ComputerWeekly.com 09月29日
Okta拓展非人类身份安全
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

Okta在拉斯维加斯的年度客户会议上宣布了新的安全能力,旨在帮助用户将AI代理无缝集成到其身份安全结构中。随着AI代理数量的激增,Okta正努力成为非人类身份(NHI)安全的首选解决方案。该公司强调,AI代理的快速发展和独立操作能力带来了新的安全风险,因此需要更强的身份安全措施。Okta推出了Okta for AI Agents服务,提供工具来发现和识别高风险代理,集中控制访问权限,并自动执行安全策略。此外,Okta还推出了Cross App Access (XAA)协议,扩展OAuth以保护代理驱动的应用间交互,并与AWS、Box、Google Cloud等合作伙伴合作,将控制权从单个应用转移到更广泛的身份层,从而提高实时可见性、策略驱动安全性和更安全的代理集成。

🔒 Okta在拉斯维加斯的年度客户会议上宣布了新的安全能力,旨在帮助用户将AI代理无缝集成到其身份安全结构中。

🤖 随着AI代理数量的激增,Okta正努力成为非人类身份(NHI)安全的首选解决方案。

⚠️ AI代理的快速发展和独立操作能力带来了新的安全风险,因此需要更强的身份安全措施。

🛡️ Okta推出了Okta for AI Agents服务,提供工具来发现和识别高风险代理,集中控制访问权限,并自动执行安全策略。

🔗 此外,Okta还推出了Cross App Access (XAA)协议,扩展OAuth以保护代理驱动的应用间交互,并与AWS、Box、Google Cloud等合作伙伴合作,将控制权从单个应用转移到更广泛的身份层,从而提高实时可见性、策略驱动安全性和更安全的代理集成。

<p>At its annual <a href="https://www.okta.com/oktane/" target="_blank" rel="noopener">Oktane customer conference</a> in Las Vegas, Nevada, identity and access management specialist Okta has been expanding its vision to be a first port of call to securing non-human identities (NHIs) as a swelling wave of <a href="https://www.techtarget.com/searchenterpriseai/definition/AI-agents" target="_blank" rel="noopener">artificial intelligence (AI) agents</a> causes their numbers to swell dramatically.</p><div class="ad-wrapper ad-embedded"> <div id="halfpage" class="ad ad-hp"> <script>GPT.display('halfpage')</script> </div> <div id="mu-1" class="ad ad-mu"> <script>GPT.display('mu-1')</script> </div> </div> <p>Among the announcements made today are new capabilities within both the Okta and Auth0 platforms that the supplier said will enable users to integrate AI agents seamlessly into their identity security fabrics.</p> <p><a href="https://www.computerweekly.com/news/366629189/Okta-AI-adoption-fuels-problems-for-identity-management" target="_blank" rel="noopener">A study released earlier in 2025 by Okta</a> revealed that although 91% of organisations were already deploying agentic AI in search of productivity gains, but also that just 10% of organisations are today putting any form of cyber governance in place to manage agents – so Okta believes the risk is also rising, and fast.</p> <p>Such risks are no longer theoretical; Okta cited incidents such as the now infamous breach which an AI bot built on the Paradox AI platform and <a href="https://www.wired.com/story/mcdonalds-ai-hiring-chat-bot-paradoxai/" target="_blank" rel="noopener">used by fast-food giant McDonalds</a> in its hiring process exposed the personal data of millions of job applicants to hackers who correctly guessed that its password was ‘123456’.</p> <p>Okta CEO Todd McKInnon compared unleashing AI agents on an organisation’s environment to creating a lot of individual new insider threats.</p> <p>“AI agents are a powerful new identity type. They can act independently, on their own or on behalf of a user or a team or a company,” said McKinnon. “They can access tools, apps or data, they can plan or complete tasks on their own. The pace here of innovation is absolutely stunning.</p> <p>“These AI agents and the potential here, are getting very, very powerful and it’s happening very quickly. Without identity security AI security collapses. AI security is identity security, you can’t be successful in one without the other.”</p> <section class="section main-article-chapter" data-menu-title="Okta for Agents"> <h2 class="section-title"><i class="icon" data-icon="1"></i>Okta for Agents</h2> <p>Officially launched today, the firm’s <a href="https://www.okta.com/secure-ai/" target="_blank" rel="noopener">Okta for AI Agents</a> concept will integrate AI agents into identity security fabrics to provide an end-to-end security wrap around them.</p> <p>Among other things, the service provides tools to enable agent discovery and identification of risky – or rogue shadow – agents, centralised controls to manage their access, and automated governance to enforce wider security policies and manage their overall security journeys or “lifecycles”.</p> <div class="extra-info"> <div class="extra-info-inner"> <h3 class="splash-heading">Read more from Oktane 2025</h3> <p>Identity specialist Okta is laying the groundwork for a number of incoming announcements designed to help its customers get to grips with the challenge of <a href="https://www.computerweekly.com/news/366631993/Oktane-2025-Okta-takes-aim-at-agentic-AI-governance-gap" target="_blank" rel="noopener">securing non-human, agentic identities</a>.</p> </div> </div> <p>Notable among the features of the new package, Okta is talking up Cross App Access (XAA), a protocol which extends OAuth to secure agent-driven and application-to-application interactions. With support from partners such as AWS, Box, Google Cloud, Salesforce and many others, Okta said XAA will shift control from individual apps to the wider identity layer, bringing real-time visibility, policy-driven security and safer agentic integrations.</p> <p>“Enterprises everywhere are grappling with how to safely harness AI with company data. Our customers rely on Glean to unify that knowledge and empower AI agents to take meaningful action,” said Sunil Agrawal, CISO at AI data platform <a href="https://www.glean.com/" target="_blank" rel="noopener">Glean</a>, which has been working with Okta on XAA.</p> <p>“Glean agents act strictly on behalf of the user – with no extra privileges. XAA takes that principle even further and represents the next step toward making it more secure and seamless for AI agents to connect across systems. We’re excited to support this emerging protocol and to help guide the industry toward standards-based agent interactions.”</p> <p>Kristen Swanson, senior vice-president of design and research at Okta, added: “The modern enterprise requires an identity security fabric that can unify silos and reduce the attack surface. Our latest innovations weave agents into that fabric to manage their entire identity lifecycle, leveraging open standards like Cross App Access that help elevate the entire industry and create a more secure AI-powered ecosystem.”</p> <p>Elsewhere at Oktane, Okta unveiled Verifiable Digital Credentials (VDC), a platform designed to reduce AI-powered fraud and potential friction during employee onboarding or other similar processes by enabling organisations to digitally prove a user’s identity and eligibility, and establish ongoing trust.</p> <div class="extra-info"> <div class="extra-info-inner"> <h3 class="splash-heading">Stories of resilience</h3> <p>At the Oktane 2025 opening keynote, actor Jeremy Renner shared his thoughts on resilience, in conversation with Okta chief marketing officer Kerry Ok.</p> <p>On New Year’s Day 2023, Renner was involved in a serious accident at his home in Washoe, Nevada, in which he was struck by an unmanned vehicle while trying to save his nephew from being hit by a snowplough. Renner sustained 38 broken bones and blunt chest trauma. It was, in every sense of the word, his worst day.</p> <p>Of course, the reality of traumatic injury is far removed from being on the receiving end of a cyber attack, but some of the lessons are eerily familiar, and throughout his long recovery, Renner has been thinking about resilience and what he learned from adversity.</p> <p>“It paved the way for me to share a private experience publicly. There’s a humanisation that came from the experience,” said Renner. “It’s afforded me real connection, real purpose [and] some of the best times of my life.”</p> <p>Renner also discussed how his non-profit foundation, <a href="https://www.rennervationfoundation.org/" target="_blank" rel="noopener">RennerVation</a>, which supports children living in foster care and at-risk youth, has itself been targeted by cyber fraudsters using deepfakes of his likeness to cheat potential donors and supporters.</p> <p>Okta said that non-profits such as RennerVation are among the most targeted organisations that it works with, as their slim budgets and tight focus do not afford them the same human or technological expertise when it comes to cyber security.</p> </div> </div></section>

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

Okta AI代理 非人类身份安全 身份管理 Cross App Access
相关文章