AI and Non-Human Identity Sprawl Expands IAM Attack Surface
Reporting and commentary warn that AI-driven non-human identities (NHIs) are rapidly increasing the number and turnover of credentials inside enterprise IAM programs, amplifying long-standing weaknesses such as credential sprawl, unclear ownership, and inconsistent lifecycle controls. The Cloud Security Alliance’s findings highlight that many organizations treat AI identities like traditional service accounts or API keys, causing them to inherit existing governance gaps while adding new scale and speed pressures as identities are created programmatically, distributed across environments, and used continuously.
CSO Online describes the operational drivers behind the surge—microservices, Kubernetes auto-scaling, CI/CD pipelines (e.g., GitHub Actions), and infrastructure-as-code (e.g., Terraform) generating large volumes of short-lived tokens and service principals—then argues that agentic AI further accelerates risk because these identities may be authorized to execute commands, move data, and change configurations autonomously. The net risk emphasized is that over-privileged AI agents and other NHIs can create breach conditions that may not resemble traditional intrusion, instead appearing as “normal” automated activity due to excessive permissions and weak visibility into post-authentication behavior.

Get ahead of threats like this
Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
How this story unfolded
6 events from the most recent confirmed update back to the earliest known activity.
Palo Alto report says machine identities outnumber humans 109 to 1
Palo Alto Networks’ 2026 Identity Security Landscape report said organizations now manage an average of 109 machine identities for every human identity and projected AI agent growth of 85% over the next year. The report also said weak lifecycle and privilege controls are leaving enterprises exposed, while Unit 42 found fragmented identity investigations across more than 750 incidents in 2025 slowed response efforts.
Anthropic withholds Mythos model after it finds thousands of vulnerabilities
Anthropic reportedly decided not to publicly release its Mythos model after the system discovered thousands of previously unknown vulnerabilities in major operating systems and web browsers. The decision was cited as an example of the dual-use security risks posed by advanced AI agents.
Report says rapid AI agent adoption is creating an identity security crisis
Reporting on the CSA findings, outlets said organizations are deploying autonomous AI agents without sufficient governance, creating many agentic identities with access to sensitive data and little oversight. The coverage emphasized a widening preparedness gap around AI identity threats and the risks posed by these poorly governed non-human identities.
Cloud Security Alliance report highlights AI identity governance weaknesses
The Cloud Security Alliance published findings in "The State of Non-Human Identity and AI Security" showing that organizations often manage AI identities like other non-human identities, causing them to inherit weaknesses such as credential sprawl, unclear ownership, and inconsistent lifecycle controls. The report said AI systems continuously create and use identities across environments, outpacing legacy IAM tools and leaving security teams with poor visibility and slow revocation processes.
One Identity predicts a major breach tied to an over-privileged AI agent by 2026
CSO Online cited a One Identity prediction that by 2026 a major breach would be traced to an over-privileged AI agent. The warning framed agentic AI as a growing identity risk because its actions may appear to be normal authorized system behavior.
Obsidian reports breaches tied to compromised machine identities
Obsidian Security reported in February 2026 that many organizations had already suffered breaches linked to compromised machine identities such as service accounts, API keys, certificates, bots, and AI agents. The research also found that only a small minority had fully automated lifecycle management for these identities, underscoring operational security gaps.
Related entities
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Sources
12 references tracked. Mallory keeps watching after this page renders.
How to Govern AI Agents Using Non-Human Identity Principles | program-guide | SC Media
scworld.com
Open sourceNon-Human Identities Are Outgrowing Your Governance Model | analysis | SC Media
scworld.com
Open sourceThe Invisible Workforce: Why Your Household Apps Now Have Their Own Digital IDs - IT Security Guru
itsecurityguru.org
Open sourceHow Agentic AI made org charts obsolete | perspective | SC Media
scworld.com
Open sourceReport exposes gap in AI identity threat preparedness | SC Media
scworld.com
Open sourceAI is flooding IAM systems with new identities - Help Net Security
helpnetsecurity.com
Open sourceWhy non-human identities are your biggest security blind spot in 2026 | CSO Online
csoonline.com
Open sourceNon-human identities: Agentic AI's new frontier of cybersecurity risk | World Economic Forum
weforum.org
Open sourceSee the full picture, correlated to your attack surface.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.


