<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Identity-Attacks on CuraSec</title><link>https://curasec.metacog.co.kr/tags/identity-attacks/</link><description>Recent content in Identity-Attacks on CuraSec</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Thu, 10 Sep 2026 14:58:06 +0000</lastBuildDate><atom:link href="https://curasec.metacog.co.kr/tags/identity-attacks/index.xml" rel="self" type="application/rss+xml"/><item><title>Prophet Security: Identity Targeted in Half of Q2 2026 Confirmed Threats</title><link>https://curasec.metacog.co.kr/insights/2026-09-10-the-top-4-threats-we-found-by-investigating-every-alert-for/</link><pubDate>Thu, 10 Sep 2026 14:58:06 +0000</pubDate><guid>https://curasec.metacog.co.kr/insights/2026-09-10-the-top-4-threats-we-found-by-investigating-every-alert-for/</guid><description>&lt;ul>
&lt;li>&lt;strong>Engineer — Learn:&lt;/strong> Quarter-long attack pattern data highlighting identity as the dominant target provides useful design context — particularly for identity provider hardening and MFA posture — but no specific vulnerability or patch action is indicated.&lt;/li>
&lt;li>&lt;strong>SOC/IR — Plan:&lt;/strong> A structured breakdown of what blocked vs. allowed attacks across May–July 2026 is worth reviewing to audit identity-related detection coverage; use it this quarter to validate that MFA-bypass, credential-stuffing, and OAuth-abuse use cases are covered in your SIEM.&lt;/li>
&lt;li>&lt;strong>Leader — Learn:&lt;/strong> The finding that identity was the attack surface in roughly half of confirmed incidents is useful benchmarking data for risk-register updates and board conversations about identity investment, though the source is a single vendor with no independent corroboration cited.&lt;/li>
&lt;/ul></description></item></channel></rss>