1.2K Followers
884 Following
3.6K Posts
#cryptography and cloud infrastructure naga #infosec #appsec
Not into internet fun money
Bloghttps://cendyne.dev/
Preferred / Sys nameYellow
PronounsNo third person pronouns for me please, just say Cendyne / you
A Vibe Coded SaaS Killed My Team

We lost the capitalism game and they're trying to get a second wind through a broken vibe-coded SaaS platform.

@issotm web finger has redirection built in like that! In case I ever hop to another instance I can update my pointer as needed,

Thank you for reading my blog and otherwise good vibes (a poor pun in the current climate).

At this time I am not able to offer any such services. Finding a new job soon is my current priority.

Microsoft gets tired of “Microslop,” bans the word on its Discord, then locks the server after backlash

Microsoft blocks the word Microslop on its Copilot Discord, bans users, and locks channels after backlash, showing tensions around its AI push

Windows Latest

Two AWS outages, including the 13 hours one, were caused by coding agents deleting what they shouldn’t, in production.

AWS points to the engineers:
“We’ve already seen at least two production outages,” one senior AWS employee told the publication. “The engineers let the AI resolve an issue without intervention. The outages were small but entirely foreseeable.”

Coding agents are everywhere, they are privileged, we have zero visibility into what they do, and they bypass classic CI/CD and cyber defense controls.
Even finance is using them. I’m unsure how much engineers could actually do to prevent these incidents.

If you are concerned by these, I’d start by asking the following questions:
- What coding agents are you running?
- What MCP servers, extensions, or skills are your developers using?
- Do you have preventative controls for agents stepping out of bounds?
- Do you have detection and response capabilities to stop attacks?

Original article:
https://www.tomshardware.com/tech-industry/artificial-intelligence/multiple-aws-outages-caused-by-ai-coding-bot-blunder-report-claims-amazon-says-both-incidents-were-user-error


And if you made it this far, defending agents is what I do.
If you want to see a demo of how you can discover and protect agents, drop me a line.

Knostic has been doing this for a while, unlike the 50 vendors now rebranding themselves in the space. :)

https://knostic.ai/

@thephd you will ascend.
@soatok incidentally this happens in my head every time I accidentally read the comments somewhere
@ghostlyash @tay did you go gambling
@privateger @JennyFluff where's my Nintendo switch 3, it hungers for the 4 SD cards