๐Ÿ” New blog post published โ€” โ€œThe Unseen Variable: Identity, Agentic AI and the Path of Least Resistanceโ€
๐Ÿ“… Published 20 Nov 2025
๐Ÿ‘‰ Read here: https://cirriustech.co.uk/blog/the-unseen-variable/

In brief:
In an age of human-centric identity defence and vendor promises of agentic AI doing โ€œeverything for youโ€, weโ€™re overlooking something critical: workload identities and the brittle tokens they carry. While we focus on secure control planes for people and agents, attackers will take the path of least resistance - and that path often runs straight through identities we barely govern.

Key themes I explore:
โ€ข Why agentic workloads are being added as โ€œfirst-class citizensโ€ in identity - and why thatโ€™s not the full story.
โ€ข How workloads multiply identity surfaces, each with its own defaults, audit gaps and licence SKUs.
โ€ข How a semi-autonomous agent can sidestep the โ€œagent control planeโ€ entirely by using a service principal, hidden secret or long-lived token - essentially an escape hatch.
โ€ข Why token protection (proof of possession, crypto-binding, avoiding tokens in URL query params) remains profoundly weak industry-wide.
โ€ข Why the next wave of identity risk will not come from the human plane, but from machine identity exploitation at scale.

If youโ€™re working in cloud security, identity architecture, devsecops or adversarial-AI defense, I hope this resonates and gives you a sharper mental model. Iโ€™d love to hear your thoughts on how your organisation is handling workload identities and how youโ€™re bridging the human/agent/workload identity gap.

๐Ÿ”— Feel free to share, comment or reach out for a deeper conversation on these themes.

#cloudsecurity #identity #agenticAI #workloadidentities #cybersecurity #defenseevasion #automation #AIsecurity

The Unseen Variable: Identity, Agentic AI and the Path of Least Resistance

Hero image generated by ChatGPT This is a personal blog and all content herein is my own opinion and not that of my employer. Enjoying the content? If you value the time, effort, and resources invested in creating it, please consider supporting me on Ko-fi. The Unseen Variable: Identity, Agentic AI and the Path of Least Resistance Every few years the industry rediscovers a truth that has always been hiding in plain sight. We rename it, formalise it, and publish new frameworks around it, but the core idea remains the same. In distributed systems, adversarial systems, and economic systems, the path of least resistance always wins  โ€Œโ€Œโ€Œโ€Œโ€‹โ€‹โ€Œโ€‹โ€Œโ€Œโ€Œโ€Œโ€Œโ€Œโ€‹โ€Œโ€‹โ€Œโ€Œโ€Œโ€‹โ€Œโ€‹โ€‹โ€‹โ€Œโ€Œโ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€Œโ€Œโ€‹โ€‹โ€‹โ€Œโ€‹โ€Œโ€‹โ€‹โ€‹โ€Œโ€‹โ€Œโ€‹โ€Œโ€‹โ€Œโ€Œโ€‹โ€Œโ€Œโ€Œโ€Œโ€Œโ€Œโ€Œโ€‹โ€Œโ€Œโ€Œโ€‹โ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€‹โ€‹โ€Œโ€Œโ€Œโ€‹โ€Œโ€‹โ€‹โ€‹โ€Œโ€Œโ€Œโ€‹โ€Œโ€Œโ€‹โ€‹โ€‹โ€Œโ€‹โ€‹โ€‹โ€Œโ€Œโ€‹โ€‹โ€‹โ€Œโ€‹โ€Œโ€‹โ€‹โ€‹โ€‹โ€Œโ€‹โ€Œโ€‹โ€Œโ€Œโ€‹โ€Œโ€Œโ€Œโ€Œโ€‹โ€Œโ€Œโ€Œโ€‹โ€Œโ€‹โ€Œโ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€Œโ€Œโ€Œโ€Œโ€‹โ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€Œโ€Œโ€Œโ€‹โ€Œโ€Œโ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€‹โ€‹โ€‹โ€‹โ€Œโ€‹โ€Œโ€Œโ€Œโ€‹โ€Œโ€Œโ€Œโ€Œโ€‹โ€Œโ€‹โ€‹โ€Œโ€‹โ€Œโ€‹โ€‹โ€Œโ€Œโ€‹โ€Œโ€Œโ€‹โ€‹โ€‹โ€Œโ€Œโ€Œโ€Œโ€Œโ€Œโ€‹โ€Œโ€‹โ€‹โ€‹โ€‹โ€Œโ€Œโ€‹โ€Œโ€‹โ€Œโ€Œโ€‹โ€Œโ€Œโ€Œโ€Œโ€‹โ€Œโ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€Œโ€‹โ€‹โ€Œโ€Œโ€‹โ€‹โ€Œโ€‹โ€‹โ€Œโ€Œโ€Œโ€‹โ€‹  .

CirriusTech | Serious About Tech
๐Ÿšจ Lambda Watchdog CVE Report ๐Ÿšจ
Latest AWS Lambda image scan detected 22 CVEs across 27 images:
โ€ข ๐Ÿ”ด Critical: 0
โ€ข ๐ŸŸ  High: 13
โ€ข ๐ŸŸก Medium: 8
โ€ข ๐Ÿ”ต Low: 1

Check the full report ๐Ÿ‘‰ https://lambdawatchdog.com/
#AWS #Lambda #CVE #CloudSecurity #Serverless
Lambda Watchdog

AWS Lambda CVE dashboard

๐Ÿšจ Lambda Watchdog CVE Report ๐Ÿšจ
Latest AWS Lambda image scan detected 22 CVEs across 27 images:
โ€ข ๐Ÿ”ด Critical: 0
โ€ข ๐ŸŸ  High: 13
โ€ข ๐ŸŸก Medium: 8
โ€ข ๐Ÿ”ต Low: 1

Check the full report ๐Ÿ‘‰ https://lambdawatchdog.com/
#AWS #Lambda #CVE #CloudSecurity #Serverless
Lambda Watchdog

AWS Lambda CVE dashboard

๐Ÿšจ Lambda Watchdog CVE Report ๐Ÿšจ
Latest AWS Lambda image scan detected 22 CVEs across 27 images:
โ€ข ๐Ÿ”ด Critical: 0
โ€ข ๐ŸŸ  High: 13
โ€ข ๐ŸŸก Medium: 8
โ€ข ๐Ÿ”ต Low: 1

Check the full report ๐Ÿ‘‰ https://lambdawatchdog.com/
#AWS #Lambda #CVE #CloudSecurity #Serverless
Lambda Watchdog

AWS Lambda CVE dashboard

Level up your hacking knowledge and defensive skills with todayโ€™s cyber playlist. ๐Ÿš€ https://rootshell.online

#CyberSecurity #ZeroTrust #Hacking #CloudSecurity #CyberDefense

251119 rootshell.online

Created on Wed Nov 19 23:00:00 CST 2025 - A news, tutorials and conferences about security published on YouTube - Find the RSS Feed with latest playlists at ...

YouTube

Why run AI tools on cluttered setups? ๐Ÿณ๐Ÿค”

ClaudeBox offers a fully containerized dev environment for Claude AI. Each project gets isolated Docker images, persistent data (auth, shell history), and pre-configured profiles for languages like Python or Rust. Perfect for reproducibility and multi-instance workflows. #Docker #AI #DevTools

๐Ÿ”— Project link on #GitHub ๐Ÿ‘‰ https://github.com/RchGrav/claudebox

#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity

โ€” โœจ
๐Ÿ” P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking ๐Ÿ’ป๐Ÿดโ€โ˜ ๏ธ

ShadowRay 2.0 demonstrates how attackers are now leveraging AI-generated tooling to exploit exposed Ray clusters and create a globally distributed botnet.

Highlights:
โ€ข CVE-2023-48022 exploited across thousands of Ray servers
โ€ข LLM-generated scripts tailored to victim environments
โ€ข Region-aware updates via GitLab + GitHub
โ€ข Hidden GPU mining (A100 clusters)
โ€ข Competing cryptominers battling for compute
Thoughts on the broader implications for AI security?

Boost, reply, and follow @technadu for more deep-dive threat research.

#Infosec #CyberSecurity #ShadowRay #AIThreats #RayFramework #Botnet #ThreatHunting #CloudSecurity

Microsoft just mitigated a record 5.72 Tbps DDoS attack โ€” scale is redefining the battlefield. Volumetric defense must evolve as fast as the floods. ๐ŸŒŠโšก๏ธ #DDoS #CloudSecurity

https://thehackernews.com/2025/11/microsoft-mitigates-record-572-tbps.html

Microsoft Mitigates Record 5.72 Tbps DDoS Attack Driven by AISURU Botnet

Microsoft reports a record 5.72 Tbps AISURU DDoS attack as related IoT botnets continue evolving.

The Hacker News
๐Ÿšจ Lambda Watchdog CVE Report ๐Ÿšจ
Latest AWS Lambda image scan detected 23 CVEs across 27 images:
โ€ข ๐Ÿ”ด Critical: 0
โ€ข ๐ŸŸ  High: 13
โ€ข ๐ŸŸก Medium: 8
โ€ข ๐Ÿ”ต Low: 2

Check the full report ๐Ÿ‘‰ https://lambdawatchdog.com/
#AWS #Lambda #CVE #CloudSecurity #Serverless
Lambda Watchdog

AWS Lambda CVE dashboard

๐Ÿšจ Lambda Watchdog CVE Report ๐Ÿšจ
Latest AWS Lambda image scan detected 23 CVEs across 27 images:
โ€ข ๐Ÿ”ด Critical: 0
โ€ข ๐ŸŸ  High: 13
โ€ข ๐ŸŸก Medium: 8
โ€ข ๐Ÿ”ต Low: 2

Check the full report ๐Ÿ‘‰ https://lambdawatchdog.com/
#AWS #Lambda #CVE #CloudSecurity #Serverless
Lambda Watchdog

AWS Lambda CVE dashboard