<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Riptides Blog</title><description>Deep dives on secure identity, AI agent infrastructure, and what&apos;s next for workload-to-workload trust.</description><link>https://riptides.io/</link><language>en-us</language><item><title>SPIFFE Is What AI Agents Need for Identity, The Question Is How to Deliver It</title><link>https://riptides.io/how-to-deliver-spiffe-identity-to-ai-agents/</link><guid isPermaLink="true">https://riptides.io/how-to-deliver-spiffe-identity-to-ai-agents/</guid><pubDate>Mon, 20 Apr 2026 10:10:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/integration.BVVxlCo__1pNBWS.webp</enclosure></item><item><title>Non-Human Identity Done Right: Why AI Agents Need SPIFFE and Riptides</title><link>https://riptides.io/non-human-identity-done-right-why-ai-agents-need-spiffe-and-riptides/</link><guid isPermaLink="true">https://riptides.io/non-human-identity-done-right-why-ai-agents-need-spiffe-and-riptides/</guid><pubDate>Mon, 19 May 2025 09:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.By4MMLId_Z1mzUNj.webp</enclosure></item><item><title>The API Key Leaks Keep Coming</title><link>https://riptides.io/api-key-leaks-keep-coming/</link><guid isPermaLink="true">https://riptides.io/api-key-leaks-keep-coming/</guid><pubDate>Thu, 17 Jul 2025 09:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.Dpn19JHF_1kAwol.webp</enclosure></item><item><title>“On demand credentials - Secretless AI assistant example on GCP”</title><link>https://riptides.io/on-demand-credentials-secretless-ai-assistant-example-on-gcp/</link><guid isPermaLink="true">https://riptides.io/on-demand-credentials-secretless-ai-assistant-example-on-gcp/</guid><pubDate>Mon, 22 Sep 2025 15:32:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/thumb.CGpkKtTZ_Z1IagSg.webp</enclosure></item><item><title>Non-human identity federation with external IDPs: a guide for AWS, GCP, and Azure</title><link>https://riptides.io/federating-non-human-identities-with-external-idps-using-id-tokens-in-aws-gcp-and-azure/</link><guid isPermaLink="true">https://riptides.io/federating-non-human-identities-with-external-idps-using-id-tokens-in-aws-gcp-and-azure/</guid><pubDate>Mon, 07 Jul 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/thumb.DsxffTNX_1U1jp6.webp</enclosure></item><item><title>Introducing libsigv4: AWS SigV4 Signatures in Portable C with Kernel Compatibility</title><link>https://riptides.io/introducing-libsigv4-aws-sigv4-signatures-in-portable-c-with-kernel-compatibility/</link><guid isPermaLink="true">https://riptides.io/introducing-libsigv4-aws-sigv4-signatures-in-portable-c-with-kernel-compatibility/</guid><pubDate>Mon, 25 Aug 2025 10:10:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/libsigv4.B9Yik6hY_FzDnU.webp</enclosure></item><item><title>When eBPF Isn’t Enough: Why We Went with a Kernel Module</title><link>https://riptides.io/when-ebpf-isnt-enough-why-we-went-with-a-kernel-module/</link><guid isPermaLink="true">https://riptides.io/when-ebpf-isnt-enough-why-we-went-with-a-kernel-module/</guid><pubDate>Mon, 27 Oct 2025 10:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/ebpf-modul.DQnDmB8J_1n2RGN.webp</enclosure></item><item><title>From Keys to Handshakes: How Cryptography Powers Riptides</title><link>https://riptides.io/from-keys-to-handshakes-how-cryptography-powers-riptides/</link><guid isPermaLink="true">https://riptides.io/from-keys-to-handshakes-how-cryptography-powers-riptides/</guid><pubDate>Mon, 08 Sep 2025 10:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/ec-rsa-blog.DdJLLDcD_Z1UAKPM.webp</enclosure></item><item><title>Secretless OCI Authentication with SPIFFE-based workload identity</title><link>https://riptides.io/secretless-oci-authentication-with-spiffe-based-workload-identity/</link><guid isPermaLink="true">https://riptides.io/secretless-oci-authentication-with-spiffe-based-workload-identity/</guid><pubDate>Mon, 12 Jan 2026 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/thumb.-nb-La4x_Zsdsv4.webp</enclosure></item><item><title>On-the-Wire Credential Injection: Secretless AWS Bedrock Access example</title><link>https://riptides.io/on-the-wire-credential-injection-secretless-aws-bedrock-access-example/</link><guid isPermaLink="true">https://riptides.io/on-the-wire-credential-injection-secretless-aws-bedrock-access-example/</guid><pubDate>Mon, 01 Sep 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/thumb.DMxzaBVG_Z2amHda.webp</enclosure></item><item><title>Securing Workloads with Kernel Telemetry and Metrics</title><link>https://riptides.io/securing-workloads-with-kernel-telemetry-and-metrics/</link><guid isPermaLink="true">https://riptides.io/securing-workloads-with-kernel-telemetry-and-metrics/</guid><pubDate>Thu, 07 Aug 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.fUBA2xq1_1E65xL.webp</enclosure></item><item><title>From Tracepoints to Prometheus: The journey of a kernel event to observability.</title><link>https://riptides.io/from-tracepoints-to-prometheus-the-journey-of-a-kernel-event-to-observability/</link><guid isPermaLink="true">https://riptides.io/from-tracepoints-to-prometheus-the-journey-of-a-kernel-event-to-observability/</guid><pubDate>Mon, 21 Jul 2025 10:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/whole_trace.Ds4YON7R_Z13Iffc.webp</enclosure></item><item><title>Testing Linux Kernel Modules with Bats</title><link>https://riptides.io/behind-the-scenes-how-we-test-at-riptides/</link><guid isPermaLink="true">https://riptides.io/behind-the-scenes-how-we-test-at-riptides/</guid><pubDate>Mon, 15 Dec 2025 10:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/how-we-test.D8VQeCKx_Z26k0bW.webp</enclosure></item><item><title>Workload Identity Without Secrets: a Blueprint for the Post-Credential Era</title><link>https://riptides.io/workload-identity-without-secrets-a-blueprint-for-the-post-credential-era/</link><guid isPermaLink="true">https://riptides.io/workload-identity-without-secrets-a-blueprint-for-the-post-credential-era/</guid><pubDate>Thu, 25 Sep 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.CaLaLyg2_ZtsANb.webp</enclosure></item><item><title>Supercharge Kafka security with Riptides</title><link>https://riptides.io/supercharge-kafka-security-with-riptides/</link><guid isPermaLink="true">https://riptides.io/supercharge-kafka-security-with-riptides/</guid><pubDate>Mon, 08 Dec 2025 10:10:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog01.CLUAMQ9f_ZLBf5a.webp</enclosure></item><item><title>Introducing Riptides Conditional Access: Fine-Grained, Time-Aware Security Policies</title><link>https://riptides.io/introducing-riptides-conditional-access-fine-grained-time-aware-security-policies/</link><guid isPermaLink="true">https://riptides.io/introducing-riptides-conditional-access-fine-grained-time-aware-security-policies/</guid><pubDate>Thu, 27 Nov 2025 10:10:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.B_ryyoqZ_l7ow3.webp</enclosure></item><item><title>Secretless AI-Powered Development: Secure AWS Credentials for GitHub Copilot in Lima</title><link>https://riptides.io/secretless-ai-development-github-copilot-lima/</link><guid isPermaLink="true">https://riptides.io/secretless-ai-development-github-copilot-lima/</guid><pubDate>Thu, 12 Feb 2026 10:10:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/copilot-lima-riptides.C95TDHQA_Z2fGU31.webp</enclosure></item><item><title>Riptides: Kernel-Level Identity and Security Reinvented</title><link>https://riptides.io/riptides-kernel-level-identity-and-security-reinvented/</link><guid isPermaLink="true">https://riptides.io/riptides-kernel-level-identity-and-security-reinvented/</guid><pubDate>Wed, 23 Apr 2025 10:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/kernel-mtls.BagFL020_1RdPP8.webp</enclosure></item><item><title>From Breakpoints to Tracepoints: An Introduction to Linux Kernel Tracing</title><link>https://riptides.io/from-breakpoints-to-tracepoints-an-introduction-to-linux-kernel-tracing/</link><guid isPermaLink="true">https://riptides.io/from-breakpoints-to-tracepoints-an-introduction-to-linux-kernel-tracing/</guid><pubDate>Sat, 03 May 2025 10:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/tracepoint.CFnvWhAY_1K4wx0.webp</enclosure></item><item><title>Building Linux Driver at Scale: Our Automated Multi-Distro, Multi-Arch Build Pipeline</title><link>https://riptides.io/building-linux-driver-at-scale-our-automated-multi-distro-multi-arch-build-pipeline/</link><guid isPermaLink="true">https://riptides.io/building-linux-driver-at-scale-our-automated-multi-distro-multi-arch-build-pipeline/</guid><pubDate>Mon, 28 Jul 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/blog-og.D1dYav0Q_Z1QVgPN.webp</enclosure></item><item><title>Beyond the Limits: Scaling Our Kernel Module Build Pipeline Even Further</title><link>https://riptides.io/beyond-the-limits-scaling-our-kernel-module-build-pipeline-even-further/</link><guid isPermaLink="true">https://riptides.io/beyond-the-limits-scaling-our-kernel-module-build-pipeline-even-further/</guid><pubDate>Mon, 20 Oct 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/blog-og.leRUbq41_1op6oW.webp</enclosure></item><item><title>Seamless Kernel-Based Non-Human Identity with kTLS and SPIFFE</title><link>https://riptides.io/seamless-kernel-based-non-human-identity-with-ktls-and-spiffe/</link><guid isPermaLink="true">https://riptides.io/seamless-kernel-based-non-human-identity-with-ktls-and-spiffe/</guid><pubDate>Mon, 02 Jun 2025 10:51:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.Dpn19JHF_1kAwol.webp</enclosure></item><item><title>Rethinking Workload Identity at the Kernel Level</title><link>https://riptides.io/rethinking-workload-identity-at-the-kernel-level/</link><guid isPermaLink="true">https://riptides.io/rethinking-workload-identity-at-the-kernel-level/</guid><pubDate>Mon, 14 Jul 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.DeLjjtV6_1j3JRC.webp</enclosure></item><item><title>Linux kernel module telemetry: beyond the usual suspects</title><link>https://riptides.io/linux-kernel-module-telemetry-beyond-the-usual-suspects/</link><guid isPermaLink="true">https://riptides.io/linux-kernel-module-telemetry-beyond-the-usual-suspects/</guid><pubDate>Tue, 10 Jun 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.fUBA2xq1_1E65xL.webp</enclosure></item><item><title>MCP: A Quickstart Guide</title><link>https://riptides.io/mcp-a-quickstart-guide/</link><guid isPermaLink="true">https://riptides.io/mcp-a-quickstart-guide/</guid><pubDate>Sat, 14 Jun 2025 10:51:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/mcp-blog.DkuqP5pf_2uBdBP.webp</enclosure></item><item><title>Securing Agentic OAuth Flows with Riptides</title><link>https://riptides.io/mcp-riptides-oauth/</link><guid isPermaLink="true">https://riptides.io/mcp-riptides-oauth/</guid><pubDate>Wed, 08 Apr 2026 13:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/thumb.DlJikaj4_1HnlKO.webp</enclosure></item><item><title>Our AI Is Helpful. Also Slightly Overprivileged.</title><link>https://riptides.io/out-ai-is-helpful-also-slightly-overprivileged/</link><guid isPermaLink="true">https://riptides.io/out-ai-is-helpful-also-slightly-overprivileged/</guid><pubDate>Tue, 10 Mar 2026 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.4HAFtl6V_Z1H3IuR.webp</enclosure></item><item><title>Securing MCP Communication with Riptides</title><link>https://riptides.io/securing-mcp-communication-with-riptides/</link><guid isPermaLink="true">https://riptides.io/securing-mcp-communication-with-riptides/</guid><pubDate>Mon, 30 Jun 2025 10:51:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/mcp-with-riptides.B_uIRqwt_Z1mY0py.webp</enclosure></item><item><title>Announcing oci-req-signer-c: A Lightweight C Library for Oracle Cloud Request Signing</title><link>https://riptides.io/announcing-oci-req-signer-c-a-lightweight-c-library-for-oracle-cloud-request-signing/</link><guid isPermaLink="true">https://riptides.io/announcing-oci-req-signer-c-a-lightweight-c-library-for-oracle-cloud-request-signing/</guid><pubDate>Mon, 03 Nov 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.CBSj4LsH_Z2lduFF.webp</enclosure></item><item><title>The Quantum Threat to Workload Identity — And Why It Starts Today</title><link>https://riptides.io/the-quantum-threat-to-workload-identity-and-why-it-starts-today/</link><guid isPermaLink="true">https://riptides.io/the-quantum-threat-to-workload-identity-and-why-it-starts-today/</guid><pubDate>Wed, 22 Apr 2026 07:15:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.C0kwxcgC_ZoAgtt.webp</enclosure></item><item><title>When Remote Code Execution Isn’t the End — Designing for Containment</title><link>https://riptides.io/when-remote-code-execution-isnt-the-end---designing-for-containment/</link><guid isPermaLink="true">https://riptides.io/when-remote-code-execution-isnt-the-end---designing-for-containment/</guid><pubDate>Tue, 06 Jan 2026 11:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/riptides-intro-blogimage.D0c7QgIS_11Fw6L.webp</enclosure></item><item><title>Zero-Touch Secrets: On-The-Wire Injection of Vault-Sourced Credentials</title><link>https://riptides.io/vault-credentials-on-the-wire-riptides/</link><guid isPermaLink="true">https://riptides.io/vault-credentials-on-the-wire-riptides/</guid><pubDate>Mon, 02 Feb 2026 08:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.D1a2Kx5t_Z14QHXi.webp</enclosure></item><item><title>Reflections from Identiverse: Why Security Needs Operational Efficiency</title><link>https://riptides.io/reflections-from-identiverse-why-security-needs-operational-efficiency/</link><guid isPermaLink="true">https://riptides.io/reflections-from-identiverse-why-security-needs-operational-efficiency/</guid><pubDate>Mon, 09 Jun 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.DeLjjtV6_1j3JRC.webp</enclosure></item><item><title>Federation is easy. Runtime enforcement is hard.</title><link>https://riptides.io/federation-is-easy-runtime-enforcement-is-hard/</link><guid isPermaLink="true">https://riptides.io/federation-is-easy-runtime-enforcement-is-hard/</guid><pubDate>Mon, 02 Mar 2026 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.BZyLtPCm_Z1BlkvY.webp</enclosure></item><item><title>Why Riptides Embraces SPIFFE But Not SPIRE</title><link>https://riptides.io/why-riptides-embraces-spiffe-but-not-spire/</link><guid isPermaLink="true">https://riptides.io/why-riptides-embraces-spiffe-but-not-spire/</guid><pubDate>Wed, 22 Oct 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.Cqv6Dk49_1SeuEz.webp</enclosure></item><item><title>From Tracepoints to Metrics: A journey from kernel to user-space</title><link>https://riptides.io/from-tracepoints-to-metrics-a-journey-from-kernel-to-user-space/</link><guid isPermaLink="true">https://riptides.io/from-tracepoints-to-metrics-a-journey-from-kernel-to-user-space/</guid><pubDate>Mon, 26 May 2025 10:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/metrics.DVoBP_Z6_Z1HgE0w.webp</enclosure></item><item><title>Why Cloud-Native Federation Isn’t Enough for Non-Human Identities in AWS, GCP, and Azure</title><link>https://riptides.io/why-cloud-native-federation-isnt-enough-for-non-human-identities-in-aws-gcp-and-azure/</link><guid isPermaLink="true">https://riptides.io/why-cloud-native-federation-isnt-enough-for-non-human-identities-in-aws-gcp-and-azure/</guid><pubDate>Mon, 11 Aug 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/riptides-nhi-federation.CkbDrtuH_kPK2L.webp</enclosure></item><item><title>Riptides is heading to Identiverse 2025!</title><link>https://riptides.io/riptides-is-heading-to-identiverse-2025/</link><guid isPermaLink="true">https://riptides.io/riptides-is-heading-to-identiverse-2025/</guid><pubDate>Thu, 29 May 2025 09:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.B4zkkQhe_ZSi3L0.webp</enclosure></item><item><title>Practical Linux Kernel Debugging: From pr_debug() to KASAN/KFENCE</title><link>https://riptides.io/practical-linux-kernel-debugging-from-pr-debug-to-kasan-kfence/</link><guid isPermaLink="true">https://riptides.io/practical-linux-kernel-debugging-from-pr-debug-to-kasan-kfence/</guid><pubDate>Mon, 18 Aug 2025 17:10:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/kernel-debug.D5Tcd-OM_Z1MUt10.webp</enclosure></item><item><title>Supplying short-lived OpenAI API keys to AI agents with Riptides</title><link>https://riptides.io/ritptides-openai-apikeys/</link><guid isPermaLink="true">https://riptides.io/ritptides-openai-apikeys/</guid><pubDate>Mon, 26 Jan 2026 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.CjfLGJMN_jzvHO.webp</enclosure></item><item><title>The Riptides Vision: Identity-First Infrastructure</title><link>https://riptides.io/the-riptides-vision-identity-first-infrastructure/</link><guid isPermaLink="true">https://riptides.io/the-riptides-vision-identity-first-infrastructure/</guid><pubDate>Wed, 23 Apr 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.BTORi9gZ_2oFVWS.webp</enclosure></item><item><title>From Build to Root Cause: How Riptides Debugs Its Kernel Module in Real Clusters</title><link>https://riptides.io/from-build-to-root-cause-how-riptides-debugs-its-kernel-module-in-real-clusters/</link><guid isPermaLink="true">https://riptides.io/from-build-to-root-cause-how-riptides-debugs-its-kernel-module-in-real-clusters/</guid><pubDate>Mon, 24 Nov 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/run-on-debug.BYxra87G_ZOIUO8.webp</enclosure></item><item><title>The Hidden Risk in Service Mesh mTLS: When Your Sidecar Becomes a Trojan Horse</title><link>https://riptides.io/the-hidden-risk-in-service-mesh-mtls-when-your-sidecar-becomes-a-trojan-horse/</link><guid isPermaLink="true">https://riptides.io/the-hidden-risk-in-service-mesh-mtls-when-your-sidecar-becomes-a-trojan-horse/</guid><pubDate>Mon, 04 Aug 2025 09:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.BBoauuXN_Z25SRP7.webp</enclosure></item><item><title>Shai-Hulud and the Secret Hunters: How npm Installs Turn into Intrusions</title><link>https://riptides.io/shai-halud-and-the-secret-hunters-how-npm-installs-turn-into-intrusions/</link><guid isPermaLink="true">https://riptides.io/shai-halud-and-the-secret-hunters-how-npm-installs-turn-into-intrusions/</guid><pubDate>Thu, 18 Sep 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.BawS17CC_ZQoAFM.webp</enclosure></item><item><title>Shai-Hulud 2.0: A Technical Breakdown and Why Secrets Need to Die</title><link>https://riptides.io/shai-hulud-2-0-a-technical-breakdown-and-why-secrets-need-to-die/</link><guid isPermaLink="true">https://riptides.io/shai-hulud-2-0-a-technical-breakdown-and-why-secrets-need-to-die/</guid><pubDate>Wed, 26 Nov 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.Bsv6j9Xl_26QOMY.webp</enclosure></item><item><title>Introduction to SPIFFE: Secure Identity for Workloads</title><link>https://riptides.io/introduction-to-spiffe-secure-identity-for-workloads/</link><guid isPermaLink="true">https://riptides.io/introduction-to-spiffe-secure-identity-for-workloads/</guid><pubDate>Wed, 23 Apr 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.DTIU1BVK_ZTqCBO.webp</enclosure></item><item><title>SPIFFE Identity Federation: Extending Trust Across Boundaries</title><link>https://riptides.io/spiffe-identity-federation-extending-trust-across-boundaries/</link><guid isPermaLink="true">https://riptides.io/spiffe-identity-federation-extending-trust-across-boundaries/</guid><pubDate>Mon, 09 Feb 2026 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.DvaF_zK__Z1fXHt7.webp</enclosure></item><item><title>SPIFFE Meets OAuth2: Current landspace for Secure Workload Identity in the Agentic AI Era</title><link>https://riptides.io/spiffe-meets-oauth2-current-landscape-for-secure-workload-identity-in-the-agentic-ai-era/</link><guid isPermaLink="true">https://riptides.io/spiffe-meets-oauth2-current-landscape-for-secure-workload-identity-in-the-agentic-ai-era/</guid><pubDate>Mon, 15 Sep 2025 09:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.BTORi9gZ_2oFVWS.webp</enclosure></item><item><title>Bringing SPIFFE to OAuth for MCP: Secure Identity for Agentic Workloads</title><link>https://riptides.io/bringing-spiffe-to-oauth-for-mcp-secure-identity-for-agentic-workloads/</link><guid isPermaLink="true">https://riptides.io/bringing-spiffe-to-oauth-for-mcp-secure-identity-for-agentic-workloads/</guid><pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/integration.BVVxlCo__1pNBWS.webp</enclosure></item><item><title>SharePoint Under Siege: Lateral Movement Is Still Security’s Blind Spot</title><link>https://riptides.io/sharepoint-under-siege-lateral-movement-is-still-securitys-blind-spot/</link><guid isPermaLink="true">https://riptides.io/sharepoint-under-siege-lateral-movement-is-still-securitys-blind-spot/</guid><pubDate>Thu, 24 Jul 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.Cqv6Dk49_1SeuEz.webp</enclosure></item><item><title>Growing Threat of npm Supply Chain Attacks and the Runtime Fix That Stops It</title><link>https://riptides.io/growing-threat-of-npm-supply-chain-attacks/</link><guid isPermaLink="true">https://riptides.io/growing-threat-of-npm-supply-chain-attacks/</guid><pubDate>Mon, 03 Nov 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/3-demo-riptides-connections2.CVgMDJo9_1DyRiV.webp</enclosure></item><item><title>The 200-Day TLS Era Has Begun — Is Your Infrastructure Ready?</title><link>https://riptides.io/the-200-day-tls-era/</link><guid isPermaLink="true">https://riptides.io/the-200-day-tls-era/</guid><pubDate>Tue, 17 Mar 2026 10:10:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.gSpVgfAW_CChmN.webp</enclosure></item><item><title>Upgrading Riptides to TLS 1.3: Forward Secrecy and a Path to Post-Quantum mTLS</title><link>https://riptides.io/tls-13-for-internal-connections/</link><guid isPermaLink="true">https://riptides.io/tls-13-for-internal-connections/</guid><pubDate>Wed, 15 Apr 2026 06:15:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.WpcolLSl_1lyJ17.webp</enclosure></item><item><title>Secretless Azure access with tokenex: Federated Identity via User-Assigned Managed Identity</title><link>https://riptides.io/secretless-az-access-with-tokenex/</link><guid isPermaLink="true">https://riptides.io/secretless-az-access-with-tokenex/</guid><pubDate>Mon, 23 Feb 2026 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.C5Kp-M23_yKYgB.webp</enclosure></item><item><title>tokenex adds Vault &amp; OpenBao support: Exchanging ID tokens (JWTs) for secrets without static credentials</title><link>https://riptides.io/tokenex-adds-vault-openbao-support-exchanging-id-tokens-jwts-for-secrets-without-static-credentials/</link><guid isPermaLink="true">https://riptides.io/tokenex-adds-vault-openbao-support-exchanging-id-tokens-jwts-for-secrets-without-static-credentials/</guid><pubDate>Mon, 19 Jan 2026 14:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog2.BQ9ob2qS_hVx4T.webp</enclosure></item><item><title>Introducing tokenex: an open source Go library for fetching and refreshing credentials</title><link>https://riptides.io/introducing-tokenex-an-open-source-go-library-for-fetching-and-refreshing-cloud-credentials/</link><guid isPermaLink="true">https://riptides.io/introducing-tokenex-an-open-source-go-library-for-fetching-and-refreshing-cloud-credentials/</guid><pubDate>Mon, 29 Sep 2025 10:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/imageinblog.B-7HlQXw_1zh7uh.webp</enclosure></item><item><title>The Critical Role of Unique Workload Identity in Modern Infrastructure</title><link>https://riptides.io/the-critical-role-of-unique-workload-identity-in-modern-infrastructure/</link><guid isPermaLink="true">https://riptides.io/the-critical-role-of-unique-workload-identity-in-modern-infrastructure/</guid><pubDate>Wed, 07 May 2025 09:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/681cc1ba9e1c87678c6867c7_thumb.C9N-qMrj_1DDxfv.webp</enclosure></item><item><title>Workload Attestation and Metadata Gathering: Building Trust from the Ground Up</title><link>https://riptides.io/workload-attestation-and-metadata-gathering-building-trust-from-the-ground-up/</link><guid isPermaLink="true">https://riptides.io/workload-attestation-and-metadata-gathering-building-trust-from-the-ground-up/</guid><pubDate>Mon, 13 Oct 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/68ecc25b5af2aeb52e384805.DtATAL6D_Z1t4qOr.webp</enclosure></item><item><title>X.509 Certificates in the Age of SPIFFE and Zero Trust</title><link>https://riptides.io/x-509-certificates-in-the-age-of-spiffe-and-zero-trust/</link><guid isPermaLink="true">https://riptides.io/x-509-certificates-in-the-age-of-spiffe-and-zero-trust/</guid><pubDate>Mon, 23 Jun 2025 09:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.DI8SP6P-_pnOXg.webp</enclosure></item><item><title>Zero Trust: From Perimeter to Kernel — How Riptides Pushes the Boundary</title><link>https://riptides.io/zero-trust-from-perimeter-to-kernel---how-riptides-pushes-the-boundary/</link><guid isPermaLink="true">https://riptides.io/zero-trust-from-perimeter-to-kernel---how-riptides-pushes-the-boundary/</guid><pubDate>Thu, 09 Oct 2025 11:00:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.BULerc7X_5zohx.webp</enclosure></item><item><title>From Kernel WASM to User-Space Policy Evaluation: Lessons Learned at Riptides</title><link>https://riptides.io/from-kernel-wasm-to-user-space-policy-evaluation-lessons-learned-at-riptides/</link><guid isPermaLink="true">https://riptides.io/from-kernel-wasm-to-user-space-policy-evaluation-lessons-learned-at-riptides/</guid><pubDate>Mon, 06 Oct 2025 10:52:00 GMT</pubDate><enclosure>https://blog.riptides.io/_astro/poster.DfXBBxYA_Z276FOW.webp</enclosure></item></channel></rss>