VentureBeat exposes agent credential breaches
- VentureBeat reported six attacks that broke Claude Code, Copilot, Codex and Vertex AI by stealing runtime credentials during development and CI workflows. - Each successful exploit targeted runtime credentials that conventional IAM tooling did not track, exposing token misuse across developer tooling and automation. - This highlights an identity architecture gap: inventory non‑human identities, shorten token lifetimes and monitor tokens at runtime. (venturebeat.com)