Blog

Field notes.

What we keep finding when we point Puck at real fleets — credential archaeology, blast-radius patterns, and the gap between what your tools see and what an attacker can reach.

Tool · 2026

Which credential do you rotate first?

Secret scanners find the credentials. geiger takes a pile of live ones and ranks them by blast radius — so you know which one to rotate first.

Essay · 2026

Defense by accumulation

Sixty-four years of credential security, and why the first hour of every incident is still the same question.

Essay · 2026

What I keep finding on the way to your crown jewels

Twelve years of red team engagements. The credentials are already there.