Okta Webinar: Episode 6: Surviving the new era of machine speed attacks
Okta’s sixth Streamcast warns that in 2026 attackers weaponize internal AI to move laterally at machine speed, shrinking response windows to minutes and demanding real-time authorization traces and automated kill switches.
Video
Video available
The useful question is what changes for users, developers or buyers, and whether the announcement stays industry context or becomes something people can actually use.
Okta and ADT’s CISO Tim Rains highlight a 2026 threat shift where adversaries no longer aim to breach systems but instead hijack internal AI to accelerate lateral movement and data theft. The change reduces the intervention window from days to minutes, leaving organizations with little time to detect or respond before damage occurs. Harish Peri of Okta and Rains emphasize that traditional passive logging is insufficient against these automated attacks.
The discussion focuses on identifying the most vulnerable stages in an attacker’s lifecycle when leveraging compromised AI tools. They argue that security teams must transition from reactive monitoring to proactive, auditable authorization traces that can flag anomalous behavior in real time. The session underscores the need for granular visibility into every access request and decision point within automated workflows.
A central theme is the implementation of a programmable "kill switch" capable of instantly revoking access or halting processes when unauthorized AI-driven actions are detected. This mechanism is presented as essential to keep pace with the speed of automation-driven attacks, ensuring security controls can match the velocity of adversaries.
The Streamcast is scheduled as part of Okta’s ongoing series and targets security professionals seeking strategies to counter next-generation, AI-powered threats. Attendees are encouraged to explore how auditable authorization traces and automated response frameworks can be integrated into existing security architectures.