December 18, 2025
Real-World Lessons
TruffleNet and Cloud Abuse at Scale: An Identity Architecture Failure
The recent TruffleNet campaign, first documented by Fortinet, highlights a familiar and uncomfortable truth for security leaders: some of the most damaging cloud attacks aren’t exploiting zero-day vulnerabilities. They’re exploiting identity models that were never designed for the scale and automation of modern cloud environments. Nothing about this attack was novel. That’s precisely the problem. …
October 30, 2024
Standards
Workload Identity: A Problem Made for Standards!
September 13, 2024
Uncategorized
Shift from Certificate Management to Credential Management
June 17, 2024
Uncategorized
Join us at Cloud Native Security Con 2024
June 4, 2024
Uncategorized
Why Multi-Factor Authentication for Workloads is a Critical Security Control
January 3, 2024
Uncategorized
How to construct SPIFFE IDs
November 7, 2023
Uncategorized