Engineering

Critical Kyverno Vulnerability — CVE-2026-54523

Critical Kyverno Vulnerability — CVE-2026-54523 On July 13, 2026, a critical vulnerability was disclosed in Kyverno, the Kubernetes-native policy engine used broadly across the cloud native ecosystem for policy-as-code enforcement. The vulnerability, tracked as CVE-2026-54523 (GHSA-79gf-7frw-68m9), allows a tenant with permission to create a NamespacedMutatingPolicy…

0
Enforcing real time, payload aware governance for the agentic era

Policy-Driven Authorization for AI Agents with Kyverno and AWS AgentCore

Enforcing real-time, payload-aware governance for the agentic era Introduction: From Generation to Action AI agents are no longer just generating responses, they’re taking actions. From invoking APIs to modifying infrastructure, agentic systems now operate directly on production environments. This raises a critical question: How do…

0

AI Bots Are Now Exploiting Your Automation — And Kubernetes Is Next

Last week, an autonomous bot called hackerbot-claw — describing itself as “an autonomous security research agent powered by claude-opus-4-5” — spent seven days systematically attacking CI/CD pipelines across major open source repositories. It targeted seven projects belonging to Microsoft, DataDog, Aqua Security, and multiple CNCF…

0