LIVE · cybersecurity feed
Live wire
ai

Cyera's Oasis Security Buy is All About AI Agent Control

The $1 billion deal aims to converge data security and identity into a single control plane for agents, with privileged access redefined around business context rather than static roles.

zeroday.news ·

Cyera has reportedly acquired Oasis Security in a deal valued at $1 billion, with the strategic intent to integrate artificial intelligence (AI) agent control into its existing data security framework. The acquisition is understood to be driven by a vision to unify data security and identity management within a singular control plane, specifically tailored for AI agents. This move signals a significant shift in how security is approached in an increasingly AI-driven enterprise environment.

The core technical mechanism behind this acquisition appears to be the redefinition of privileged access. Traditionally, privileged access management (PAM) has revolved around static roles and permissions assigned to human users or service accounts. With the integration of Oasis Security's capabilities, Cyera aims to redefine this paradigm, basing privileged access for AI agents on dynamic business context rather rather than fixed roles. This means an AI agent's access to data and systems would be determined by its current operational task and the specific business need it is fulfilling, offering a more granular and adaptive security posture.

The affected product or vendor in this context is Cyera itself, which is expanding its security offerings through this acquisition. Oasis Security's technology will presumably be integrated into Cyera's existing data security platform, enhancing its capabilities to manage and secure interactions involving AI agents. This convergence is particularly relevant for organizations heavily leveraging AI for data processing, analysis, and automation, where the agents themselves become critical entities requiring robust security governance.

The likely scope of this integration extends to any enterprise deploying AI agents that interact with sensitive data. As AI agents become more autonomous and pervasive in business operations, controlling their access and ensuring their actions align with security policies becomes paramount. This class of solution is designed to address the unique security challenges posed by AI, such as ensuring agents do not exfiltrate data, misuse privileges, or operate outside their intended parameters.

Typical mitigation guidance for issues related to AI agent control would involve implementing robust identity and access management (IAM) solutions specifically designed for non-human entities, continuous monitoring of agent activities, and establishing clear audit trails. Furthermore, defining least privilege principles based on dynamic context, as Cyera aims to do, is a critical step in minimizing the attack surface associated with AI agents.

This acquisition reflects a broader industry trend towards securing the evolving landscape of AI-driven operations. As AI agents gain more autonomy and access to critical data and systems, the need for specialized security solutions that can manage their identities, control their access, and monitor their behavior becomes increasingly urgent. The convergence of data security and identity management, particularly with a focus on dynamic, context-aware access for AI agents, represents a significant step in addressing these emerging security challenges in the enterprise.

ai
ShareXLinkedInWhatsAppFacebook

More News

view all →
ai

Hazmat: Open-source containment for AI agents

Hazmat is an open-source tool that runs AI coding agents inside a separate account on your own machine. It wraps the harnesses people use: Claude Code, Codex, OpenCode, Cursor Agent, and several more, plus any script you write yourself. An agent launched the ordinary way runs as you, which means it can read anything you can read. That includes SSH keys, cloud credentials, and the pile of configura

vulnerability

Microsoft blames AI for delayed Exchange update, can’t say when it will arrive

Dealing with machine-made bug backlog makes it hard to find a moment to deliver promised subscription service

breach

Chinese AI company Zhipu claims its new is a better bug-finder than Anthropic, OpenAI

PLUS: HCL, TCS, admit data breaches; Google, Apple, India bans some rideshare tips; and more!

security

Windows 11’s strongest security defenses can be bypassed without a screwdriver

Researchers from the University of Birmingham and Durham University have found a way to knock down some of the toughest protections in Windows 11 without physically opening or modifying the target machine. The attack assumes the attacker has already gained privileged access to the system. A chip that never checks who’s asking The attack, named “Download More RAM,” targets a small configuration chi

nation-state

Product showcase: ScamNet looks for warning signs in suspicious calls and shady links

ScamNet: Anti-Scam Suite is a consumer security app from Synaptrex Technologies that helps users detect and block scams involving phone calls, text messages, websites, and other suspicious content. The app is available for iPhone, iPad, and Mac, with features varying by platform. Call protection is available on iPhone, while tools such as Visual Intelligence are supported on iPhone and iPad. The a

breach

SafePal data breach impacts 39,798 customers, stolen info for sale

Cryptocurrency hardware wallet provider SafePal is warning of a data breach affecting about 39,798 customers after a flaw was exploited to steal customer order information, and a threat actor is now claiming to be selling the stolen data. [...]