Latest DevOps & Cloud News – 23 July 2026
📰 Top DevOps & Cloud Articles
Kimi K3: White House alleges Fable 5 siphoning
Source : The New Stack
Top White House technology official Michael Kratsios on Wednesday accused Chinese artificial intelligence startup Moonshot of using deceptive practices to
The post Kimi K3: White House alleges Fable 5 siphoning appeared first on The New Stack.
Agents keep changing their answers. Harness just built delivery pipelines that don’t care.
Source : The New Stack
Software delivery lifecycle company (SDLC) Harness wants to put agents through the same pipelines and controls that all application code
The post Agents keep changing their answers. Harness just built delivery pipelines that don’t care. appeared first on The New Stack.
OpenAI built support agents for its own customer service line, now it hopes big enterprises will trust them too
Source : The New Stack
The general consensus emerging across the AI and industrial spheres is that the models themselves are no longer the bottleneck
The post OpenAI built support agents for its own customer service line, now it hopes big enterprises will trust them too appeared first on The New Stack.
OpenAI’s Codex Context Cut Puts Enterprise AI Coding Workflows on Notice
Source : DevOps.com
OpenAI quietly trimmed the default input context window for GPT-5.6 inside its Codex CLI, dropping it from 372,000 tokens to 272,000 tokens. That’s a 27% cut, and developers noticed fast. The change surfaced in a GitHub pull request to the Codex CLI, and within days, developers on Reddit and X were asking why OpenAI shrunk […]VS Code 1.129 Moves Agent Sessions Out of the Editor Window
Source : DevOps.com
Microsoft has released Visual Studio Code 1.129, and the headline change isn’t a new feature so much as a new foundation. The update introduces the agent host, a dedicated process that runs AI coding agents like Copilot, Claude, and Codex outside the editor itself, using a new open protocol called the Agent Host Protocol (AHP). […]Security Risks from AI Coding Agents Expand Beyond the Sandbox: Pillar
Source : DevOps.com
AI coding assistants have become an essential part of developers’ work, automating many of the repetitive tasks – think boilerplate coding and scaffolding – that in the past ate up a lot of their time. More jobs can now get done faster. That said, such agents also represent a significant security risk, making developers – […]Beyond the Model: Why AI Agent Orchestration Requires Cloud-Native Engineering
Source : Container Journal

AI agent orchestration is a distributed systems challenge. Cloud-native engineering provides the resilience, observability, security and scalability needed for production AI.
The post Beyond the Model: Why AI Agent Orchestration Requires Cloud-Native Engineering appeared first on Cloud Native Now.
Hardening the Core: Container Validation and Malicious Package Defense
Source : Container Journal

Docker images are becoming a major software supply chain risk. Learn why scanning alone is not enough and how layered security can protect containers from build to runtime.
The post Hardening the Core: Cont
BellSoft Rings Change Bringing Zero-CVE Images to Buildpacks Users
Source : Container Journal

BellSoft is bolstering Paketo Buildpacks. As an OpenJDK vendor known for providing tested (and commercially supported) Java distributions, Bellsoft is now offering a new hardened builder image for Paketo Buildpacks.
The post BellSoft Rings Change Bringing Zero-CVE Images to Buildpacks Users appeared first on Cloud Native Now.
GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier
Source : The Hacker NewsBeginning July 27, 2026, GitHub will cut public bug bounty payouts by at least half at every severity level. Critical findings will drop from $20,000-$30,000+ to a fixed $10,000, while its permanent invite-only VIP tier will pay $30,000 or more. Reports filed before that date, including those already in GitHub's growing triage queue, will retain the previous payout terms. GitHub said the
Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs
Source : The Hacker NewsCybersecurity researchers have disclosed details of a new local privilege escalation (LPE) vulnerability in snap-confine that an unprivileged user can trigger to obtain root access and gain complete control of a target environment. The high-severity flaw, tracked as CVE-2026-8933 (CVSS score: 7.8), impacts default installations of Ubuntu Desktop 24.04, 25.10, and 26.04. The disclosure comes as
Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data
Source : The Hacker NewsCybersecurity researchers have disclosed details of a now-patched vulnerability chain in the Adobe Acrobat Chrome extension that has over 314 million users, which, if exploited, could facilitate a silent hijack of a user's WhatsApp data. The shortcoming has been codenamed HermeticReader by Guardio Labs. It's officially tracked as CVE-2026-48294 (CVSS score: 7.4), with the vulnerability