Data Protection Digital Identity Privacy

Protecting minors online takes more than age verification

DIDAS warns that age verification alone cannot solve harmful content, addictive design, profiling or commercial exploitation of children online. Where verification is necessary, it should reveal only what is required, such as a simple “over/under age threshold”, without exposing identity, birth date or biometrics. DIDAS proposes six principles: privacy by design/default, unlinkability, data minimisation, open-source […]

Cybersecurity Digital Identity EIDAS

Belgian eID signing software critical flaws shake trust in digital identity

Security researchers uncovered severe vulnerabilities in Belgium’s Connective eID signing software, used by more than 2 million citizens. The technology is deployed by 8 of Belgium’s 10 largest banks, more than 60 government agencies and over 1,000 enterprises. A fundamental weakness was that the software failed to properly verify which website was communicating with the […]

AI Cybersecurity Digital Identity Identity & Access Management Zero Trust

When AI agents break IAM then Identity becomes the fault line

AI agents challenge traditional IAM by acting at machine speed and scale, with unpredictable access patterns that human-centric security models weren’t designed for. Prompt injection, credential exposure and multi-agent delegation create attack paths that conventional authentication and authorization controls struggle to govern. Existing behavioral monitoring can be effectively blind to autonomous agents, while ownership, accountability, […]