerate learning, navigate large codebases, and improve productivity. The company encourages AI experimentation through hackatho…
Gartner's Hype Cycle for Agentic AI report warns that fully autonomous agents are not ready for most enterprise use cases, with human oversight remaining essential. The report reveals that while only …
A self-spreading npm worm called Miasma v2 compromised 57 packages across 286+ malicious versions by using a malicious binding.gyp file to trigger arbitrary code execution during npm install, without …
Dataiku CEO Florian Douetteau and 1Password's Nancy Wang outlined the operational and security requirements for enterprise AI agents at HumanX, with Douetteau emphasizing that effective agentic system…
1Password's recent webinar highlighted that 52% of employees download apps without IT approval, creating an unmanaged stack of SaaS and AI tools outside SSO. The company introduced new integrations be…
A developer lost a decade of macOS configuration after a MacBook Pro failure, motivating them to rebuild their entire system setup using Nix-based declarative configuration files. The project aims to …
1Password and OpenAI partnered to integrate 1Password as a trusted access layer for OpenAI's Codex, enabling just-in-time, scoped credential management that keeps secrets outside the model's context w…
OpenAI's Agent Security Lead Fotis Chantzis argues that identity protocols like OAuth and OIDC fail for AI agents because they assume stable, predictable behavior, while agents act non-deterministical…