Cloud Native stories
Aqua Security's Trivy GitHub Action was hijacked to ship infostealer code via CI/CD pipelines, exposing secrets across downstream users.
OpenSSF adds new members and launches AI security, supply chain and training initiatives after securing USD $12.5 million in funding.
Google has launched Antigravity, a full-stack coding agent in AI Studio that turns text prompts into collaborative, production-ready web apps.
Delinea warns that rapid AI rollout is eroding identity controls, leaving machine accounts exposed and widening security blind spots.
Komodor upgrades Klaudia AI into a multi-agent SRE platform, coordinating 50+ specialised bots to investigate and fix complex outages.
Token Security launches intent-based controls to govern AI agents' access by purpose, aiming to curb over-privileged, autonomous system behaviour.
Miggo and Grafana link runtime security to Grafana Cloud telemetry, promising major cuts to critical vulnerability noise for joint users.
Rushing to embrace AI, most firms are easing identity controls despite visibility gaps around powerful non-human and AI-linked accounts.
Chainguard launches a free Catalog Starter pack, giving developers five production-grade secure container images from its vast library.
Spacelift debuts an AI-powered natural-language layer to accelerate cloud infrastructure work while preserving existing IaC and GitOps flows.
1Password unveils Unified Access to secure AI agents and machine credentials, promising endpoint-to-agent visibility for security teams.
Cloud security startup Native launches from stealth with USD $42m to unify preventive, intent-based controls across major public clouds.
AI ambitions and cost pressures are reshaping observability, as teams centralise tools, embrace SaaS and double down on open standards.
Featherless launches Managed OpenClaw, a flat-fee managed runtime and model bundle aimed at taming the costs of always-on agentic AI.
Upwind integrates its runtime cloud security with Azure, offering unified protection and Sentinel tie-ins via the Microsoft Marketplace.
F5 expands its app security platform with AI risk tools, zero trust access and post-quantum crypto to protect modern hybrid workloads.
In cloud‑native DevOps, transparency-not raw speed-now determines how safely, cheaply and reliably teams can scale complex systems.
Meshcloud joins CNCF and The Linux Foundation to push open standards, cloud-native tooling and digital sovereignty for multi-cloud platforms.
Australian firms are easing digital identity checks to speed AI rollouts, even as doubts grow over governing non-human access and risk.
Commvault extends its cloud data protection platform to New Zealand, promising in-country sovereignty, faster recovery and unified resilience.