OWASP Unveils Top 10 Non-Human Identity (NHI) Security Risks for 2025

2025-02-04
OWASP Unveils Top 10 Non-Human Identity (NHI) Security Risks for 2025

The OWASP has released its 2025 Top 10 Non-Human Identities (NHIs) security risks, highlighting vulnerabilities related to service accounts, API keys, and other non-human actors. These risks include secret leakage, excessive privileges, insecure authentication, and insufficient environment isolation, posing significant threats to software development and deployment security. The report emphasizes mitigation strategies and calls for collaboration between developers and security professionals to strengthen security practices.

Development Non-Human Identities