Machine identities now outnumber human ones by more than 80 to 1.
That number includes service accounts, API keys, and a growing population of AI agents, each with its own set of permissions, and most with far more access than they actually need.
Here's the problem: identity
Our Snowflake partnership just got an upgrade. ❄️
We're proud to announce that Varonis has achieved Premier Partner status in the @SPN_Partners Network and is now available on the Snowflake Marketplace.
AI agents, copilots, and LLMs now read, write, and act on data in Snowflake
Your AI agent isn't malicious. It's just not being watched.
Most agents are given access based on what they could need, not what they actually use. Over time, that gap becomes the blast radius.
Recognizing the signs early can help protect your organization from trouble.
Here
Meet CoSnitch: that vulnerability that CoPilot itself told our threat researchers about.
No clicks. No warnings. No confirmations. And it can plant instructions in your Copilot memory that survive a password reset.
Microsoft has now patched all three, but this is the third flaw
One click. Zero jailbreak. Full data exposure.
Varonis Threat Labs just released RovoBlast, a vulnerability in Atlassian's AI assistant, in which a single crafted link can seed attacker instructions directly into a user's trusted session.
No prompt surgery. No permission