Part 2 of a series on implementing zero trust in Red Hat OpenShift with the layered zero trust validated pattern (ZTVP)In our previous article, we…
Category: Red Hat Security
No time to lose: Why post-quantum security for financial services must start now
Post-quantum cryptography: The emerging threatThe transition to post-quantum cryptography (PQC) is becoming an urgent priority for the global financial…
Substituting IP address evaluation with hardware-rooted sovereign zero trust
The need for trustworthy networking, reliable cloud access, and compliance with digital sovereignty requirements has increased substantially in recent…
Substituting IP address evaluation with hardware-rooted sovereign zero trust
The need for trustworthy networking, reliable cloud access, and compliance with digital sovereignty requirements has increased substantially in recent…
Strengthening the open source defense layer: Red Hat joins NVIDIA in the Open Secure AI Alliance
As AI capabilities advance, they transform the security landscape in real time. To address these challenges at scale, no single company can act in…
Beyond the blind spots: Defeating frontier AI model threats in your application development process
Looking back a few months ago, it's wild to think about how much things have changed in the world of cybersecurity. Not long ago, running a few outdated application runtimes, pushing Common Vulnerabilities and Exposures (CVE) patches to "next month's…
Preparing for Q-day: Four steps to prepare your hybrid cloud today
The arrival of a cryptographically relevant quantum computer, often referred to as Q-day, is moving from a distant theoretical mathematical challenge to an urgent timeline that security teams must plan for today. Bad actors are already engaging in harvest now,…
Why Operational Resilience and Digital Sovereignty Top the CIO Agenda – by Martin Lentle
For CIOs across the Middle East Africa, keeping systems online is the foundation of customer trust. As public sector institutions and private enterprises accelerate their digital transformation, maintaining this operational uptime is the top priority. In a complex business landscape,…
Agentic AI, Red Hat OpenShift, and NVIDIA: Shifting to precision security
Red Hat is pioneering the use of agentic AI to shift vulnerability management from volume to precision. By combining the security-hardened foundation of Red Hat OpenShift with advanced AI frameworks from NVIDIA, we’re delivering actionable security intelligence that provides genuine…
Strengthening the open source supply chain with Red Hat partners
Earlier today, Red Hat and IBM unveiled two commercial offerings of Lightwell to deliver automated vulnerability remediation at scale. However, true security requires a movement—a connected network of industry leaders and experts working in lockstep. Vulnerabilities in the open source…
The new currency of enterprise velocity
For more than 20 years in this industry, the conversation around enterprise software procurement followed a highly predictable script. An organisation would buy a subscription for an open source solution, lock down a certified version, and effectively try never to…
BackendTLSPolicy expands Gateway API transport security
BackendTLSPolicy is a Kubernetes resource that allows the specification of additional Transport Layer Security (TLS) encryption in Gateway API. It gives Gateway API users on Red Hat OpenShift access to the same level of secured traffic as the OpenShift route…
Govern privileged workload boundaries with Red Hat OpenShift, Ansible Automation Platform, and Identity Management
Platform engineering, security architecture, and operations teams are being asked to support 2 realities at once: modern application platforms such as Red Hat OpenShift, and long-lived Red Hat Enterprise Linux (RHEL) fleets that still run critical automation. These parallel systems…
Navigating the future: Schiphol Airport’s journey to shift-left platform engineering
At the OpenShift Commons gathering in Amsterdam at KubeCon + CloudNativeCon earlier this year, attendees got a front-row seat to the digital transformation of one of the world’s most complex hubs. Roel Donker, Technology Lead within Royal Schiphol Group, joined…
AI threats move fast. Your defenses should too.
Recently, Red Hat’s Vincent Danen highlighted how AI models found 271 real security defects in Firefox in a single pass during Mozilla’s collaboration with Anthropic. If AI can do that for defenders, it can do the same for attackers. As…
Beyond automation: Why the surge in AI-driven security vulnerabilities demands human technical advocacy
Future historians will remember spring 2026 as the dawn of AI-driven security vulnerability reporting. On April 7, Anthropic announced a preview of its Claude Mythos AI model, made available to select companies as part of Project Glasswing. The initiative claimed…
Advancing post-quantum capabilities of SSH in Red Hat Enterprise Linux
The post-quantum cryptography (PQC) transition is well underway in Red Hat Enterprise Linux (RHEL). In May 2025, RHEL 10 delivered post-quantum key exchange algorithms in three major cryptography libraries (OpenSSL, GnuTLS, and NSS), making post-quantum key exchange usable in TLS…
7 features of Red Hat Identity Management you need to know for the modern enterprise
In the era of hyper-distributed systems where AI agents traverse our networks, and hybrid clouds stretch from the edge to the core, the “who” and “what” of infrastructure access are more critical than ever. Managing identities across thousands of nodes…
10 essential reads to optimize performance, security, and ROI in the AI era
As enterprise IT organizations push deeper into operationalizing AI, the conversation has shifted from theoretical capability to hard execution metrics. Whether your team is talking with customers about scaling large language models (LLMs) on restricted local hardware, navigating the real-world…
Building the levee: Why Red Hat’s post-quantum strategy is already in production
Have you noticed the recent surge of post-quantum cryptography (PQC) roadmaps and Q-day countdowns? They’re hard to miss. Organizations across the industry are rushing to set PQC deadlines as research increasingly suggests the risk of a cryptographically-relevant quantum computer (CRQC)…