By NHI Mgmt Group Editorial TeamDomain: Governance & RiskSource: XM CyberPublished June 11, 2026

TL;DR: Hybrid identity risk now spans Active Directory, cloud, credentials, NHIs and AI agents, creating attack paths that siloed tools miss because they do not map how exposures connect across environments, according to XM Cyber. The core issue is not isolated misconfigurations but linked identity pathways that let attackers move from one weak point to the next.


At a glance

What this is: This is an analysis of how identity exposures across hybrid environments create attack paths that traditional siloed tools miss, especially when NHIs and AI agents are added to the mix.

Why it matters: It matters because IAM, IGA, PAM and security teams need a single view of human, machine and autonomous identity risk if they want to reduce lateral movement and prioritise remediation.

By the numbers:

👉 Read XM Cyber's analysis of hybrid identity exposure and attack paths


Context

Hybrid identity risk grows when access is spread across Active Directory, cloud platforms, service accounts and AI-driven workflows that security teams do not govern as one system. The primary NHI governance problem is not just credential weakness, but the inability to see how identity exposures connect across environments and become attack paths.

Traditional identity tools were built to answer point questions about individual accounts or platforms. That breaks down when attackers move from one environment to another, reuse credentials, or exploit unmanaged non-human identities that were never formally onboarded into access governance.


Key questions

Q: How should security teams reduce risk in hybrid authentication environments?

A: They should treat the remaining password estate as the main control surface, not a temporary leftover. That means inventorying every password-based path, screening credentials against breach data, and tightening recovery and help desk workflows that can reintroduce exposed access. The goal is to reduce valid-credential abuse wherever passwords still remain.

Q: Why do AI agents make non-human identity governance harder?

A: AI agents make governance harder because they can request tools, act autonomously, and change behaviour across sessions while still relying on machine credentials. That increases the number of access paths security teams must supervise. The result is a stronger need for task-scoped access, explicit ownership, and continuous monitoring of what the agent can reach.

Q: What breaks when identity tools only cover one side of a hybrid environment?

A: Attackers exploit the seam. A tool that sees Active Directory but not cloud access, or cloud but not on-prem, cannot show how one compromised identity becomes a broader compromise. The result is blind prioritisation, where the highest-risk route remains hidden even though each component looks manageable on its own.

Q: Who is accountable when an unmanaged AI agent or service account creates exposure?

A: Accountability should sit with the owner of the identity and the team that approved its access, not with security alone. If the identity has no owner, that is a governance failure. Organisations need explicit lifecycle ownership, review and deprovisioning responsibilities for every non-human identity and AI-driven workflow.


Technical breakdown

Why siloed identity coverage misses attack paths

Identity exposure management works by linking exposures into a path, not by treating each finding in isolation. In a hybrid environment, an Active Directory compromise can become a cloud compromise when access relationships are visible to the attacker but not to the security tools. The technical failure is the seam between systems: directory, endpoint, cloud and workload identities each hold part of the access story, but no single control sees the whole route. Validated attack paths matter because they show which combination of credentials, permissions and configuration weaknesses can actually reach a business asset.

Practical implication: map identity relationships across on-prem and cloud so remediation is driven by reachable attack paths, not by alert volume.

Why credentials remain the most reusable on-ramp

Credentials remain effective because they are portable, repeatable and often reused across accounts or environments. A cached password, reused login or harvested token can let an attacker enter one domain and then search for higher-value access elsewhere. The problem is compounded when credentials are stored on endpoints or spread through insecure channels, because the exposure is not a single event but a renewable access layer. That makes credential risk an identity problem, an endpoint problem and a governance problem at the same time.

Practical implication: inventory where credentials are stored, reused and cached, then prioritise removal of the access paths that can be reused across multiple systems.

How unmanaged NHIs and AI agents widen the attack surface

Non-human identities and AI agents introduce a governance gap when they hold real privileges without a formal lifecycle. If ownership is unclear, access reviews are skipped and deprovisioning never happens, the identity becomes persistent infrastructure rather than a governed subject. Shadow AI makes this worse because teams can create identities outside official channels, leaving security blind to what exists, what it can access and who is accountable. In practice, the issue is not that these identities are new. It is that they often arrive with production access before governance does.

Practical implication: require inventory, ownership and offboarding for every non-human and AI-driven identity before granting production access.


Threat narrative

Attacker objective: The attacker wants to turn one exposed identity foothold into broader access across hybrid infrastructure and critical cloud workloads.

  1. Entry begins with stolen or reused credentials that let an attacker enter Active Directory or another trusted identity boundary.
  2. Escalation follows when the attacker combines that initial access with cached credentials, exposed keys or a known weakness to reach higher privileges and cloud workloads.
  3. Impact occurs when the attacker chains those identity exposures into a validated path that reaches business-critical systems and expands compromise across environments.

Read our 52 NHI Breaches Analysis report for a comprehensive view of breaches impacting Non-Human Identities including AI Agents.


NHI Mgmt Group analysis

Identity exposure is now a path problem, not a point problem. Security teams still talk about compromised credentials, misconfigurations and unreviewed accounts as separate issues, but attackers only need them to connect. Once identity relationships span Active Directory, cloud, endpoints and workloads, the real risk is the route they form, not the individual exposure. That means the governance unit has shifted from the account to the attack path, and practitioners should treat reachability as the primary identity control objective.

Unmanaged non-human identity creates a governance blind spot that traditional IAM does not close. NHIs and AI agents often hold production privileges without clear ownership, formal onboarding or lifecycle offboarding. That breaks the assumption that every privileged identity can be reviewed, certified and retired through human-paced processes. The implication is straightforward: identity governance has to cover machine and AI identities with the same discipline used for human access, or the blind spot stays open.

Hybrid identity security needs validated exposure linkage, not broader alerting. Teams do not fail because they lack alerts. They fail because alerts do not tell them which identity exposure can actually move an attacker to a critical workload. The useful control is validation across directory, cloud and endpoint identity relationships, because that is where lateral movement emerges. Practitioners should measure whether their tools can explain attack paths end to end, not whether they can list more findings.

Shadow AI is an identity lifecycle issue before it is an AI issue. The moment teams create AI agents or automated workflows outside official channels, they create identities with no inventory record, no review cycle and no deprovisioning plan. That is a lifecycle failure, not just a security oversight. The governance lesson is that autonomous-adjacent systems cannot be treated as exceptions to IAM, because exceptions become standing access.

Identity blast radius should replace account-centric thinking in prioritisation. The article’s central lesson is that exposure management only becomes useful when practitioners can see which identity weaknesses multiply into broader compromise. That changes remediation order, ownership and reporting. Teams should rank identity issues by the size of the reachable blast radius, not by the number of individual findings attached to an account.

From our research:

  • Only 5.7% of organisations have full visibility into their service accounts, according to Ultimate Guide to NHIs.
  • 96% of organisations store secrets outside of secrets managers in vulnerable locations including code, config files, and CI/CD tools.
  • For related context: The 52 NHI Breaches Analysis shows how compromised non-human access repeatedly becomes a breach multiplier when governance is absent.

What this signals

Identity blast radius is the right planning unit for hybrid programmes. Once identity exposures can be chained across Active Directory, cloud and workload surfaces, teams need a way to measure which account, secret or token can unlock the widest attack path. That is why visibility into service accounts and workload identities should be treated as a programme-level control, not an operational nice-to-have.

With 88.5% of organisations saying their non-human IAM practices lag behind or merely match human IAM efforts, according to the 2024 Non-Human Identity Security Report, the gap is no longer theoretical. Programmes that still separate human identity from machine identity will continue to miss the way attackers move through the seam.

The next phase of identity security will reward teams that can connect detection, governance and remediation into one operating model. If exposure management cannot explain the reachability of an identity weakness, it is still producing inventory, not security.


For practitioners

  • Map identity attack paths across all environments Build a view that links directory access, cloud permissions, cached credentials and workload identities so remediation targets reachable paths rather than isolated findings.
  • Inventory unmanaged non-human identities and AI agents Require ownership, purpose, permissions and lifecycle status for every service account, API token, automated workflow and AI-driven identity before granting production access.
  • Prioritise credential reuse and cache exposure Find reused passwords, cached credentials on endpoints and tokens stored outside approved secrets management so you can remove the easiest on-ramps first.
  • Tie remediation to validated exploitability Use the attack path view to decide what gets fixed first, because the highest-risk issue is the one that can actually reach sensitive systems across the hybrid stack.

Key takeaways

  • Hybrid identity exposure becomes dangerous when separate weaknesses combine into a reachable attack path.
  • Only 5.7% of organisations report full visibility into service accounts, which shows how far machine identity governance still has to go.
  • Practitioners should prioritise validated exploitability, ownership and lifecycle control for NHIs and AI agents before expanding alert volume.

Standards & Framework Alignment

This section maps relevant standards and security frameworks to the operational risks and controls described in this guidance.

OWASP Non-Human Identity Top 10 and MITRE ATT&CK address the attack and risk surface, while NIST CSF 2.0, NIST Zero Trust (SP 800-207) and NIST SP 800-53 Rev 5 set the governance and control requirements practitioners need to meet.

FrameworkControl / ReferenceRelevance
OWASP Non-Human Identity Top 10NHI-03The article centers on unmanaged NHIs and lifecycle visibility gaps.
NIST CSF 2.0PR.AC-4Path-based identity exposure management aligns with least-privilege access governance.
NIST Zero Trust (SP 800-207)The post focuses on continuous verification across hybrid identity boundaries.
NIST SP 800-53 Rev 5AC-6Least-privilege control is central to limiting lateral movement through identity paths.
MITRE ATT&CKTA0006 , Credential Access; TA0008 , Lateral Movement; TA0004 , Privilege EscalationThe article describes credential reuse, escalation and cross-environment movement.

Inventory every non-human identity, assign ownership and enforce lifecycle review before granting production access.


Key terms

  • Identity Attack Path: A sequence of trust relationships and privileges that lets an attacker move from one compromised identity to broader access. In practice, it is the shortest route from weak configuration to meaningful control, often spanning directory permissions, delegated administration, and certificate trust.
  • Identity Blast Radius: The amount of damage a compromised identity can cause across systems, data, and infrastructure. In NHI environments, it is shaped by permissions, network reach, and administrative capability rather than by the credential alone. Reducing blast radius is a containment strategy that limits lateral movement and data exposure.
  • Non-Human Identity (NHI): A digital identity assigned to a non-human entity such as a software application, service account, API key, bot, machine, or AI agent that enables it to authenticate and interact with systems without direct human involvement. NHIs now outnumber human identities in most enterprises by 25 to 50 times.
  • Shadow AI: AI agents, copilots, or connected tools operating without full visibility or governance from security teams. Shadow AI becomes an identity problem when those systems authenticate with unmanaged tokens, service accounts, or OAuth apps that can reach production resources.

What's in the full article

XM Cyber's full analysis covers the operational detail this post intentionally leaves for the source:

  • The exposure-mapping workflow used to connect identity findings into validated attack paths across hybrid environments
  • The cross-environment detection logic for spotting when Active Directory, cloud and workload identities combine into one route
  • The prioritisation model for deciding which identity weaknesses to fix first based on exploitability and business impact
  • The practical remediation context for teams responsible for directory, cloud and workload identity changes

👉 XM Cyber's full post covers the attack-path logic, identity visibility gaps and remediation context in more detail.

Deepen your knowledge

NHI governance, agentic AI identity, and machine identity lifecycle are core topics in our NHI Foundation Level course, the industry's only accredited NHI security programme. If you are building or maturing an identity security programme, it is worth exploring.
NHIMG Editorial Note
Published by the NHIMG editorial team on August 1, 2026.
NHI Mgmt Group — the independent authority on Non-Human Identity, IAM, and Agentic AI security. nhimg.org