infrared-100-2025

Upwind Named to Redpoint’s InfraRed 100 for the Second Year in a Row

Denise Ashur June 10, 2025

Upwind Named to Redpoint’s InfraRed 100 for the Second Year in a Row

We’re honored to share that Upwind has been named to Redpoint Ventures’ 2025 InfraRed 100, a list that recognizes the most promising private companies driving innovation in cloud infrastructure. This is our second year in a row receiving this recognition, and we’re incredibly humbled to be included alongside so many trailblazers in the space.

The InfraRed 100 highlights companies pushing boundaries across cloud infrastructure, developer tools, cybersecurity, AI/ML platforms, and observability. At Upwind, we’ve been focused on building the next generation of cloud security — one that’s context-aware, real-time, and built for modern security teams.

A Growing Need for Runtime-Aware Cloud Security

Cloud-native development has changed the threat landscape. Static analysis and periodic scans are no longer enough – teams need visibility and protection that evolve at the speed of modern deployments. That’s why we built the Upwind Cloud Security Platform to prioritize and remediate real risk, not just surface noise.

Over the past year, we’ve:

  • Expanded support for more cloud technologies and environments
  • Enhanced runtime protection capabilities powered by eBPF
  • Delivered deeper integrations with developer workflows and CI/CD pipelines
  • Expanded our comprehensive CADR to holistically protect cloud infrastructure and applications
  • Helped teams reduce alert fatigue and focus on what truly matters

Our mission remains clear: to build the world’s best cloud security platform and bring clarity and control to cloud security teams, without slowing down developers.

Thank You

We’re grateful to our customers, partners, and team for helping us get here – and to the Redpoint team for recognizing the work we’re doing. Being part of the InfraRed 100 again is validation that we’re building something that matters.

If you’d like to learn more about what we’re building or see Upwind in action, get in touch with us or request a demo.

Here’s to another year of innovation, and to securing the future of cloud-native applications.

Contents

Further Reading

You Can't Crowdsource Your Way to a Live Adversary

You Can’t Crowdsource Your Way to a Live Adversary

Bug bounty programs were built on a single assumption: that finding a vulnerability was the hard, scarce, expensive part worth paying for. That assumption held for about a decade, then AI erased it. When anyone can point a model at your code and receive a plausible-looking finding back in seconds, a crowd of finders stops…
arrayref Supply Chain Attack

arrayref Supply Chain Attack: A One-Line Build Dependency Ran a Backdoor During cargo build

Key Takeaways Executive Summary arrayref 0.3.10 is a hijacked release of a widely used Rust utility crate that added one dependency, proc-macro1, whose build script downloaded and executed a remote binary at compile time. The release was live on crates.io for 86 minutes on August 20, 2026, alongside [email protected] and [email protected] published from the same…
Yuval_ArgoCD Research

ArgoCD repoURL XSS: How a Missing Scheme Check Becomes Cluster Takeover 

Executive Summary  This stored cross-site scripting (XSS) vulnerability in ArgoCD [versions <= 3.4.4] allows an attacker who can create or modify an Application to persist a malicious repoURL, which is subsequently executed in an administrator's browser within the Argo CD origin. Because the payload executes in the context of the administrator's authenticated session, and because…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS