<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Case Study on Rietta Cybersecurity</title>
    <link>https://rietta.com/categories/case-study/</link>
    <description>Recent content in Case Study on Rietta Cybersecurity</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en-us</language>
    <copyright>1999-2026 Rietta Inc. All Rights Reserved.</copyright>
    <atom:link href="https://rietta.com/categories/case-study/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Government Rails Site Hit Hours After CVE Patch</title>
      <link>https://rietta.com/blog/ruby-on-rails-cve-exploited-hours-after-patch/</link>
      <pubDate>Fri, 04 Sep 2026 12:55:00 -0400</pubDate>
      <guid>https://rietta.com/blog/ruby-on-rails-cve-exploited-hours-after-patch/</guid>
      <description>After hours on Wednesday, July 29, 2026, Rietta executed our emergency hotfix procedure across our entire client base for sites impacted by a severe remote code execution vulnerability in ActiveStorage, a component of Ruby on Rails 8 and newer. We worked off the initial GitHub Security Advisory, published the same day the patch shipped. Ethiack, one of the research teams that discovered the flaw, dubbed it KindaRails2Shell (CVE-2026-66066) in their initial disclosure post that same day, July 29th, with a full technical deep-dive following the next day on July 30th.</description>
    </item>
    <item>
      <title>Securing the Unconnected: Air Gap Windows Application Code Review and Developer Training Success</title>
      <link>https://rietta.com/blog/air-gap-windows-code-review-training/</link>
      <pubDate>Mon, 05 May 2025 08:00:00 -0500</pubDate>
      <guid>https://rietta.com/blog/air-gap-windows-code-review-training/</guid>
      <description>Client Background Our partner, New Oceans Enterprises, is led by Donna Gallaher, an experienced cybersecurity leader with extensive executive experience. New Oceans Enterprises was engaged by a client in a regulated industry to act as their vCISO. The task was to develop a comprehensive security program to comply with their customer security requirements and regulatory demands. This client was mandated to undergo a thorough security audit for contract compliance. One stumbling block was that the architecture of their solution was not aligned with the assumptions made by the mandate.</description>
    </item>
    <item>
      <title>Case Study: Complex Legacy Google Datastore Conversion to PostgreSQL on AWS</title>
      <link>https://rietta.com/blog/google-datastore-conversion-to-postgresql/</link>
      <pubDate>Wed, 24 Jul 2024 08:00:00 -0500</pubDate>
      <guid>https://rietta.com/blog/google-datastore-conversion-to-postgresql/</guid>
      <description>Client Background Our client is a State government agency operating a variety of custom web applications used by staff and elected officials for critical business functions. These applications, developed over the years by various contractors, serve as vital tools for the agency’s operations.&#xA;All of this data was tied up in a Google Cloud service that was sunset and discontinued without a replacement, and without migration tooling from either Google or AWS, the two largest cloud providers in the world.</description>
    </item>
    <item>
      <title>Case Study: Migration of Public Service On-Prem to AWS Cloud</title>
      <link>https://rietta.com/blog/on-prem-to-aws-elastic-container-service/</link>
      <pubDate>Tue, 04 Oct 2022 08:00:00 -0500</pubDate>
      <guid>https://rietta.com/blog/on-prem-to-aws-elastic-container-service/</guid>
      <description>Client Background Client is a State government agency. They operate a variety of custom web applications that are used by staff and elected officials for critical business functions. These applications have been developed over the years by various contractors.&#xA;Client&amp;rsquo;s Tech Stack Prior to the engagement with Rietta, client already had a full-stack Ruby on Rails web application that was built by a previous contractor. The application was deployed to an on-prem virtualized Linux server using Capistrano over SSH.</description>
    </item>
    <item>
      <title>Case Study: Complex Insurance Document Solution with LibreOffice, Docker, and AWS</title>
      <link>https://rietta.com/blog/document-generation-in-pure-open-source/</link>
      <pubDate>Mon, 26 Sep 2022 11:00:00 -0500</pubDate>
      <guid>https://rietta.com/blog/document-generation-in-pure-open-source/</guid>
      <description>Client Background Client is an SaaS provider for the insurance industry. They have a small team of full time developers and contractors working to build and maintain a solution for their insurance industry customers. The application has a need to fill in details in Microsoft Word and Microsoft Excel spreadsheet templates that can then be downloaded by users as both editable files and rendered as printable PDF documents.&#xA;Client&amp;rsquo;s Tech Stack Prior to the engagement with Rietta, client already had a SaaS solution built in the Ruby on Rails web application framework.</description>
    </item>
    <item>
      <title>Dockerizing Development Saves Serious Money for Small Agency</title>
      <link>https://rietta.com/blog/dockerized-cost-savings/</link>
      <pubDate>Wed, 21 Jul 2021 07:00:00 -0500</pubDate>
      <guid>https://rietta.com/blog/dockerized-cost-savings/</guid>
      <description>We&amp;rsquo;ve written much about Docker on this website in the last year, but today I wanted to share with you from an agency owner&amp;rsquo;s perspective. Last year, we made the decision to invest heavily in Dockerizing the web applications that we maintain. We decided to implement Docker not just for ease of deployment but, more importantly, to improve our development team&amp;rsquo;s efficiency at code base swapping. We made a substantial cash investment in research and development to make this happen and are starting to see the investment pay dividends.</description>
    </item>
  </channel>
</rss>
