Skip to main content

99 posts tagged with "Cybersecurity"

Cybersecurity threats and defenses

View all tags

Friendly Fire: The AI Security Review That Executes the Attack It's Supposed to Catch
·Dora Noda·9 min

Friendly Fire: The AI Security Review That Executes the Attack It's Supposed to Catch

AI Now Institute's Friendly Fire exploit turns Claude Code and Codex's own security reviews into remote code execution — here's how it works and what it means for scoping AI agent permissions on a deploy pipeline.

security
cybersecurity
AI agents
Model Context Protocol
+1
CVE-2026-50566: How Namespace-Scoped RBAC Became a 9.9 Node Compromise in Fission
·Dora Noda·9 min

CVE-2026-50566: How Namespace-Scoped RBAC Became a 9.9 Node Compromise in Fission

A routine namespace-scoped RBAC grant let a Fission tenant escalate to node compromise — why RBAC was never a sandbox boundary, and what it means for platforms scheduling tenant code on shared nodes.

security
infrastructure
self-hosting
cybersecurity
+1
A 'Medium' CVE Popped a Full Reverse Shell: What ms-agent's Six-Layer Regex Bypass Teaches About Agent Sandboxing
·Dora Noda·8 min

A 'Medium' CVE Popped a Full Reverse Shell: What ms-agent's Six-Layer Regex Bypass Teaches About Agent Sandboxing

CVE-2026-2256 scored a 'Medium' 6.5 on CVSS, but its proof-of-concept is a full reverse shell through an AI agent's own shell tool. Here's exactly how a six-layer regex denylist got bypassed, and why only a real sandbox boundary — not command validation — closes the gap.

AI agents
security
cybersecurity
self-hosting
Your Namespace-Scoped Sealed Secret Wasn't: What CVE-2026-22728's Rotation Bug Actually Broke
·Dora Noda·9 min

Your Namespace-Scoped Sealed Secret Wasn't: What CVE-2026-22728's Rotation Bug Actually Broke

A rotation-endpoint bug in Bitnami's Sealed Secrets let attacker-controlled annotations turn a namespace-scoped secret cluster-wide — without touching Kubernetes RBAC at all. Here's the attack, and the NetworkPolicy audit every shared cluster needs to run.

security
self-hosting
PaaS
infrastructure
+1
Docker's CVE-2026-34040 Is the Second Time This AuthZ Bypass Shipped: A Padded HTTP Request Still Grants Host Access on Unpatched Engines Below 29.3.1
·Dora Noda·8 min

Docker's CVE-2026-34040 Is the Second Time This AuthZ Bypass Shipped: A Padded HTTP Request Still Grants Host Access on Unpatched Engines Below 29.3.1

CVE-2026-34040 bypasses every Docker AuthZ plugin with one oversized HTTP request — the same underlying gap as 2024's CVE-2024-41110, patched twice and still exploitable below Engine 29.3.1. Here's the exact payload, why the first fix didn't hold, and what it means for a Cluster API fleet's patch discipline.

self-hosting
PaaS
cybersecurity
AWS Open-Sourced the Exact MCP Governance Layer Snowflake Just Paid to Acquire
·Dora Noda·9 min

AWS Open-Sourced the Exact MCP Governance Layer Snowflake Just Paid to Acquire

Snowflake just paid an undisclosed sum to acquire Natoma's MCP governance gateway. AWS's Apache-2.0 mcp-gateway-registry already does the same identity, policy, and audit job — self-hosted on EKS, ECS, or a single Docker Compose file.

Model Context Protocol
self-hosting
PaaS
AI agents
+1
The Jscrambler npm Backdoor Beat npm's 3-Day-Old Fix — What That Means for Your Build Pipeline's Secrets
·Dora Noda·9 min

The Jscrambler npm Backdoor Beat npm's 3-Day-Old Fix — What That Means for Your Build Pipeline's Secrets

A compromised Jscrambler npm release beat npm 12's new install-script defaults within three days, stealing CI credentials and AI tool configs. Here's the build-pipeline architecture — platform-enforced script policy, egress-denied sandboxes, ephemeral scoped credentials — that actually closes the gap.

security
self-hosting
PaaS
infrastructure
+1
Anubis Crosses 20,000 Stars: What Self-Hosting Your Own AI-Scraper Defense Actually Costs
·Dora Noda·9 min

Anubis Crosses 20,000 Stars: What Self-Hosting Your Own AI-Scraper Defense Actually Costs

Anubis's proof-of-work challenge crossed 20,000 GitHub stars fighting AI scrapers — here's what it actually costs in compute versus what its JavaScript requirement costs real visitors, and whether a self-hosted PaaS should bundle it.

security
cybersecurity
PaaS
self-hosting
+1
Dokploy's WebSocket Terminal Bug (CVE-2026-24841): One Exec Call, Root on Every Server It Manages
·Dora Noda·9 min

Dokploy's WebSocket Terminal Bug (CVE-2026-24841): One Exec Call, Root on Every Server It Manages

Inside Dokploy's CVSS 9.9 WebSocket terminal bug: the actual vulnerable code, why an argv-array fix only solves half the exploit path, and why the flaw reached every server the control plane manages over SSH, not just the local box.

security
cybersecurity
PaaS
self-hosting
+1
Showing 46–54 of 99 posts