Blog

The latest news, product updates, and thoughts on identity and access management, and API security insights from the Curity team.

Now That MCP Is Stateless, Authorization Matters More Than Ever

Now That MCP Is Stateless, Authorization Matters More Than Ever

MCP is now stateless. Learn why OAuth access tokens replace MCP sessions and how MCP authorization secures AI agents from gateway to API.

Page 1 of 6
Curity Identity Server 11.5: passkeys across domains, custom hashing, refreshed Admin UI

Curity Identity Server 11.5: passkeys across domains, custom hashing, refreshed Admin UI

Curity
Curity
Who Controls Trust? Rethinking Digital Sovereignty

Who Controls Trust? Rethinking Digital Sovereignty

Jacob Ideskog
Jacob Ideskog
The AI Agent Question SR 26-2 Leaves Your Bank to Answer

The AI Agent Question SR 26-2 Leaves Your Bank to Answer

Carlos Mena
Carlos Mena
Reclaiming the Control Plane: Why Business-Critical IAM Isn't a SaaS Job

Reclaiming the Control Plane: Why Business-Critical IAM Isn't a SaaS Job

Jacob Ideskog
Jacob Ideskog
MCP Authorization Isn’t Enough For AI Agents

MCP Authorization Isn’t Enough For AI Agents

Michal Trojanowski
Michal Trojanowski
5 Business Benefits of an Intelligent Access Layer

5 Business Benefits of an Intelligent Access Layer

Sutton Maxwell
Sutton Maxwell
Curity Identity Server 11.4: FIPS 140-3, DPoP binding and Database Scopes in the Admin UI

Curity Identity Server 11.4: FIPS 140-3, DPoP binding and Database Scopes in the Admin UI

Curity
Curity
5 Agentic AI Security Incidents & Vulnerabilities

5 Agentic AI Security Incidents & Vulnerabilities

Bill Doerrfeld
Bill Doerrfeld
What Is Zero Standing Privilege?

What Is Zero Standing Privilege?

Bill Doerrfeld
Bill Doerrfeld
AI Agent Access Control: What Anthropic Gets Right - and Where Enterprise Security Needs More

AI Agent Access Control: What Anthropic Gets Right - and Where Enterprise Security Needs More

Sutton Maxwell
Sutton Maxwell
EUDI Wallets: Enterprise Takeaways from DICE 2026

EUDI Wallets: Enterprise Takeaways from DICE 2026

Gary Archer
Gary Archer
Curity Identity Server 11.3 is Here

Curity Identity Server 11.3 is Here

Curity
Curity
Wallets Are Becoming the Distribution Layer for Digital Trust

Wallets Are Becoming the Distribution Layer for Digital Trust

Judith Kahrer
Judith Kahrer
Secure Backend Agents with Access Intelligence

Secure Backend Agents with Access Intelligence

Gary Archer
Gary Archer
The Vercel Breach: A Failure of Identity, Not Code

The Vercel Breach: A Failure of Identity, Not Code

Judith Kahrer
Judith Kahrer
Token Intelligence: Why IAM Needs a New Mental Model

Token Intelligence: Why IAM Needs a New Mental Model

Judith Kahrer
Judith Kahrer
Beyond Login: Building Secure Authorization with the Curity Identity Server

Beyond Login: Building Secure Authorization with the Curity Identity Server

Jonas Iggbom
Jonas Iggbom
API Security: Common Misunderstandings for Business Teams

API Security: Common Misunderstandings for Business Teams

Stefan Nilsson
Stefan Nilsson
API Security Trends 2026

API Security Trends 2026

Judith Kahrer
Judith Kahrer
Identity and Access Management for AI Agents

Identity and Access Management for AI Agents

Judith Kahrer
Judith Kahrer
Guarding Against AI-Agent Attacks: A Cautionary Tale from a Recent Incident

Guarding Against AI-Agent Attacks: A Cautionary Tale from a Recent Incident

Jacob Ideskog
Jacob Ideskog
Takeaways From the 2025 Nordic APIs Platform Summit

Takeaways From the 2025 Nordic APIs Platform Summit

Michal Trojanowski
Michal Trojanowski
From Screws to Software: The Power of Standards

From Screws to Software: The Power of Standards

Michal Trojanowski
Michal Trojanowski
Page 1 of 6