Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Active Roles version 8.5 now available: 4 new features

Modernize and protect your Active Directory (AD) using Active Roles by One Identity Active Roles version 8.5 provides several highly requested features to fortify and enrich the integration capabilities of Active Roles. These new features bring unmatched flexibility and security to Active Directory environments, supporting customers where they are today and where they want to go in the future.

From SAP to Identity Manager by One Identity - use FASTlane

The end of an era is upon us, as SAP has announced the end of life for their identity governance and administration (IGA) platform — a platform that supported several SAP products. Without this pivotal identity management tool, where are customers to go to protect the digital identities of their organization? And how can they know that any new platform will be trustworthy? SAP hasn’t left their customers in a lurch.

The PAM problem no vault can solve

You can stand up a vault in two weeks. The team at One Identity says that’s about how long it takes to get the basics running, from discovery scans to approval workflows. Two to four weeks of work, and a respectable PAM foundation is in place. That’s not the hard part. The hard part starts the next morning, when actual users start working around the system.

Safeguard: Using the double-edged sword of AI for good

The concept of AI might trigger both excitement and stress for those who spend all their time either using it for efficiency or fighting it as it tries to breach their systems. A massive force of non-human identities that have been summoned to expose the tiniest cracks in an organization’s security is enough to overwhelm any IT team. However savvy, modern security professionals have begun to raise their own versions of AI armies – designed to stop those sent by malicious actors.

One Identity on Mythos, Fable and what they mean for your identity controls

Mythos changes the speed of attack. Identity controls decide what happens after. The shift underway For the first time in 19 years, vulnerability exploitation now leads the Verizon Data Breach Investigations Report as the breach entry point. It accounts for 31 percent of incidents, ahead of stolen credentials. Threat actors are using AI to exploit known vulnerabilities in hours rather than months. The Verizon data predates the latest frontier AI advancements.

When humans are a minority, IAM requires a rethink

In a typical enterprise, non-human identities (NHIs) are thought to outnumber human users by at least 50:1. NHIs are various and include: It is estimated that the NHI: human ratio may have leapt to 144:1 as more AI agents were deployed over the last year. CISOs are already alive to the risks posed by orphaned accounts on their systems. They know that automated rotation is required to revoke privileges as soon as NHIs complete tasks.

Why privileged access is the first place attackers go - and why your PAM can't live in a silo anymore

One compromised privileged account can undo millions in security investments. Attackers know this. In fact, it's the reason privileged access has become the most sought-after prize in the modern enterprise. Gone are the days when getting past the firewall was enough to give an attacker free rein. Widespread adoption of Zero Trust principles, stronger default configurations and better security hygiene have made that approach obsolete. So, adversaries have adapted.

One Identity named a leader in business application risk management

In the ever-evolving cybersecurity landscape, managing access and mitigating risk across complex enterprise environments has never been more critical. The latest KuppingerCole Leadership Compass for Business Application Risk Management has officially recognized One Identity as an Overall Leader. This distinction underscores the One Identity commitment to providing robust, scalable solutions for today’s diverse and difficult IT security infrastructures.

Why Active Directory vulnerabilities demand more than patching

A newly disclosed privilege-escalation flaw in Microsoft Active Directory Domain Services (AD DS) is a timely reminder that identity infrastructure continues to be one of the most consequential attack surfaces in any enterprise. CVE-2026-25177, rated HIGH with a CVSS score of 8.8, allows an authenticated domain user to escalate their privileges over the network without any elevated starting point or user interaction.

Why you need Active Roles, even if you have IGA

Here are three scenarios I come across frequently with customers of all sizes, in all industries, when discussing Active Roles by One Identity: These situations come from customers on all points of the "identity security maturity" spectrum. Those who have nothing in place or some things in place or an entire stack of fully implemented solutions in every category.