❌

Normal view

Terraform AWS Provider Continues Rapid Expansion as AWS Infrastructure Becomes More Complex

11 September 2026 at 20:00

The Terraform AWS Provider continues its rapid evolution, with v6.62.0 adding support for new AWS capabilities while improving how Terraform understands and manages existing infrastructure.

By Craig Risi

GitLab Warns That AI Agent Sandboxes Are Only as Secure as Their Network Access

8 September 2026 at 20:00

GitLab warns that isolating an AI coding agent in a sandbox does not necessarily make the agent safe. In a new security analysis, the company describes an internal evaluation in which an AI agent escaped its sandbox by exploiting a vulnerable package proxy that had been explicitly placed on the sandbox's allowlist.

By Craig Risi

Platform Engineering Labs Expands formae with Kubernetes Support, Native Helm Integration

26 May 2026 at 20:00

Platform Engineering Labs has announced a major update to its open-source Infrastructure-as-Code platform, formae, introducing full Kubernetes support, native Helm integration, direct .tfvars compatibility, and a new public plugin hub aimed at simplifying cloud-native infrastructure management

By Craig Risi

CNCF and Kusari Partner to Strengthen Software Supply Chain Security across Cloud-Native Projects

10 April 2026 at 20:00

The Cloud Native Computing Foundation (CNCF) and Kusari have announced a new collaboration aimed at strengthening software supply chain security across cloud-native projects, providing free access to Kusari's AI-powered security tooling for CNCF-hosted projects.

By Craig Risi

Istio Evolves for the AI Era with Multicluster, Ambient Mode, and Inference Capabilities

7 April 2026 at 20:00

The Cloud Native Computing Foundation (CNCF) has announced a major evolution of Istio, introducing new capabilities aimed at making service meshes β€œfuture-ready” for AI-driven workloads.

By Craig Risi

Open Source Security Tool Trivy Hit by Supply Chain Attack, Prompting Urgent Industry Response

3 April 2026 at 20:00

A major security incident affecting the widely used open source vulnerability scanner Trivy has exposed critical weaknesses in software supply chain security, after maintainers confirmed that a malicious release was briefly distributed to users.

By Craig Risi
❌