• News In Brief
  • Influence Excellence Awards 2026
  • AI
  • Education
  • Pro AV
  • Case Study
  • Interview
No Result
View All Result
SUBSCRIBE
Smart Solutions World
  • News In Brief
  • Influence Excellence Awards 2026
  • AI
  • Education
  • Pro AV
  • Case Study
  • Interview
No Result
View All Result
No Result
View All Result
Home AI

Tenable Research Highlights Rising AI Exposure Risks Due to Supply Chain and Identity Control Gaps

SmartSolutionUser1 by SmartSolutionUser1
March 7, 2026
in AI
0
Tenable Research Highlights Rising AI Exposure Risks Due to Supply Chain and Identity Control Gaps
76
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

Tenable®, the exposure management company, released its Cloud and AI Security Risk Report 2026. The research reveals organisations face a zero‑margin AI exposure gap as they inherit cyber risks faster than they can address them. Engineering velocity, driven by AI adoption, third-party code and cloud scale, has outpaced the human-led ability to assess, prioritise and remediate risks before threat actors exploit them.

You might also like

Taboola Launches New Advertising Platform for AI Answer Engines, Conversational AI, Chatbots, and Virtual Assistants Powered by DeeperDive

LTM Launches BlueVerse on Databricks to Accelerate AI Monetization

OVH Labs unveils OVHai Workspace in preview – an open, collaborative agentic AI platform

The AI Exposure Gap is a largely invisible form of exposure that emerges across applications, infrastructure, identities, agents and data, and that most security teams are not equipped to manage. Tenable’s analysis of cloud environments identifies severe risks across four key security areas: AI security posture, supply chain attack vectors, least privilege implementation and cloud workload exposure, all of which demand immediate attention. The report includes actionable guidance for security and business leaders to reduce risk across cloud and AI environments.

Key findings from the Cloud and AI Security Risk Report 2026 include:

  • 70% have integrated at least one AI or Model Context Protocol (MCP) third-party package, embedding AI deep into applications and infrastructure, often without central security oversight.
  • 86% host third-party code packages with critical-severity vulnerabilities, making the software supply chain a primary and persistent source of cloud exposure. Furthermore, nearly 1 in 8 (13%) have deployed packages with a known history of compromise, such as the s1ngularity or Shai-Hulud worms.
  • 18% of organisations have granted AI services administrative permissions that are rarely audited, creating a “pre-packaged” catalog of privileges for attackers to claim.
  • Non‑human identities such as AI agents and service accounts now represent higher risk (52%) than human users (37%), forming “toxic combinations” of permissions and access that fragmented tools fail to connect.
  • 65% possess “ghost” secrets, unused or unrotated cloud credentials, with 17% of these tied specifically to critical administrative privileges.
  • 49% of identities with critical-severity excessive permissions are dormant.
Ms. Liat Hayun, Senior Vice President of Product Management and Research at Tenable.
Ms. Liat Hayun, Senior Vice President of Product Management and Research at Tenable.

“AI systems embedded in infrastructure pose a critical risk that CISOs and defenders must address, in addition to anticipating emerging threats from both AI and cloud technologies. Lack of visibility and governance means teams are at the mercy of new exposures, including over-privileged identities in the cloud,” said Ms. Liat Hayun, Senior Vice President of Product Management and Research at Tenable. “By focusing on the unified exposure path, organisations can stop managing ‘security debt’ and start managing actual business risk.”

To manage emerging risks, organisations must secure the AI integration process through comprehensive visibility and identity-centric controls. This includes enforcing least privilege for AI roles, neutralising “ghost” identity risk and eliminating static secret exposure. Third-party code and external accounts are now extensions of organisations’ infrastructure; steps to reduce extended supply chain exposure include unifying visibility across code packages, virtual machines, identity access and cloud environments.

The 2026 Cloud & AI Security Risk Report presents findings from the Tenable Research team, analysing anonymised telemetry from diverse public cloud and enterprise environments collected from April to October 2025 (AI findings extended through December 2025).

Exposure Management is the practice of identifying, evaluating, and prioritising the risks posed by all entry points an attacker could exploit. This includes not just software vulnerabilities (CVEs), but also misconfigurations, excessive user privileges (identity risk), cloud security gaps, and the “shadow” assets created by AI and third-party supply chains.

If you have an interesting Article / Report/case study to share, please get in touch with us at editors@roymediative.com  roy@roymediative.com, 9811346846/9625243429.

Tags: Highlights Rising AI Exposure Risks Duesmart solutions worldSupply Chain and Identity Control GapsTenable Research
Share30Tweet19
SmartSolutionUser1

SmartSolutionUser1

Recommended For You

Taboola Launches New Advertising Platform for AI Answer Engines, Conversational AI, Chatbots, and Virtual Assistants Powered by DeeperDive

by SmartSolutionUser1
June 18, 2026
0
Taboola Launches New Advertising Platform for AI Answer Engines, Conversational AI, Chatbots, and Virtual Assistants Powered by DeeperDive

Taboola, a global leader in delivering performance at scale for advertisers, announced it is opening up the monetization engine behind DeeperDive, one of the fastest-growing generative AI answer...

Read moreDetails

LTM Launches BlueVerse on Databricks to Accelerate AI Monetization

by SmartSolutionUser1
June 18, 2026
0
LTM Launches BlueVerse on Databricks to Accelerate AI Monetization

LTM, the Business Creativity partner to the world’s largest enterprises, announced the launch of BlueVerse for Databricks, a new offering that brings together LTM’s AI ecosystem, BlueVerse™, with...

Read moreDetails

OVH Labs unveils OVHai Workspace in preview – an open, collaborative agentic AI platform

by SmartSolutionUser1
June 18, 2026
0
OVH Labs unveils OVHai Workspace in preview – an open, collaborative agentic AI platform

OVHcloud’s 1.7 million customers use more than 4 million email accounts every day and make over 100 million phone calls each month. OVH Labs, the innovation lab of...

Read moreDetails

Qualcomm Unveils Snapdragon Reality Elite for Next-Gen AI-Powered XR

by SmartSolutionUser1
June 17, 2026
0
Qualcomm Unveils Snapdragon Reality Elite for Next-Gen AI-Powered XR

Qualcomm Technologies Inc. announced at Augmented World Expo the Snapdragon® Reality Elite Platform, designed to power immersive spatial computing experiences with stunning visual fidelity and deeply integrated on-device...

Read moreDetails

LG Electronics Showcases Its Vision for Physical AI and Smart Robotics

by SmartSolutionUser1
June 17, 2026
0
LG Electronics Showcases Its Vision for Physical AI and Smart Robotics

LG Electronics (LG) is bringing Physical AI from the factory floor into the home with its LG CLOiD™ robot (first unveiled at CES 2026), as the company sets...

Read moreDetails
Next Post
Kris@Work raises $3M seed funding led by Infoedge Ventures to build the new AI-native Go-To-Market (GTM) execution platform

Kris@Work raises $3M seed funding led by Infoedge Ventures to build the new AI-native Go-To-Market (GTM) execution platform

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Browse by Category

Browse by Category

Smart Solutions World

We bring you the best Premium news, magazine, personal blog, etc. Check our landing page for details.

  • News In Brief
  • Influence Excellence Awards 2026
  • AI
  • Education
  • Pro AV
  • Case Study
  • Interview

BROWSE BY TAG

Acquisition Agentic AI Agora AI Akamai AMD Cloudflare CloudKeeper Coforge CrowdStrike Cybersecurity Databricks Fortinet Gartner GenAI Google Cloud HCLTech Honeywell IBM Infosys Kaspersky Keysight Kramer LTIMindtree Microsoft New Relic Nvidia OpenAI Palo Alto Networks PPDS Qlik Qualcomm Seqrite SiMa.ai smart solutions world smartsolutionsworld smart solutions world latest news Software Synology Tata Communications Tech Mahindra Technology Tenable UiPath Vertiv

© 2024 NCN - Premium news & magazine by NCN.

No Result
View All Result
  • News In Brief
  • Influence Excellence Awards 2026
  • AI
  • Education
  • Pro AV
  • Case Study
  • Interview

© 2024 NCN - Premium news & magazine by NCN.

Not enough quota to unlock this post
Unlock left : 0
Are you sure want to cancel subscription?