Riptides

33 posts

Riptides banner
Riptides

Riptides

@riptidesio

Riptides is a comprehensive solution for securing workload-to-workload communication, with identity as its foundation.

San Francisco انضم Mart 2025
109 يتبع25 المتابعون
Riptides
Riptides@riptidesio·
AI agents are becoming incredibly helpful. They also tend to hold credentials that unlock far more than they should. Utility is rising. So is overprivilege. blog.riptides.io/out-ai-is-help…
English
0
4
4
40
Riptides
Riptides@riptidesio·
Why manage secrets when you can exchange identities? Discover how our open-source tokenex library simplifies secretless Azure access by turning external identity into short-lived, native cloud credentials for a more secure and scalable architecture. blog.riptides.io/secretless-az-…
English
0
1
1
11
Riptides
Riptides@riptidesio·
Federation is rarely the first problem teams solve with workload identity. It shows up once systems cross trust domains and assumptions about trust start to break. An introduction to SPIFFE identity federation. blog.riptides.io/spiffe-identit…
English
0
0
0
11
Riptides
Riptides@riptidesio·
Secrets should not exist at rest. Riptides delivers Vault/OpenBao credentials only when a workload actually makes a request. Nothing to preload, nothing to rotate in apps, nothing to leak or left behind. blog.riptides.io/vault-credenti…
English
0
2
2
51
Riptides
Riptides@riptidesio·
The open-source tokenex library now supports HashiCorp Vault and OpenBao, allowing you to exchange OIDC JWTs for secrets just-in-time. It's a unified workflow for cloud IAM and infrastructure secrets, no static tokens or manual distribution required. riptides.io/blog-post/toke…
English
0
5
6
163
Riptides
Riptides@riptidesio·
Authenticate to #OCI without storing or handling secrets. This post shows how SPIFFE-based workload identities and on-the-wire credential injection enable applications to authenticate without stored secrets. riptides.io/blog-post/secr…
English
0
1
1
59
Riptides
Riptides@riptidesio·
Remote Code Execution is inevitable in complex systems, but what defines the severity of an incident is post-exploit containment. riptides.io/blog-post/when…
English
0
1
2
19
Riptides
Riptides@riptidesio·
Riptides brings identity-first, zero-trust security to Kafka without requiring any code or configuration changes. We transparently upgrade every connection to mTLS and eliminate secret sprawl, keystores, and operational overhead, all at the kernel layer. riptides.io/blog-post/supe…
English
0
3
3
33
Riptides
Riptides@riptidesio·
Riptides’ Conditional Access delivers time-aware, fine-grained policies that enforce least-privilege access, revoke credentials after use, and enable safe break-glass workflows, with zero changes to your application code. riptides.io/blog-post/intr…
English
0
4
4
62
Riptides
Riptides@riptidesio·
How do you debug a kernel module under real workloads, real traffic, and real Kubernetes scheduling quirks and do it repeatedly without guessing? riptides.io/blog-post/from…
English
0
4
4
35
Riptides
Riptides@riptidesio·
SPIFFE-backed OAuth is emerging as a strong fit for the MCP ecosystem, enabling AI agents to self-authenticate without secrets and laying the foundation for a secure, identity-first model. riptides.io/blog-post/brin… #AI #AIAgent #MCP
English
0
0
1
32
Riptides
Riptides@riptidesio·
Every SPIFFE ID, certificate, and mTLS handshake at Riptides originates in the Linux kernel and starts with one question: can we prove who this workload is? This post explores how process-level evidence builds verifiable trust. riptides.io/blog-post/work…
English
0
1
3
66
Riptides
Riptides@riptidesio·
We ran WebAssembly inside the Linux kernel to evaluate Open Policy Agent policies in real-time. It was fast. It was elegant. It was... a nightmare to maintain. Here's what we learned moving from kernel-space WASM to user-space policy evaluation. riptides.io/blog-post/from…
English
0
4
4
65
Riptides
Riptides@riptidesio·
Riptides anchors non-human identity in the kernel with SPIFFE, kTLS & in-kernel mTLS handshakes, merging identity and encrypted communication seamlessly. Cryptography is the foundation that makes it all possible. riptides.io/blog-post/from… #Security #Cryptography
English
0
0
1
38
Riptides
Riptides@riptidesio·
We’ve open sourced libsigv4, a lightweight C library for AWS SigV4 signatures. It runs inside the Linux kernel to transparently sign outgoing requests. No app changes, no secret leaks, just secure AWS integration. riptides.io/blog-post/intr… #kernel #aws #security
English
0
1
2
90
Riptides
Riptides@riptidesio·
Current identity federation isn't workload-aware, lacks granularity, and falls short of true zero trust. For modern-day security, you need fine-grained, SPIFFE-based secure identities, ephemeral credentials, and seamless multi-cloud integration. riptides.io/blog-post/why-…
English
0
0
0
34