Identity & access

Identity & access intelligence examining the operating conditions, decisions, dependencies, and evidence that matter in consequential private and institutional environments.

27 pieces
01

Article / Access & Continuity

Phishing Has Been Replaced With This.

Your team has been trained to fear the suspicious email. Criminals are stealing the browsers, sessions and devices your business already trusts.
02

Article / Access & Continuity

A Stealer Log Means a Device Was Compromised

Why private banks, family offices and wealth managers must distinguish malware output from breach databases and combolists.
03

Article / Privacy & Reputation

Hackers Copied Records on 31,000 Liechtenstein Entities. Here Is What They Can Do With Them.

Hackers obtained names, birth dates, nationalities, residence countries and links between beneficial owners and legal structures.
04

Article / Access & Continuity

Your MFA Worked. The Attacker Still Got In.

Multifactor authentication protects a moment. Criminals attack the trust system surrounding it.
05

Article / Access & Continuity

Your Information Is on the Dark Web. How Did It Get There?

Eight questions reveal what criminals have, whether collection continues, what the information can unlock and what must be contained first.
06

Article / Access & Continuity

Threat Trifecta: How Criminals Become You, Corner You and Watch You

Svperior’s passive scans across Swiss private wealth map early exposure signals to three outcomes: digital impersonation, extortion and invisible access.
07

Article / Access & Continuity

Is the Cloud Really the Risk? Your Server Room Has a Public Address

Trustees, wealth managers and private banks often treat on-premises infrastructure as a security moat. Attackers see identity systems, exposed services and pathways into money.
08

Briefing / Access & Continuity

They Were Already Inside

A 2026 Cybercrime Briefing for Private Wealth
09

Article / Privacy & Reputation

The Bank Was Never Breached. Its Reputation Was.

Criminals no longer need to breach a private bank or family office to profit from it. They can copy its name, people, and authority—then leave the institution carrying the loss, response, and doubt.
10

Article / Access & Continuity

Decision Memo: Freeze the Account or Preserve Access?

Immediate suspension can stop harm, destroy visibility or lock out the only operator who can keep the institution moving. Choose by consequence.
11

Article / Access & Continuity

The Emergency Plan Must Survive Embarrassment

People delay escalation when the incident exposes an affair, bad judgement, private message, unauthorised workaround or personal mistake. Design for that.
12

Article / Access & Continuity

Failure Note: The Backup Restored the Wrong Company

The files came back. So did departed users, obsolete permissions and records from an entity that no longer belonged in the environment.
13

Article / Access & Continuity

The First Five People Called Determine the Incident

The first call sequence decides whether an incident becomes controlled evidence or an expanding conversation.
14

Article / Access & Continuity

Identity Recovery Is a Ceremony of Power

Whoever can restore an identity can often reset credentials, recover records and regain transaction authority. Treat that moment accordingly.
15

Article / Access & Continuity

The Institution Is Only as Resilient as Its Recovery Witness

Recovery often depends on one person recognising the claimant and persuading a provider. That person is part of the institution’s control system.
16

Article / Capital & Diligence

The Investment Committee Should Read the Access Map

A company’s real concentration risk often sits in administrator accounts, recovery routes, vendors and people who can change production without formal approval.
17

Article / Access & Continuity

Offline Is Not a Place. It Is a Mode of Authority

An offline copy is useless if nobody can lawfully decrypt it, verify it, approve action or reconnect the institution safely.
18

Article / Authority & Assets

The Real Beneficial Owner May Be the Person Who Can Recover

Legal ownership matters. In a crisis, the person who controls recovery keys, provider relationships or identity restoration may exercise the asset first.
19

Article / Access & Continuity

Operating Guide: Rebuild Authority After a Lost Device

A lost device is not only missing hardware. It is a contested package of sessions, approvals, identity evidence and recovery routes.
20

Article / Access & Continuity

The System That Cannot Be Explained Cannot Be Recovered

Complexity becomes fragility when nobody can describe what exists, what matters, who controls it and what must return first.
21

Article / Access & Continuity

How to Test Continuity Without Staging Theatre

A continuity test should expose dependencies, authority gaps and recovery limits—not demonstrate a script everyone already knows.
22

Article / Access & Continuity

Private Wealth Under Attack: What H2 2026 Numbers Reveal

Cyber incidents are climbing across banks, RIAs, wealth managers and family offices. Fresh data shows where pressure is concentrating—and where defenses are trailing.
23

Observation / Capital & Diligence

Control Follows the Identity Layer After Close

The buyer may own the shares at close, but practical control follows accounts, administrators, recovery paths and machine identities.
24

Field Guide / Authority & Assets

Advisor Transitions Leave Ghost Access

Why changing lawyers, bankers, accountants or technology providers leaves hidden access—and the day 0, 30 and 90 controls that close it.
25

Observation / Authority & Assets

The Assistant May Hold More Power Than the Principal

Why executive assistants can become the practical control plane for identity, money and reputation—and how to govern that authority without destroying speed.
26

Assessment / Access & Continuity

The Principal’s Accounts Form a Single Trust Perimeter

Email, telecoms, devices, financial platforms and assistants share authority. Map them as one trust perimeter before the weakest transfers control.
27

Field Guide / Access & Continuity

The Recovery Path Is Part of the Attack Surface

Why assistants, old phone numbers, support desks and shared devices often control the real recovery perimeter of a family office.