Skip to content

Linkzine

  • About
  • Privacy Policy
  • Terms of Service
  • Imprint
  • Sponsor Disclosure
  • Amazon Q silently ran MCP servers from cloned repos; Kubernetes pushes back on AI-generated PRs

    The Amazon Q MCP story is the supply-chain incident that makes every other hardening post this week feel more urgent – and Kubernetes maintainers are already fighting a different kind of automated noise in their review queue.

    Thorsten
    June 29, 2026

  • Lambda gets stateful MicroVMs; 94% of orgs report cloud breaches

    Lambda now hands you a full Firecracker VM per session, Cloudflare spent six weeks chasing a race condition in a Rust HTTP library, and Trail of Bits just showed what a frontier model actually does when pointed at real codebases – 64 PRs, not a blog post.

    Thorsten
    June 23, 2026

  • AUR supply-chain attack: orphaned packages pushed malware for days

    Quiet weekend, but systemd v261 and the AUR supply-chain saga both deserve your attention before Monday standup.

    Thorsten
    June 22, 2026

  • AI-generated patches slow Linux ARM64; AWS bets big on agentic everything

    AI-generated patches are backing up Will Deacon’s ARM64 review queue, AWS is shipping agents that act before asking permission, and the LeadDev piece quietly explains why your deployment metrics no longer mean what you think they mean.

    Thorsten
    June 18, 2026

  • AI spam kills AppleTalk; agents argue over your incidents

    AI-generated patch spam killed AppleTalk, AI agents are blamed for misrouting incidents, and a 70-year pattern says the ‘no more code’ promise won’t land any differently this time.

    Thorsten
    June 17, 2026

  • Linux 7.2 lands cache-aware scheduling; curl closes its vuln queue for the summer

    Linux 7.2 is landing real work – cache-aware scheduling, a two-line IOPS fix – while Daniel Stenberg draws a line on CVE noise. Google’s data-agent announcement is mostly previews dressed as GA.

    Thorsten
    June 16, 2026

  • AUR hit by second, more sophisticated malware wave — 1,500+ packages affected

    Linux 7.1 ships while 7.2 is already bumping compiler minimums, the AUR got hit twice in a day with the second wave obfuscated well enough to slip past the initial response, and a DNS caching quirk means dead domains can still look alive in your monitoring.

    Thorsten
    June 15, 2026

Previous Page

Blog at WordPress.com. newsletter

Linkzine

  • Subscribe Subscribed
    • Linkzine
    • Already have a WordPress.com account? Log in now.
    • Linkzine
    • Subscribe Subscribed
    • Sign up
    • Log in
    • Report this content
    • View site in Reader
    • Manage subscriptions
    • Collapse this bar