DevOps Bulletin
Subscribe
Sign in
Home
Chat
Books
Sponsorship
Roadmap
About
Latest
Top
Discussions
Digest #231: Jenkins is Dead? GitHub Actions Alternative, 1 in 10 LiteLLM Gateways Still Use the Demo Key, Spotify's 90% Token Cut and Git…
Also: how Datadog absorbed 20x more Git traffic from CI without slowing down, the benchmark that says RTK doesn't make AI coding cheaper, the Karpenter…
Sep 11
•
Mohamed Labouardy
3
2
Digest #230: AWS root accounts sprayed at 150+ orgs, Shai-Hulud hunts 469 secret paths, Nvidia buys Hugging Face and Kubernetes scales to…
Also inside: a Cilium bug made pods take 90s to start, what happened when someone broke a K8s cluster on purpose to test AI debugging agents, and how…
Sep 4
•
Mohamed Labouardy
3
1
August 2026
Digest #229: AWS acquires DuckDB, Cloudflare frees 100TB of RAM, your executable as a SQLite database and on-call as theatre
Also inside: a $500-a-month AI security analyst built on AWS, Databricks running 2,000 AI incident investigations a day, and proof that plan mode…
Aug 28
•
Mohamed Labouardy
4
2
Digest #228: Cloudflare's 131,000 AI code reviews a month at $0.98 each, Postgres 300x faster, Git rebuilt on S3 and Linux 7.2
Also inside: why a custom linter beats an AI reviewer, Werner Vogels on the control planes behind Aurora DSQL, and how PlanetScale backs up petabytes of…
Aug 21
•
Mohamed Labouardy
3
2
Digest #227: Terabytes of credentials leaked in a supply chain attack, Figma's security agents, Kubernetes validation cut to 2 minutes and…
Also inside: a Lambda that spiked an AWS bill 1,200% in one weekend, and why cloning a coding-agent repo runs code before your first prompt.
Aug 14
•
Mohamed Labouardy
3
2
Digest #226: OpenClaw agents with credentials to everything, Cloudflare OS, Claude as a Postgres engine and €1.5M off a multi-cloud bill
A single semicolon that gave remote code execution on github.com, poisoning an LLM through S3 Vectors metadata, and the reason COUNT(DISTINCT) quietly…
Aug 7
•
Mohamed Labouardy
4
2
July 2026
Digest #225: GitHub Actions abuse powers a cPanel exploit wave, AWS's Claude apps gateway and auto-applied Terraform
Also: an AI SRE agent that triages incidents before you open your laptop, why your pod died of "out of ephemeral storage" on a half-empty disk, and the…
Jul 31
•
Mohamed Labouardy
4
2
Digest #224: AsyncAPI npm packages hijacked in 8 minutes, 222 fake GitHub repos, an Azure tenant lost in an hour and the death of small PRs
Also inside: HashiCorp's HCL-native policy engine for Terraform, a $19-a-month hosting bill cut to zero, and a Kubernetes rewritten from scratch in Rust…
Jul 24
•
Mohamed Labouardy
3
1
Digest #223: AWS bills a user $140B, a kubelet leak in Kubernetes 1.36, Slack's Shipyard EC2 platform and pods vs AI agents
Plus the four horsemen behind thousands of Postgres outages, how Uber solved the identity crisis for AI agents, and catching full table scans in SQLite…
Jul 17
•
Mohamed Labouardy
3
1
Digest #222: AI breaches AWS in 72 hours, GitHub's agent leaks private repos, Argo CD cluster takeover and Lambda MicroVMs replace CI…
Plus why you shouldn't trust Trusted Publishing, running local models for agentic coding, and PR preview environments that cut staging costs 78%.
Jul 10
•
Mohamed Labouardy
3
3
Digest #221: LLMjacking goes offensive, scaling to 1 million Lambda functions, databases off Kubernetes and Ingress NGINX to Gateway API
Plus: attackers weaponizing stolen AI compute, pgvector at scale on Aurora, Claude Code for IaC, and how to corrupt a SQLite file on purpose.
Jul 3
•
Mohamed Labouardy
4
2
June 2026
Digest #220: Red Hat's npm supply chain attack, malware in AI instruction files, AWS Lambda MicroVMs and a 2x faster test suite
This week in DevOps: the Red Hat npm credential-stealing attack, malware in AI agent files, AWS Lambda MicroVMs, Postgres 19 beta, and how to get good…
Jun 26
•
Mohamed Labouardy
3
1
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts