Genealogy of Cybersecurity - Startup Podcast

Ep 12. Astrix Security on Threat of 3rd Party API Connections and Non-Human Identities

August 28, 2023 Paul Shomo / Astrix Security Founder Idan Gour Season 1 Episode 12
Genealogy of Cybersecurity - Startup Podcast
Ep 12. Astrix Security on Threat of 3rd Party API Connections and Non-Human Identities
Show Notes

Innovation Sandbox finalist and Astrix Security Founder Idan Gour discuss the rising attack surface created by API-to-API connections and non-human identities. How no-code orchestration tools, low code tools, and generative AI, like ChatGPT, are causing non-technical business users to build integration apps that access and sometimes share sensitive data.

Idan discusses mapping this web of API-to-API connections, which traffic sensitive data from SaaS apps like Google Workspace, 365, Calendly, and SalesForce. The Circus.AI breach is explored. Idan and Paul also discuss the rising problem of non-human identities which access APIs and data, with Astrix citing their study which found 45X more non-humans than human employees.

You can find Astrix online at Astrix.security, on LinkedIn.com/company/astrix-security, or Twitter at @AstrixSecurity

Send feedback to host Paul Shomo on Twitter @ShomoBits or connect on LinkedIn.com/in/paulshomo.