<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Rift Research</title>
    <link>https://riftsec.io/research</link>
    <atom:link href="https://riftsec.io/feed.xml" rel="self" type="application/rss+xml" />
    <description>Vulnerability write-ups, benchmarks, and research from the Rift team.</description>
    <language>en</language>
    <lastBuildDate>Wed, 08 Jul 2026 05:58:19 GMT</lastBuildDate>
    <item>
      <title>How an agent chained an SSRF into cloud-metadata credentials</title>
      <link>https://riftsec.io/research/chaining-ssrf-to-cloud-metadata</link>
      <guid isPermaLink="true">https://riftsec.io/research/chaining-ssrf-to-cloud-metadata</guid>
      <pubDate>Wed, 04 Mar 2026 00:00:00 GMT</pubDate>
      <category>Guide</category>
      <description>A walk through the reasoning chain, the exploit, and the responsible-disclosure timeline, start to finish, no human in the loop.</description>
    </item>
    <item>
      <title>Separating explore from verify to kill false positives</title>
      <link>https://riftsec.io/research/separating-explore-from-verify</link>
      <guid isPermaLink="true">https://riftsec.io/research/separating-explore-from-verify</guid>
      <pubDate>Wed, 18 Feb 2026 00:00:00 GMT</pubDate>
      <category>Engineering</category>
      <description>Why the agent that finds a weakness should never be the one that decides it&apos;s real, and what that buys you.</description>
    </item>
  </channel>
</rss>
