Traditional cybersecurity fails against AI-powered threats because humans with administrative privileges remain the weakest link. The Lapsus$ breaches and recent PAM vendor compromises (BeyondTrust, Okta) illustrate how centralizing authority creates catastrophic single points of failure. Tide Foundation proposes 'Emergent Authority' — an architecture where sensitive credentials never exist in a stored, stealable state. Instead, cryptographic authority materializes just-in-time only when all conditions are met. Their open-source implementation, KeyleSSH, applies this to Privileged Access Management: administrators authenticate via zero-knowledge login, no keys are ever stored or rotated, and high-consequence commands require multi-admin cryptographic approval. The goal is 'cyber immunity' — a system where even a successful breach yields nothing of value to attackers.

6m read timeFrom itnext.io
Post cover image
Table of contents
The Paradox of “Vibe Coding”Introducing Emergent AuthorityProving it with KeyleSSHThe Infrastructure for What’s Next

Sort: