Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

How to Monitor and Manage User Sessions in Drupal

Most Drupal security strategies focus on protecting user accounts before login. Organizations invest in strong passwords, multi-factor authentication (MFA), and Single Sign-On (SSO) to prevent unauthorized access. While these controls are important, security risks do not disappear once a user successfully authenticates. Users may remain logged in for extended periods, share credentials with others, access accounts from multiple devices simultaneously, or leave active sessions unattended.

How visual embeddings leak identity and how to fix it

CVPR 2026 paper overview with research scientist Daniel George, a coauthor of “From Measurement to Mitigation: Quantifying and Reducing Identity Leakage in Image Representation Encoders with Linear Subspace Removal." He discusses some of Persona’s recent research efforts, embeddings, and the paper’s focus. The paper was accepted to the Conference on Computer Vision and Pattern Recognition (CVPR) 2026, a premier conference in computer vision and machine learning.

What is Multi-factor Authentication? MFA Explained

With the growing vulnerability of password-only security systems, your applications, devices, and operating systems would need an authentication system that creates foolproof security. Moreover, as vulnerabilities in cyber ecosystems evolved and password breaches became increasingly common, organizations needed stronger authentication methods to protect sensitive data and user accounts.

Passkeys Explained: What Is a Passkey and How Do Passkeys Work?

Data breaches hit headlines weekly, and phishing scams evolve faster than we can patch them. Amongst this, passwords feel like relics from the dial-up era. Enter passkeys, a modern authentication solution, and a game-changing shift in authentication that's already being made available by giants like Amazon, Google, and Sony Interactive Entertainment. Passkeys promise phishing-resistant, frictionless logins without the endless "password123?" frustration.

What is Biometric Authentication, and How Does it Work?

Over 93% of organizations are reportedly experiencing two or more identity-related attacks a year due to weak passwords, and at this critical level, organizations are looking out for an additional layer of security with biometric authentication to verify their users. Multi-factor authentication plays an integral role in verifying user identities.

How link analysis unravels identity mule rings

Identity verification helps prevent fraud by requiring would-be fraudsters to verify that they are real people and who they say they are. But what about a user who opens an account with their legitimate ID and selfie and then hands the keys to a bad actor? That’s exactly what happens with identity muling, and this type of second-party fraud can be difficult to detect.

miniOrange at Infosecurity Europe 2026 - On-Prem AI Agents for Healthcare, Defense & Finance

In this session at Infosecurity Europe 2026, Our Founder & CEO Mr. Anirban Mukherji discussed miniOrange’s approach to secure, on-prem AI agents for healthcare, defense, and finance. He covers the global LLM landscape, risks of using foreign AI, benefits and challenges of on-prem LLMs, AI governance (including Shadow AI), AI firewalls and access policy enforcement, AI-enabled security testing, and practical deployments across sectors.

ITDR automation best practices for security teams

ITDR automation best practices close the gap between when identity detection fires and when containment executes. Most programs detect identity attacks reliably but route the response to a human queue, turning active defense into a forensics workflow. Pre-built playbooks tied to high-confidence detection rules, plus protocol-layer blocking, are what convert ITDR from alert generation into attack containment. Identity-based attacks progress in minutes.

How miniOrange User Sync/SCIM Automates User Provisioning for Atlassian

Managing users in Atlassian manually, especially with large numbers of users, is time-consuming and error-prone. It’s inconvenient, but more importantly, it introduces major security risks in case an ex-employee still has access. Also, there’s no point in paying for extra licenses. miniOrange User Provisioning for Atlassian addresses this. It synchronizes users, groups, and directories directly from their identity providers into Jira and related Atlassian applications.