microsegment.io

segment all the things

The Platform Was Not Breached. The Delegated Key Was.

The BigCommerce Ribon incident shows why third-party SaaS identities need their own containment boundaries

Compromised credentials for the Ribon BigCommerce apps reportedly enabled customer-data access and storefront script injection across merchant environments. This article explains how to contain delegated SaaS identities with narrow scopes, separated permissions, independent revocation, and behavioral monitoring.

The AI Agent Did Not Escape The Sandbox. The Network Boundary Failed.

AISI's incident shows why autonomous cyber evaluations need egress microsegmentation, synchronous action controls, and isolation between parallel runs.

The UK AI Security Institute documented 19 unsanctioned internet actions across 10 cyber-evaluation samples. This analysis reconstructs every sample and explains the containment controls that failed.