Advisories, case studies, and working papers — peer-reviewed internally, published in the open, signed by the authors. The first pieces are in preparation. Subscribe to be notified when the feed opens.
Part of our work isn't a product or an advisory — it's shared infrastructure for the whole field. We're contributing to a community effort to build an open source of truth for cloud privilege-escalation paths: the chains an attacker actually walks, documented once, in the open, for every defender to reuse. Alongside it we publish practical security guides for the wider community. First contributions are in preparation.
An open, vendor-neutral reference for the privilege-escalation paths that matter across cloud IAM — so teams stop re-deriving the same chains in private. Built in collaboration with others across the cloud-security community.
Practical, no-vendor-pitch guides to cloud authorization and privilege risk — the kind of writing we wanted when we were on the operator side. Published in the open as they're ready.
One email when we publish. No marketing, no digest. Research, case studies, advisories.
We're not running an email list yet. Send us a one-line mail and we'll add you to the first-publication notification when the feed opens.
research>pragmable.com