Authorization Gets Its Standard
Authentication became a shared standard a decade ago; authorization stayed hard-coded in every application. Externalized, policy-driven access control and the OpenID AuthZEN standard are closing the gap.
The Post-Authentication Attack Surface
MFA and passkeys secured the login. Attackers moved to token theft and session hijacking. Why identity security’s next phase is detection, not prevention.
The Machine Identity Problem
Non-human identities outnumber human identities 45:1 in most enterprises. How organizations are addressing machine identity governance.
Passkey Adoption in the Enterprise
Enterprise passkey deployment grew from 11% to 34% in one year. What is driving adoption and what remains unsolved.
OAuth 2.0 Security Best Practice
BCP 212 updates security best practices for OAuth 2.0. Breaking down what changed and what implementers need to know.
Zero Trust Identity Architecture
Identity as the control plane for zero trust. Moving beyond network perimeters to identity-centric security.
Auth0 World 2022 Recap
Keynote highlights, top sessions, and key takeaways from Auth0 World 2022.