DevOps Bulletin
Subscribe
Sign in
Home
Chat
Books
Sponsorship
Roadmap
About
Latest
Top
Discussions
Digest #222: AI breaches AWS in 72 hours, GitHub's agent leaks private repos, Argo CD cluster takeover and Lambda MicroVMs replace CI…
Plus why you shouldn't trust Trusted Publishing, running local models for agentic coding, and PR preview environments that cut staging costs 78%.
24 hrs ago
•
Mohamed Labouardy
1
2
Digest #221: LLMjacking goes offensive, scaling to 1 million Lambda functions, databases off Kubernetes and Ingress NGINX to Gateway API
Plus: attackers weaponizing stolen AI compute, pgvector at scale on Aurora, Claude Code for IaC, and how to corrupt a SQLite file on purpose.
Jul 3
•
Mohamed Labouardy
4
2
June 2026
Digest #220: Red Hat's npm supply chain attack, malware in AI instruction files, AWS Lambda MicroVMs and a 2x faster test suite
This week in DevOps: the Red Hat npm credential-stealing attack, malware in AI agent files, AWS Lambda MicroVMs, Postgres 19 beta, and how to get good…
Jun 26
•
Mohamed Labouardy
3
1
Digest #219: Fable 5's 1,810-line PR in 30 minutes, GitHub's rebuild revolt, Postgres' only scalable delete and AI-narrated crypto malware
From an AI model opening an 1,810-line pull request on its own in half an hour, to Cursor, GitLab and Zed all agreeing GitHub is broken while…
Jun 19
•
Mohamed Labouardy
4
1
Digest #218: a $500K Google AI hack, Meta AI handing over Instagram accounts, AWS's new FinOps Agent and CockroachDB's vector indexing
Researcher pointed Claude at 3,600 leaked Google API keys and walked away with $500,000 in bounties this week, while attackers got into high-profile…
Jun 12
•
Mohamed Labouardy
4
1
1
Digest #217: Kubernetes ditches Dashboard for Headlamp, Google API keys that won't die, 1-click GitHub token theft and the "Leaving AWS…
Kubernetes Dashboard to Headlamp migration, Google Cloud API key security, GitHub token theft via VSCode, AWS cost optimization, Pulumi EKS, Rust, and…
Jun 5
•
Mohamed Labouardy
3
2
May 2026
Digest #216: GitHub Actions false suspensions, AI agent chains CVE to internal DB in 4 pivots, Gemini 3.5 deletes 28K lines and Postgres for…
LLM agent chains CVE to internal DB in 4 pivots, Gemini deletes 28K prod lines, plus Terraform, Snowflake cost cuts, and K8s scheduling.
May 29
•
Mohamed Labouardy
3
1
Digest #215: AI DevOps Engineer, GitHub's 3,800-Repo Breach, Docker's Hidden microVM API, Terraform 1.15 and compromising Claude Code
A malicious VSCode extension compromised 3,800 GitHub repositories, Rivet's team reverse-engineered Docker Sandbox's undocumented microVM API, Terraform…
May 22
•
Mohamed Labouardy
3
1
Digest #214: GitHub Under AI Load, microVMs Aren't Optional Anymore, AI Assistants Leak Your Chats and StackOverflow Drops Ingress-NGINX
GitHub buckles under AI-generated code volume, pushing users toward Forgejo. Plus: microVM isolation goes mandatory, trackers leak Claude and ChatGPT…
May 15
•
Mohamed Labouardy
4
1
Digest #213: Terraform is dead, AI finds 20-year-old PostgreSQL bugs, AWS ships S3 Files and 54 days with port 22 open
AI uncovers 20-year-old RCE bugs in PostgreSQL and MariaDB, AWS ships a native filesystem layer in front of S3, and one engineer documents 54 days of…
May 8
•
Mohamed Labouardy
5
2
Digest #212: GitHub Actions Weakest Link, Lambda's Invisible Network, Cloudflare's AI Stack and Terragrunt is Dead
Pulling back the curtain on Lambda's invisible network to GitHub Actions being the biggest CI/CD attack surface. Add Cloudflare sharing the internal AI…
May 1
•
Mohamed Labouardy
4
2
April 2026
Digest #211: AWS DevOps Agent, AI Cloud Attacks and Security Skills for AI Agents
LMDeploy CVE exploited in 12 hours, autonomous AI cloud attacks, GitHub Actions threat model, and 7 open source tools for DevOps and security teams.
Apr 29
•
Mohamed Labouardy
3
1
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts