ThreatDown Targets Shadow AI and Risky Machine Identities With New Security Tools
- 4 hours ago
- 1 min read
ThreatDown is expanding its cybersecurity platform to help organizations uncover unauthorized artificial intelligence tools and secure the growing number of machine identities operating across corporate networks.
The company’s new AI visibility capabilities automatically identify shadow AI applications used by employees without formal approval. Security teams can view each tool’s vendor, category, version, platform and endpoint activity, helping them determine where corporate data may be exposed to unmanaged services.
ThreatDown is also extending its identity threat detection and response technology to non-human identities, including service accounts, API keys, OAuth credentials, access tokens and AI agents. The platform tracks ownership, age and privilege levels, giving administrators greater control over credentials that often operate with limited oversight.
“Shadow AI is the next major blind spot for security teams, and most organizations haven't even started thinking about the identities behind AI activity,” said Kendra Krause, general manager of ThreatDown. “ThreatDown brings both into view on the platform teams already use, without adding complexity, to provide visibility into the AI tools active in their environment.”
The launch comes as security researchers warn that unrestricted AI technology is becoming easier to access. ThreatDown’s Cybercrime in the Age of AI report identified more than 6,000 models promoted as guardrail-free on Hugging Face. Those models reportedly generated more than 22 million downloads over 30 days.
The financial stakes are also rising. IBM has estimated that breaches involving shadow AI cost organizations roughly $670,000 more on average than incidents without shadow AI exposure.
ThreatDown said the new AI visibility features are available immediately through its existing console and endpoint agent, with no additional product license required.