Socure has launched U.S. mobile driver's license verification within DocV, its identity verification product, allowing organizations to cryptographically verify mDLs against the issuing state authority when presented from Google Wallet and Samsung Wallet during remote onboarding and step-up flows. The launch follows a September 8, 2026 joint FAQ from FinCEN, the Federal Reserve Board, the FDIC, the OCC and the NCUA confirming that an unexpired, government-issued verifiable digital credential can qualify as documentary evidence under the Customer Identification Program Rule, provided the institution has the technology to extract the required information and still forms a reasonable belief of the customer's true identity. ABI Research projects the U.S. mDL install base will grow from 21.7 million in 2025 to 143 million by 2030, with 40 states issuing digital licenses; today 21 states issue mDLs conforming to the ISO/IEC 18013-5 standard, more than 8 million credentials are active, and roughly 45% of Americans live where one is available. Socure said mDL verification complements its physical document capture rather than replacing it, and that its DocV now supports remote presentation under Part 7 of the ISO standard from Google Wallet and Samsung Wallet, addressing the higher-risk remote verifications that have been supported unevenly across wallets. The announcement comes alongside an extension of Socure's partnership with Xcelerate Solutions to support public sector use cases under the Login.gov Next Generation Identity Proofing Blanket Purchase Agreement, operating within Socure's FedRAMP Moderate environment.
Socure launched U.S. mobile driver's license verification within its DocV identity verification product.
Xcelerate Solutionsi
Private▲ PositiveDemandrelevance
Xcelerate Solutions extended its partnership with Socure to support public sector identity proofing use cases under the Login.gov BPA.
ABI Researchi
Private± Mixedrelevance
The Options Clearing Corporationi
Private± Mixedrelevance
Related news
United States
▲
CrowdStrike Falcon Platform Launches on OpenAI Marketplace
CrowdStrike Holdings announced that its Falcon cybersecurity platform is now available in the OpenAI Marketplace, giving enterprise customers another route to deploy its tools. The company's shares have climbed 32.36% over the past 30 days and 46.94% over 90 days, contributing to a 142.55% year-to-date increase and a one-year total shareholder return of 122.86%. CrowdStrike last closed at $275.04, against a most-followed fair value estimate of $235.67 that uses an 8.59% discount rate and implies the stock is 17% overvalued. The company is pushing beyond endpoint security into next generation SIEM, identity, cloud security and exposure management, each already contributing hundreds of millions of ARR. Investors are counting on those businesses to scale toward multi billion dollar ARR and support higher long term revenue and profit margins from a broader security platform.
Cybersecurity & Digital Trust › Endpoint & Network Security ▲Technology
Cybersecurity & Digital Trust › Cloud & Workload Security ▲Technology
Cybersecurity & Digital Trust › Identity & Access Management ▲Technology
CRWD · Demand · Positive CrowdStrike's Falcon platform is now available in the OpenAI Marketplace, giving enterprise customers another route to deploy its tools.
SailPoint Raises Fiscal 2027 ARR Outlook After Q2 Earnings Beat
SailPoint reported fiscal second-quarter 2027 adjusted earnings of 9 cents per share, up 28.6% year over year and 12.5% above the Zacks Consensus Estimate of 8 cents, and raised its full-year ARR outlook. Revenues rose 16.8% year over year to $309 million but missed the consensus mark by 0.51%, while annual recurring revenue increased 25% to $1.231 billion and SaaS ARR climbed 36% to $847 million. AI-driven ARR exceeded $70 million, and the AI-driven pipeline more than doubled since the June 2026 Investor Day to more than $200 million. For fiscal 2027, the company raised its ARR outlook to $1.375-$1.385 billion from $1.364-$1.374 billion, with revenues still forecast at $1.265-$1.275 billion and adjusted earnings at 30-34 cents per share. For the fiscal third quarter, SailPoint expects ARR of $1.288-$1.292 billion, revenues of $326 million to $330 million, and adjusted earnings of 7-8 cents per share.
Japan's FSA Urges Crypto Exchanges and Others to Phase Out ID Photo Verification Early
On October 9, Japan's Financial Services Agency asked financial institutions and others to move early from identity verification methods that involve sending images of driver's licenses and similar documents to methods that read IC chip information. The move follows a string of unauthorized accesses to customer-facing services and business systems, as well as leaks of customer information including images of driver's licenses, and it also covers account-opening procedures at crypto asset exchanges. The conventional image-sending method is scheduled to be abolished on April 1, 2027, but the FSA is calling for action before that effective date. The FSA's cybersecurity guidelines include crypto asset exchange operators among financial institutions and related entities, so the request also presses exchanges to speed up the shift in their identity verification methods. The IC chip reading method being adopted reads the name, address, date of birth, and facial photo recorded inside the card using a smartphone or similar device, and combines that with an image of the applicant's face. What is being abolished is the method of sending document images, and methods that involve photographing the face will remain after the transition. The FSA explained that reading IC chip information is extremely effective as a countermeasure against fraud, and in this notice it also calls for reviewing risk management for outsourced contractors and other parties, as well as response readiness in the event of a cyberattack, in addition to identity verification.
Japan's Financial Services Agency on the 9th, following a spate of customer data leaks caused by unauthorized access, called on financial institutions to review their cybersecurity measures and issued a warning. It is asking them to thoroughly check images of driver's licenses and other ID documents for anything unusual, even when verifying identity without meeting customers face to face. The FSA stressed that it wants institutions to prevent the fraudulent use of financial services and act so as not to undermine trust, urging them to review their response plans for cyberattacks and to promptly take any necessary measures where shortcomings are found. Financial Services Minister Satsuki Katayama said at a post-cabinet press conference on the 9th that identity verification should be carried out appropriately, including by reading IC chip information, which is extremely effective as a countermeasure against fraud. The Ministry of Economy, Trade and Industry announced it will issue warnings to roughly 1,000 industry associations under its jurisdiction, including those in the automotive and retail sectors, calling on management to take the lead in checking communications equipment and systems for vulnerabilities.
Zenity Labs Discloses AgentCorruption Flaws in AWS Bedrock AgentCore
Zenity Labs today disclosed AgentCorruption, a chain of security flaws in Amazon Bedrock AgentCore that let researchers take over all AgentCore agents within the same AWS account and region using a single prompt to one public-facing agent. The attack began when a prompt instructed an agent equipped with a commonly used outbound-request tool to reach the AWS Instance Metadata Service, retrieving credentials tied to a default AWS Identity and Access Management role whose permissions extended to every AgentCore agent in that account and region. From there, researchers accessed internal agents they were not authorized to use, read private conversations and long-term memories across agents, users and sessions, downloaded agent container images and source code, and retrieved API keys, OAuth tokens and other credentials stored in AWS Secrets Manager and environment variables. They also implanted malicious memories that directed agents to transmit future conversations to an attacker-controlled destination, establishing persistent hijacking of agent behavior. Zenity Labs responsibly disclosed the findings to AWS on Dec. 25, 2025, after which AWS made IMDSv2 the default for AgentCore deployments and reduced the default execution role's permissions, removing the ability for agents to invoke other agents, read private conversations or access secrets stored in AWS Secrets Manager. The findings were presented at SecTor 2026 in Toronto.
Cybersecurity & Digital Trust › AI Security & Agent Guardrails ▼Technology
Cybersecurity & Digital Trust › Cloud & Workload Security ▼Technology
Cybersecurity & Digital Trust › Identity & Access Management ▼Technology
Cybersecurity & Digital Trust › Privileged Access Management (PAM) Technology
Zenity · Technology · Positive Zenity Labs disclosed the AgentCorruption vulnerability chain and presented the findings at SecTor 2026, showcasing its security research.
AMZN · Technology · Neutral Security flaws in AWS Bedrock AgentCore were disclosed, but AWS remediated them by defaulting to IMDSv2 and cutting the execution role's permissions, so the net impact is mixed.
CyberFOX Acquires Optimize365 to Add Microsoft 365 Security
CyberFOX has acquired Optimize365, adding continuous Microsoft 365 tenant monitoring and hardening to its existing portfolio of privileged access management, password management, AI-powered DNS filtering, and Zero Trust Network Access. The acquisition extends CyberFOX's coverage from endpoints, privileged access, credentials, and web traffic into the Microsoft 365 environment, letting IT teams continuously identify configuration drift, prioritize high-risk changes, and automate remediation. Optimize365 will continue to operate under its own brand within the CyberFOX portfolio in the near term, with no disruption to service, support, or contracts for existing partners and customers, and CyberFOX plans to integrate it into its partner program and product roadmap over the coming quarters. The deal follows CyberFOX's nine-figure growth investment led by Level Equity and Radian Capital in February 2026 and its acquisition of SASE provider Timus Networks in June 2026. CEO David Bellini said the goal is to protect the full access attack surface without adding more complexity, while Chief Revenue Officer Adam Slutskin called the move a natural extension of the company's mission to serve lean IT teams.