# They don't break in, they log in. What's an enterprise to do? Page: https://stenobird.com/podcast/risky-business-features-7716365/they-don-t-break-in-they-log-in-what-s-an-enterprise-to-do Text version: https://stenobird.com/podcast/risky-business-features-7716365/they-don-t-break-in-they-log-in-what-s-an-enterprise-to-do.md Podcast: [Risky Business Features](https://stenobird.com/podcast/risky-business-features-7716365) Published: 2026-03-12T23:33:33+00:00 Episode link: https://risky.biz/RBFEATURES6/ Audio file: https://dts.podtrac.com/redirect.mp3/media3.risky.biz/RBFEATURES6.mp3 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/risky-business-features-7716365/episodes/they-don-t-break-in-they-log-in-what-s-an-enterprise-to-do Duration seconds: 1922 ## Resource In this podcast James Wilson chats with Brad Arkin about how enterprises can better deal with attackers logging in with valid credentials. Stolen identities, weak special-use credentials, and over-scoped API keys are the new zero-day and they’re abundantly available to attackers. Sadly, the solution here isn’t as simple as deploying phishing resistant MFA. Fixing this takes an enterprise identity strategy. ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/risky-business-features-7716365/episodes/they-don-t-break-in-they-log-in-what-s-an-enterprise-to-do/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/risky-business-features-7716365/they-don-t-break-in-they-log-in-what-s-an-enterprise-to-do.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.