Breached Credentials vs Breached Identity: Why the Difference Matters
Most organisations believe they understand identity breaches.
Most organisations believe they understand identity breaches.
For years, security teams have focused their attention on perimeter controls, authentication flows, and privileged access. Meanwhile, one of the most critical identity systems in the organisation has remained largely invisible, under-governed, and dangerously over-trusted.
And why no amount of MFA will fix it...
How VO and Verifiable Credentials Help Universities Shut the Door on Financial-Aid Fraud and Phantom Enrolments
A guest post on Know Your Worker from our friends at TechVision Research.
In today’s digital landscape, proving who performed an action and ensuring identities cannot be falsified is crucial. Non-repudiation and preventing impersonation attacks are key to securing online transactions, yet traditional authentication methods often fall short.
OpenLearning will incorporate VO’s technology to issue secure, independently verifiable digital credentials to learners upon course completion.
Some thoughts after visiting Identiverse 2025.
The gold standard of identification and authentication is in the physical world.
Passwords are dying, and not a moment too soon. Over 20 years ago, Bill Gates famously announced that passwords “cannot ‘meet the challenge’ of keeping critical information secure”. They’re a liability—phishable, sharable, forgettable and an easy target for attackers. Breached credentials is the leading attack mode resulting in identity theft. Recently, there has been focus on the power of FIDO Passkeys and adoption of this solution to replace the password, but is that the end of the story?