Blog
The Identity Exposure Journal
Research, practical guidance, and field insights on preemptive identity security, attack paths, and continuous exposure reduction.
12 minutes
Our Journey to Counting A Billion Attack Paths In 7 Minutes
How we rebuilt Saporo's chokepoint engine to count nearly a billion attack paths - exactly, in about seven minutes.

10 minutes
Compliance Is a Starting Point, Not a Measure of Exploitability
Learn why compliance scores alone cannot measure cyber risk and how attack-path analysis helps prioritize identity threats to critical assets.

11 minutes
From Observation to Action: The CTEM Cycle
Why preemptive identity exposure management is replacing legacy posture tools — framed through industry frameworks.

4 minutes
The Power of the Security Graph For Identity Resilience
Think back to your last identity audit. You probably had lists. Maybe a spreadsheet. It felt thorough. But did it show how those identities could actually be used in an attack?

5 minutes
From Visibility to Resilience Using ISPM
Let’s be honest. Visibility sounds great, but it is not enough. Seeing who has access does not mean you understand what that access actually enables. That is the gap attackers exploit every day.

4 minutes
Identity Is The New Attack Surface, But Most Graphs Are Blind
Every user, machine, and service account is a potential entry point. The problem is that most security tools are blind to the complex web of relationships that define real risk.