India has asked Meta Platforms to hold off on rolling out WhatsApp's new username feature, as officials worry it could fuel online fraud, phishing, scams and impersonation. WhatsApp this week began letting users reserve unique usernames, with plans for the feature to become operational later this year, aiming to eventually allow its 3 billion users to communicate without exchanging phone numbers. India's tech ministry reportedly sent Meta a notice directing the company to delay the rollout until further consultation, saying usernames may increase impersonation of individuals and state agencies. The regulatory pushback matters because India is WhatsApp's largest market, with more than 600 million users, making New Delhi a key battleground for Meta's global product strategy. Meta said WhatsApp has built several layers of protection into the username feature, including limits on how many new people an account can contact, blocks on repeated username-guessing attempts and systems to detect impersonation or abuse patterns.
Zscaler Teams With IBM and Red Hat to Shield Private Apps From AI Threats
Zscaler announced a collaboration with IBM and Red Hat to protect private applications during the window between vulnerability disclosure and patch deployment. The collaboration combines Zscaler Autonomous Application Shield, delivered through the Zscaler Zero Trust Exchange security platform, with Lightwell from IBM and Red Hat to provide adaptive, application-specific protection alongside validated software remediation in a single coordinated response. Zscaler cited Mandiant's M-Trends 2026 report, which found the mean time to exploit a vulnerability has fallen below zero, meaning vulnerabilities are increasingly exploited before a public patch exists. Under the arrangement, Zscaler App Connectors continuously assess each private application's exposure points and vulnerabilities, adaptive protections are applied inline in real time when a new vulnerability emerges, and Lightwell then provides validated remediations for affected open source software. Joby Menon, Senior Vice President of Product Management at Zscaler, said the collaboration brings together inline, application-specific protection and validated remediation to help customers reduce risk during that gap, while Gunnar Hellekson, vice president and general manager of Lightwell at Red Hat, said AI is shrinking the exploitation window from months or weeks to hours and minutes. Autonomous Application Shield is currently available through an Early Access Program, and Zscaler said availability, capabilities, and timing of the collaboration are subject to change.
Cybersecurity & Digital Trust › Network Security & SASE ▲Technology
Cybersecurity & Digital Trust › Cloud & Workload Security ▲Technology
Cybersecurity & Digital Trust › Endpoint & Network Security ▲Technology
Cybersecurity & Digital Trust › Identity & Access Management Technology
0ZC.XETRA · Technology · Positive Zscaler's Autonomous Application Shield collaboration with IBM and Red Hat protects private apps from AI-era threats.
ZS · Technology · Positive Zscaler launches its Autonomous Application Shield collaboration with IBM and Red Hat to protect private apps from AI-era threats.
IBM · Technology · Positive IBM's Lightwell is combined with Zscaler's shield to provide validated remediation for vulnerable private apps.
Red Hat, Inc. · Technology · Positive Red Hat's Lightwell provides validated open-source remediation in the Zscaler-IBM collaboration.
Denmark uncovers major data breach affecting 8.8 million people in CPR system
Denmark is facing a major personal data breach after unauthorised individuals accessed the records of approximately 8.8 million people in the country's central civil registration database, covering names, addresses and national identity numbers. The Danish government said on Monday that the perpetrator, who has not yet been identified, misused the legitimate system access of a private Danish company to look up information in the Central Person Register, or CPR. The company's access to the system has now been suspended and police are investigating the incident. Authorities said it is too early to conclude who was behind it. Christina Egelund, Denmark's Minister for Digital Affairs, described the incident as extremely serious, ordered a comprehensive review of the CPR's security, and urged the public to be wary of suspicious phone calls or emails that could use the leaked data for fraud. The agency that manages the system first detected unusual activity on 2 October, before finding that unauthorised lookups had taken place during September. People registered for name and address protection in the system were not affected by the incident.
Trulioo Partners With Fiserv to Streamline Global Client Onboarding
Trulioo announced a collaboration with Fiserv to bring its person and business verification capabilities to Fiserv clients across global markets. The partnership is aimed at helping Fiserv streamline onboarding and underwriting by automating identity and business verification checks, reducing manual work and supporting faster, more consistent decisions. Trulioo's person verification combines identity data, document verification and fraud signals within configurable workflows, while its business verification uses global and local data sources to confirm business information and identify ownership and control structures. Trulioo CEO Vicky Bindra said global growth should not require businesses to rebuild their verification processes market by market, and Fiserv Global Chief Product Officer for Merchant Solutions Sanjay Saraf said the collaboration gives clients a more consistent approach across markets while adapting to local requirements. Trulioo says its platform covers 195 countries and can verify more than 14,000 ID documents and 700 million business entities while checking against more than 6,000 watchlists.
Cybersecurity & Digital Trust › Identity & Access Management ▲Technology
Trulioo · Demand · Positive Trulioo's verification platform is being adopted by Fiserv to serve its global clients, expanding Trulioo's customer reach.
FISV · Demand · Positive Fiserv clients gain Trulioo's automated identity and business verification to streamline onboarding and underwriting, improving Fiserv's merchant solutions offering.
Socure Adds Mobile Driver's License Verification via Google and Samsung Wallets
Socure has launched U.S. mobile driver's license verification within DocV, its identity verification product, allowing organizations to cryptographically verify mDLs against the issuing state authority when presented from Google Wallet and Samsung Wallet during remote onboarding and step-up flows. The launch follows a September 8, 2026 joint FAQ from FinCEN, the Federal Reserve Board, the FDIC, the OCC and the NCUA confirming that an unexpired, government-issued verifiable digital credential can qualify as documentary evidence under the Customer Identification Program Rule, provided the institution has the technology to extract the required information and still forms a reasonable belief of the customer's true identity. ABI Research projects the U.S. mDL install base will grow from 21.7 million in 2025 to 143 million by 2030, with 40 states issuing digital licenses; today 21 states issue mDLs conforming to the ISO/IEC 18013-5 standard, more than 8 million credentials are active, and roughly 45% of Americans live where one is available. Socure said mDL verification complements its physical document capture rather than replacing it, and that its DocV now supports remote presentation under Part 7 of the ISO standard from Google Wallet and Samsung Wallet, addressing the higher-risk remote verifications that have been supported unevenly across wallets. The announcement comes alongside an extension of Socure's partnership with Xcelerate Solutions to support public sector use cases under the Login.gov Next Generation Identity Proofing Blanket Purchase Agreement, operating within Socure's FedRAMP Moderate environment.
Socure · Demand · Positive Socure extended its partnership with Xcelerate Solutions for public sector use under the Login.gov Next Generation Identity Proofing BPA.
Xcelerate Solutions · Demand · Positive Xcelerate Solutions extended its partnership with Socure to support public sector identity proofing use cases under the Login.gov BPA.
005930.KO · Technology · Positive Socure's DocV now supports remote mDL presentation from Samsung Wallet, expanding the utility of Samsung's digital wallet credential.
GOOG · Technology · Positive Socure's DocV now supports remote mDL presentation from Google Wallet, expanding the utility of Google's digital wallet credential.
Okta Shares Rise as Morgan Stanley Lifts Price Target to $245
Morgan Stanley raised its price target on Okta to $245 from $200 while keeping an Overweight rating, sending the cybersecurity company's shares up 1% in morning trading Tuesday. Analyst Meta Marshall cited potential growth tied to the expanding use of artificial intelligence agents, following Okta's investor event earlier this month where investors assessed the company's prospects in agentic identity. Marshall said investor interest has been broadening beyond larger cybersecurity companies such as Palo Alto Networks and CrowdStrike, with Okta and Fortinet increasingly part of those discussions, while SentinelOne and SailPoint are considered in some cases. She expects the benefits from agentic identity to develop gradually for Okta, and pointed to work on technical debt as a factor that could support progress this year. Marshall maintained that the company has additional room to expand as AI-agent adoption develops.
Aembit Adds Okta Cross App Access Support, Alphabet Executive Helen Riley to Board
Aembit announced support for Okta's Cross App Access protocol to manage enterprise AI agent access, and revealed that Helen Riley, an executive at Alphabet's X, is joining its board of directors. The XAA integration is intended to streamline authorization and oversight for automated agent workflows used by corporate customers. The XAA integration and Helen Riley's board role are only part of the broader story around Okta's identity platform, and Simply Wall St flagged one warning sign for Okta. Okta positions itself as an identity partner for enterprises that want a single control point governing how humans and software agents reach critical systems, so moves around Cross App Access plug directly into how the firm aims to sit between corporate users, AI tools, and cloud infrastructure. The article points toward a $122 fair value for Okta.
Cybersecurity & Digital Trust › AI Security & Agent Guardrails ▲Technology
Artificial Intelligence › Agentic AI & Autonomous Workflows ▲Technology
Cybersecurity & Digital Trust › Workforce & Customer IAM (SSO/MFA) ▲Technology
Aembit · Technology · Positive Aembit announced support for Okta's Cross App Access protocol to manage enterprise AI agent access, a product/technology development.
OKTA · · Neutral Aembit adds support for Okta's Cross App Access protocol, but the article only notes a Simply Wall St warning sign and a $122 fair value with no concrete Okta development.