Joined April 2009
210 Photos and videos
Pinned Tweet
Replying to @RSAConference
This was such a great moment for our team @getBastionZero! Here's the video of my 3-min pitch about BastionZero, which placed 2nd amongst hundreds of startups at the #RSAC 2022 innovation sandbox. youtu.be/TFCj6l7WpHw
1
3
7
New blog post from me!
19 Jun 2025
We read NIST’s new guidance on “Implementing a Zero-Trust Architecture” so that you don’t have to. Read this to get the key points on the newly-released NIST Special Publication 1800-35. cfl.re/4kM4wiH
2
2
3
675
Sharon Goldberg retweeted
This reaction. 💙 Alisa Efimova & Misha Mitrofanov end their free skate and receive a standing ovation from the Boston crowd. #WorldFigure 📺 USA Network
9
62
540
56,492
They are missed 🕊️
One of my favorite pairs programs in my early days of figure skating fandom - Evgenia Shishkova/Vadim Naumov were playful in their musicality, original in their lifts, and phenomenal in their line. They won 1994 Worlds with this fun free skate
2
439
It's live! 🎉
22 Oct 2024
Access for Infrastructure, will enable organizations to apply #ZeroTrust controls to their servers, databases, Kubernetes clusters, and more. Today we’re announcing short-lived SSH access as the first available feature of this integration. cfl.re/3Uj5Y0N
1
15
647
SQL injection, sadly still relevant in 2024. It's the topic of "Lecture 2" of my "Intro to Infosec" course at @BUCompSci today (and has been for the last 10 years).
In April, @samwcyo and I discovered a way to bypass airport security via SQL injection in a database of crewmembers. Unfortunately, DHS ghosted us after we disclosed the issue, and the TSA attempted to cover up what we found. Here is our writeup: ian.sh/tsa
1
589
Sharon Goldberg retweeted
Congratulations to @goldbe and the BastionZero team!
With immense gratitude and excitement, I’m thrilled to announce that BastionZero is now part of Cloudflare! This is an incredible opportunity to take our tech to the the next level as we deeply integrate into the world’s largest SASE network. Watch this space!
1
1
12
1,958
Sharon Goldberg retweeted
Congratulations to @getBastionZero and @Cloudflare, as they join forces to help more IT and security teams provide zero-trust access to their servers and other infrastructure! We tip our hats to @goldbe and @Ethan_Heilman, the incredible co-founders of BastionZero. 👏
30 May 2024
Excited to share that @Cloudflare has acquired @getBastionZero, expanding the scope of Cloudflare’s VPN replacement solution beyond apps and networks to infrastructure. Welcome to the team! cfl.re/bastionzero
1
3
10
1,366
With immense gratitude and excitement, I’m thrilled to announce that BastionZero is now part of Cloudflare! This is an incredible opportunity to take our tech to the the next level as we deeply integrate into the world’s largest SASE network. Watch this space!
15
6
85
7,180
Sharon Goldberg retweeted
.@getBastionZero CEO @goldbe is teaming up with Cisco's @rlbarnes to solve a problem relevant to the #OpenPubkey community. Check out the blog below to learn more about their vision for Proof of Issuer Key Authority (PIKA). bastionzero.com/blog/introdu…

3
4
693
Sharon Goldberg retweeted
Our CEO @goldbe and @rlbarnes from Cisco are excited to introduce PIKA: Proof of Issuer Key Authority to solve a problem relevant to #OpenPubkey #oidc and JWT (JSON Web Tokens). Learn more in our latest blog: bastionzero.com/blog/introdu…

2
4
578
I really like this new blog explaining how to generalize #openpubkey to any Identity Provider.
Post explaining how we used Guillou-Quisquater (GQ) signatures add @gitlab CI/CD support to OpenPubkey This cryptographic combability trick allows #OpenPubkey to support all sorts of identity providers we never thought we could support. bastionzero.com/blog/general…
3
540
Monster release from our #OpenPubkey team!
BastionZero is proud to announce a new release of #OpenPubkey (Release v0.3.0), probably the biggest release we've ever done. The release is packed with 44 PRs from 10 different contributors at @getBastionZero, @Docker, and others. Read more. hubs.la/Q02sGsXM0
2
6
1,208
Excited to share a new @ietf draft that @rlbarnes and I just submitted to the OAuth working group. We introduce PIKA: Proof of Issue Key Authority, to solve a problem relevant to #OpenPubkey, OIDC and JWTs. ietf.org/archive/id/draft-ba…

1
1
7
923
PIKAs also allow verification of JWTs, ID Tokens and other OIDC tokens without querying the OP directly. Use PIKAs to reduce the load on a OP, or to build software #supplychain applications that need historical information about OP keys.
1
1
1
1,498
We're still digesting all the different ways that PIKAs can be used to improve the security of OIDC, SSO or software supply chain security applications. Please get in touch if you have any feedback on our new @ietf draft! ietf.org/archive/id/draft-ba…

1
2
345