HashiCorp
Latest HashiCorp news, announcements & analysis
Infra
Packer Now Signs Every Machine Image You Build
HashiCorp's Packer can now automatically generate and sign attestations for every machine image it builds. This gives teams a verifiable, cryptographic record to prove an image's origin and integrity, strengthening software supply chain security.
Ashish Kale ·
Infra
GitLab Wants to Be Your Only Secrets Manager
GitLab's Secrets Manager now works with Terraform and Kubernetes via the External Secrets Operator. This lets teams stop managing separate secret stores, simplifying workflows and boosting security by having one central place for all credentials.
Ashish Kale ·
Infra
HashiCorp Vault Now Secures Kubernetes From the Outside
HashiCorp released a public beta of a new Vault feature for Kubernetes. It lets you manage the encryption keys for your cluster's sensitive data outside of Kubernetes itself, adding a powerful new layer of security and compliance.
Ashish Kale ·
Infra
Terraform Adds Native Policy Checks to Your Workflow
HashiCorp's Terraform now has a built-in policy framework called tfpolicy. This lets teams write and enforce infrastructure rules using the same HCL language they already use, simplifying compliance and security without needing extra tools.
Ashish Kale ·
Infra
Build Serverless Apps That Run on Any Cloud
A new architectural approach uses Clean Architecture to make serverless applications portable. This lets developers write business logic once and deploy it across multiple clouds like AWS and Azure, avoiding expensive vendor lock-in.
Ashish Kale ·
Infra
Secure Remote Access Just Got a Replay Button
HashiCorp's Boundary 1.0 is now production-ready, adding a key feature: RDP session recording. This helps security and IT teams monitor remote desktop access and meet strict compliance and audit requirements.
Ashish Kale ·
Security
IBM and HashiCorp Automate a Major Security Chore
IBM and HashiCorp have updated IBM Vault Enterprise 2.0 to automatically manage LDAP credentials. This helps IT and security teams save time and reduce risk by automating password rotation and the entire identity lifecycle.
Neeraj Dhiman ·
Infra
Terraform Adds Long-Awaited Dynamic Code Modules
Terraform 1.15 now lets developers dynamically change where their code modules are sourced from. This long-requested feature makes infrastructure management more flexible and powerful, especially for complex, multi-environment setups.
Ashish Kale ·
Security
Hackers Breached Dashlane to Download Encrypted Vaults
Attackers breached Dashlane's systems and downloaded fewer than 20 encrypted user password vaults. While the data remains encrypted, the incident highlights a vulnerability in the company's API that allowed for a coordinated brute-force campaign.
Neeraj Dhiman ·
Infra
AI Can Now Manage Your Terraform Infrastructure
HashiCorp has released a new open-source tool that allows AI assistants to manage cloud infrastructure using Terraform. This aims to boost productivity by automating repetitive tasks for developers and IT teams, letting them focus on more critical work.
Ashish Kale ·
Infra
Packer Now Mandates Security in Cloud Images
HCP Packer now lets platform teams enforce security and compliance rules on all cloud images. The new 'enforced provisioners' feature ensures every image built across an organization automatically meets central security standards, simplifying governance.
Ashish Kale ·
Infra
HashiCorp Vault Adds Standard User Provisioning
HashiCorp Vault has introduced support for SCIM, a standard protocol for automating user identity management. This update enables enterprises to automatically provision and manage users and groups in Vault, ensuring consistency with their primary identity providers. It simplifies access control, enhances security, and improves operational efficiency.
Ashish Kale ·
Infra
Formae adds Kubernetes and Helm support
Platform Engineering Labs has updated its open-source Infrastructure-as-Code tool, formae. The update introduces full Kubernetes support, native Helm integration, and compatibility with Terraform's .tfvars files. A new public plugin hub was also launched to simplify cloud-native infrastructure management.
Ashish Kale ·