<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Attack Surface Management</title><description>Cybersecurity articles tagged #Attack Surface Management on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>AI Agents Expand Attack Surface: Managing Non-Human Identities</title><link>https://runtimerebel.com/blog/ai-agents-expand-attack-surface-managing-non-human-identities</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-agents-expand-attack-surface-managing-non-human-identities</guid><description>AI agents accelerate non-human identity growth, creating security gaps. Proactive identity governance and visibility are crucial for defense.</description><pubDate>Fri, 10 Jul 2026 14:31:05 GMT</pubDate><category>AI Agents</category><category>Non Human Identities</category><category>Identity Security</category><category>Attack Surface Management</category><category>Netwrix</category><category>Identity Governance</category></item><item><title>MongoBleed: Unauthenticated Credential Theft via Server Memory</title><link>https://runtimerebel.com/blog/mongobleed-unauthenticated-credential-theft-via-server-memory</link><guid isPermaLink="true">https://runtimerebel.com/blog/mongobleed-unauthenticated-credential-theft-via-server-memory</guid><description>Analysis of MongoBleed, a critical vulnerability enabling unauthenticated credential and session token extraction from server memory, highlighting attack surface…</description><pubDate>Wed, 17 Jun 2026 13:27:52 GMT</pubDate><category>MongoBleed</category><category>Attack Surface Management</category><category>Credential Theft</category><category>Session Hijacking</category><category>Unauthenticated Access</category><category>Memory Disclosure</category><category>MongoDB</category></item><item><title>Continuous Security Testing: Closing the 345-Day Exposure Gap</title><link>https://runtimerebel.com/blog/continuous-security-testing-closing-the-345-day-exposure-gap</link><guid isPermaLink="true">https://runtimerebel.com/blog/continuous-security-testing-closing-the-345-day-exposure-gap</guid><description>Analyze why annual penetration tests leave 345 days of risk and how continuous security validation for financial institutions improves resilience.</description><pubDate>Wed, 03 Jun 2026 17:46:40 GMT</pubDate><category>Penetration Testing</category><category>Attack Surface Management</category><category>Offensive Security</category><category>Vulnerability Management</category></item><item><title>Optimizing Exposure Management: Beyond CVSS and Patch Fatigue</title><link>https://runtimerebel.com/blog/optimizing-exposure-management-beyond-cvss-and-patch-fatigue</link><guid isPermaLink="true">https://runtimerebel.com/blog/optimizing-exposure-management-beyond-cvss-and-patch-fatigue</guid><description>A technical analysis of Continuous Threat Exposure Management (CTEM) and why modern security teams must prioritize vulnerabilities based on business risk.</description><pubDate>Wed, 29 Apr 2026 12:40:42 GMT</pubDate><category>Exposure Management</category><category>CTEM</category><category>Vulnerability Prioritization</category><category>Risk Validation</category><category>Attack Surface Management</category></item><item><title>Beyond Code Security: Managing Your Expanding Attack Surface</title><link>https://runtimerebel.com/blog/beyond-code-security-managing-your-expanding-attack-surface</link><guid isPermaLink="true">https://runtimerebel.com/blog/beyond-code-security-managing-your-expanding-attack-surface</guid><description>Organizations often overlook security gaps in shadow IT, SaaS, and AI agents. Learn to manage an expanding attack surface beyond just secure code.</description><pubDate>Fri, 24 Apr 2026 16:29:42 GMT</pubDate><category>Shadow IT</category><category>SaaS Security</category><category>Attack Surface Management</category><category>Cloud Security</category><category>AI Security</category><category>Supply Chain Risk</category></item><item><title>Reducing IAM Attack Surface with Identity Visibility Platforms</title><link>https://runtimerebel.com/blog/reducing-iam-attack-surface-with-identity-visibility-platforms</link><guid isPermaLink="true">https://runtimerebel.com/blog/reducing-iam-attack-surface-with-identity-visibility-platforms</guid><description>Learn how Identity Visibility and Intelligence Platforms (IVIP) eliminate Identity Dark Matter and reduce risk across fragmented enterprise environments.</description><pubDate>Wed, 08 Apr 2026 12:26:32 GMT</pubDate><category>IAM</category><category>IVIP</category><category>Identity Dark Matter</category><category>Attack Surface Management</category><category>Machine Identity</category></item><item><title>Shadow AI &amp; Zero-Click Exploits Expand Enterprise Mobile Attack Surface</title><link>https://runtimerebel.com/blog/shadow-ai-zero-click-exploits-expand-enterprise-mobile-attack-surface</link><guid isPermaLink="true">https://runtimerebel.com/blog/shadow-ai-zero-click-exploits-expand-enterprise-mobile-attack-surface</guid><description>Enterprises face a growing mobile attack surface from shadow AI in apps, outdated devices, and zero-click exploits, leading to unseen risks for corporate data.</description><pubDate>Fri, 03 Apr 2026 12:23:17 GMT</pubDate><category>Mobile Security</category><category>Shadow AI</category><category>Zero Click Exploits</category><category>Attack Surface Management</category><category>Enterprise Security</category><category>Mobile Device Management</category></item><item><title>Vulnerability Management for Mid-Market: Prioritizing Remediation Speed</title><link>https://runtimerebel.com/blog/vulnerability-management-for-mid-market-prioritizing-remediation-speed</link><guid isPermaLink="true">https://runtimerebel.com/blog/vulnerability-management-for-mid-market-prioritizing-remediation-speed</guid><description>Mid-market organizations must shift vulnerability management focus from vulnerability count to remediation speed, integrating attack surface management for comprehensive…</description><pubDate>Tue, 31 Mar 2026 16:30:38 GMT</pubDate><category>Vulnerability Management</category><category>Mid Market Security</category><category>Attack Surface Management</category><category>CVE Remediation</category></item><item><title>Censys Secures $70 Million to Advance Internet Intelligence Platform</title><link>https://runtimerebel.com/blog/censys-secures-70-million-to-advance-internet-intelligence-platform</link><guid isPermaLink="true">https://runtimerebel.com/blog/censys-secures-70-million-to-advance-internet-intelligence-platform</guid><description>Censys raises $70 million in funding, bolstering its internet intelligence platform for enhanced attack surface management and global asset discovery.</description><pubDate>Tue, 31 Mar 2026 16:29:37 GMT</pubDate><category>Censys</category><category>Internet Intelligence</category><category>Attack Surface Management</category><category>Asset Discovery</category><category>Vulnerability Management</category><category>Funding</category></item><item><title>AI Arms Race and Unified Exposure Management: A Strategic Imperative</title><link>https://runtimerebel.com/blog/ai-arms-race-and-unified-exposure-management-a-strategic-imperative</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-arms-race-and-unified-exposure-management-a-strategic-imperative</guid><description>The weaponization of AI by threat actors is accelerating attack speed, demanding a unified exposure management strategy for effective defense and boardroom attention.</description><pubDate>Tue, 31 Mar 2026 16:28:04 GMT</pubDate><category>AI Weaponization</category><category>Exposure Management</category><category>Cybersecurity Strategy</category><category>Threat Landscape</category><category>Attack Surface Management</category></item><item><title>Why Security Validation is Becoming Agentic: The Shift to AI Agents</title><link>https://runtimerebel.com/blog/why-security-validation-is-becoming-agentic-the-shift-to-ai-agents</link><guid isPermaLink="true">https://runtimerebel.com/blog/why-security-validation-is-becoming-agentic-the-shift-to-ai-agents</guid><description>Explore the transition from fragmented security tools to agentic security validation using autonomous AI agents to simulate complex attack paths.</description><pubDate>Mon, 16 Mar 2026 12:24:04 GMT</pubDate><category>Security Validation</category><category>Autonomous Agents</category><category>BAS</category><category>Pentesting</category><category>Attack Surface Management</category></item><item><title>Reducing Attack Surface to Prevent Zero-Day Scrambles</title><link>https://runtimerebel.com/blog/reducing-attack-surface-to-prevent-zero-day-scrambles</link><guid isPermaLink="true">https://runtimerebel.com/blog/reducing-attack-surface-to-prevent-zero-day-scrambles</guid><description>Learn how attack surface reduction limits internet-facing exposure and mitigates the impact of rapidly exploited zero-day vulnerabilities.</description><pubDate>Tue, 10 Mar 2026 12:18:15 GMT</pubDate><category>Attack Surface Management</category><category>Zero Day Prevention</category><category>Vulnerability Management</category><category>Internet Facing Assets</category></item></channel></rss>