Join our Newsletter — 33% off our NHI Course

The Non-Human & AI Identity Journal – Edition 65

Welcome to the latest edition of our Non-Human & AI Identity Journal, where we cover:

• What is the NHI Mgmt Group up to?
• NHI Mgmt Group at Identiverse
• Our pick from our Non-Human & AI Identity Forum
• Recent Breaches and Security Incidents
• Upcoming Events, Webinars, Industry Announcements
­

🎙 NHI Mgmt Group At Identiverse

Opening Remarks: The Non-Human and AI Identity Summit IDV 2026

Opening Remarks: The Non-Human and AI Identity Summit IDV 2026

The wait is over – the 8 sessions from the biggest Non-Human & AI Identity Summit of 2026, hosted by our NHI Mgmt Group in partnership with CyberRisk Alliance at Identiverse, Las Vegas, are being released. We are starting this week by sharing the Opening Remarks by Mr NHI. At 7:10, Mr NHI performs a rap video on NHIs and Agentic AI.

With over 250 in the room, Mr NHI put the audience to the test with questions straight from the Non-Human & AI Identity Podcast:
• Are Agentic AI identities a completely new class of identity?
• How many organisations are actively tackling NHI risks today?
• How many have already deployed agents into their environment?
• Will the agentic workforce lead to mass unemployment? (Mr NHI’s job may depend on the answer 😄)

The answers will surprise you — watch here to find out where the industry really stands.

­

🚨 Recent NHI & Identity Security Breaches

Miasma and Hades: Self-Propagating Supply Chain Worms Hit npm, PyPI and Azure

In June 2026, the Miasma and Hades worms exploited npm and PyPI by self-propagating through developer machines, stealing publishing tokens to republish infected packages. This automated credential exploitation rapidly spread across packages and repositories, including 73 Azure GitHub repositories. The breach highlights the critical need to secure machine identities and credentials, as their compromise can enable rapid, widespread supply-chain attacks.

­

💬 NHI & AI Identity Forum

Our suggested reading for this week from our forum — with over 10,000 articles about NHIs, including Agentic AI.

Zero Trust Depends on the Access Beneath It — Nexis
The OpenAI–Hugging Face Attack and the Third Generation of Authorisation — C1.ai
The Three Stages of Identity Security Maturity and Why Most Programs Were Built for the Wrong Problem — Clarity Security
Every AI Agent Is an Identity. Are You Governing Them? — Saviynt
AI Agents Authentication: How Autonomous Systems Prove Identity — GitGuardian
OWASP Secrets Management Cheat Sheet: Reducing Static Secrets in Practice — Akeyless
Identity system misconfigurations: How small access mistakes become attack paths — Unosecur
The Rising Sophistication of Endpoint Security Threat Patterns: Why CISOs Must Rethink Privilege Control — Arcon
When your coding agent can commit everything you can commit — P0 Security
10 Recent Breaches that Could Have been Prevented with Modern IGA — Opal Security
How Two Small Bugs Led to a Critical Vulnerability and a Cryptography Audit of Go’s SSH Library — Teleport
From Monitor-First to Default-Deny — Visiq Labs
AI Agent Authorization: Why Static Roles Break — PlainID
The Business Case for Governing AI Agents — Opnova
Building a Secure Core for Your Identity — Newcore
How the Five Eyes AI Warning Changes Board Thinking About Cyber Recovery and Resilience — Semperis
How AAuth Brings Human Approval Into AI Agent Authorization — Aembit
Every Agent Is a Paperclip Maximizer — Hush Security
­

🏴 Latest Industry Announcements

Opal Security — OAuth for Opal MCP: give agents access, not a standing key
C1.ai — Launch Week Roundup: The Agentic Control Plane
Saviynt — Introducing Zuma: The Enterprise AI Identity Security Platform
Akeyless — Integrates With Claude’s Compliance API to Secure AI Agent Access
Oleria Security — Introducing Integration Studio: solving the IGA connector backlog
Linx Security — Announces Integration with Snowflake to Solve the Trust Gap in Agentic AI
­

📅 Upcoming Events & Webinars

Webinar

Securing AI Agents in Claude with Akeyless

20 Aug 2026

By Akeyless

Webinar

Your Coding Agent Has the Keys: Hardening Developer Workflows

2 Sep 2026

By GitGuardian

Conference

SecureWorld Atlanta, GA

24 Sep 2026

By P0 Security

Conference

Day Zero — Threat Research Summit

30 Aug 2026

By CrowdStrike

Conference

Meet Cyber Deception Experts at Fal.Con USA 2026

31 Aug 2026

By Acalvio

Webinar

Live Webinar What’s new? The 1Password quarterly security spotlight and roadmap review

2 Sep 2026

By 1Password

Conference

Semperis Announces Additional Keynote for Hybrid Identity Protection Conference 2026

8 Sep 2026

By Semperis

Conference

Gartner Security & Risk Management Summit London

22 Sep 2026

By SailPoint

­

🎓 Training & Certification

Our CPD Certified NHI Foundation Level course delivers practical guidance on governing, managing, and securing NHIs, including AI agents. Developed by Mr NHI, it’s designed for beginners, security professionals, and IT leaders, with hundreds of learners and an average 5-star rating.

Enrol here

­

📅 Are you planning a NHI Program in 2026 including Agentic AI?

As the premier authority on Non-Human Identities, with over 20 years of hands-on experience managing $10M–$20M+ global NHI programs, we offer independent guidance and advice tailored to your needs. Our expertise spans risk and maturity assessments, program initiation and hands-on execution, ensuring your organisation stays ahead of evolving threats and maximises risk reduction. Book below for a free initial consultation.

Book here

­

Lalit Choda
Founder of the NHI Mgmt Group

Free weekly newsletter

Subscribe to the NHI & AI Identity Journal

The latest on NHI and Agentic AI security – articles, research, breaches, news and events every week.

Bonus 33% off our NHI Course when you subscribe.