Grilled Cheese

ExploreLog inSign up
Terms of UsePrivacy PolicyCommunity StandardsHelpGet the app

Grilled Cheese is a product of Village Compute

Version devBuilt at: 2026-10-10 01:38:52 EDT

Explore

PostsPeople
LatestRanked
Load more
@ctsmithiii.bsky.socialOct 8, 2026, 11:19 PM

Two questions most IT teams can't answer: How many AI agents are running? Which ones can delete data? @HYCU's free aiR Graph scans Entra ID and Okta and answers both with deterministic rules, no LLM scoring.
coderlegion.com/30339/hycus-... #AgenticAI #AISecurity #DevSecOps #DataResilience

@cvedatabase.bsky.socialOct 8, 2026, 10:30 PM

Security Tip: Stop hardcoding secrets in your source code! 🛡️ Hardcoded API keys are easily leaked via version control. Use a Secrets Manager and automate key rotation to minimize your window of risk. Learn more at https://cvedatabase.com #InfoSec #CyberSecurity #API #DevSecOps

@infrajump.bsky.socialOct 8, 2026, 8:26 PM

GitHub's new secret detection model can flag passwords without recognizable token patterns by reading code context. Existing alerts are upgraded now. AI push protection is still in private preview and will consume AI Credits when enabled. #GitHub #DevSecOps

@cyberlensai.bsky.socialOct 8, 2026, 8:20 PM

Trust check pattern for any new devtool: 1. Who maintains it? 2. What permissions does it request? 3. Does the repo expose secrets/config? 4. Are deps pinned and current? 5. Does the website pass basic browser hardening? Speed is great. Blind trust is how you get owned. #DevSecOps

@osde8info.bsky.socialOct 8, 2026, 3:20 PM

red hat summit connect @ @tobaccodock ansible roadmap #devsecops

@thedailytechfeed.comOct 8, 2026, 2:08 PM

GitHub’s ModernBERT flags hidden passwords pre-push—real-time secret protection goes live in October. #Security #GitHub #AI #SecretScanning #DevSecOps #ModernBERT https://thedailytechfeed.com/githubs-new-ai-flags-hidden-passwords-before-code-push/

@osde8info.bsky.socialOct 8, 2026, 1:14 PM

red hat summit connect @ @tobaccodocks @openshift.bsky.social virtualisation #devsecops

slideslideslideslide
@thedailytechfeed.comOct 8, 2026, 12:35 PM

GhostAction targets 772 GitHub repos, steals SSH, cloud & API credentials via fake Actions workflows. #SupplyChain #GitHubActions #GhostAction #CI/CD #DevSecOps #SecurityNews https://thedailytechfeed.com/ghostaction-supply-chain-campaign-steals-ci-cd-secrets-via-malicious-github-actions/

@fsse8info.bsky.socialOct 8, 2026, 11:24 AM

red hat summit connect @tobaccodock reduce your cloud costs by 40% #devsecops #openshift

@osde8info.bsky.socialOct 8, 2026, 11:18 AM

red hat summit connect london save 40% on your cloud costs @redhat #devsecops #openshift

talkroomcoffee cup
@helpnetsecurity.comOct 8, 2026, 9:47 AM

GitHub adds AI to catch passwords before a code push

📖 Read more: www.helpnetsecurity.com/2026/10/08/g...

#cybersecurity #cybersecuritynews #AI #secretprotection #DevSecOps @github.com

@thedailytechfeed.comOct 8, 2026, 6:20 AM

Tensorlake 0.5.144 was hijacked by a worm stealing credentials, persisting via AI tool configs. Remove it now. #ShaiHulud #SupplyChain #AI #CloudSecurity #CredentialTheft #DevSecOps https://thedailytechfeed.com/tensorlake-npm-package-hijacked-by-shai-hulud-worm-threat/

@0daybeats.bsky.socialOct 8, 2026, 4:00 AM

Rain Over Glass sounds like what a window does when you stop looking at it.

Listen on Apple Music: https://music.apple.com/lv/album/rain-over-glass/6788063362?i=6788063499

Also on other platforms.
#Music #AppleMusic #GitHub #LoFi #MusicVibe #DevSecOps #CyberPunk

@0daybeats.bsky.socialOct 8, 2026, 4:00 AM

"Patch My Heart" - because your heart crashes less than your code but nobody's pushing fixes for it.

Listen on Apple Music: https://music.apple.com/lv/album/patch-my-heart/6802120203?i=6802120215

Also on other platforms.

#Music #AppleMusic #GitHub #LoFi #MusicVibe #DevSecOps #CyberPunk

@sugataai.bsky.socialOct 8, 2026, 2:31 AM

We aren't careless; we're just too fast for our current security tools. 🛡️ #devsecops sugataai.com/blog/secret-...

@glitchreplay.bsky.socialOct 7, 2026, 9:25 PM

This ensures that even if a token is leaked, the attacker cannot modify your project settings or access sensitive event data. #glitchreplay #errortracking #bugmonitoring #cicd #devsecops #sourcemaps 2/2

@abchaudary.meOct 7, 2026, 8:34 PM

Block the right merge, not every merge.

A Trivy and Snyk gate for GitLab CI: fixable critical and high findings stop the merge, the rest report, and every ignore carries an expiry date.

The YAML and @gitlab.com 's merge checks:
abchaudary.me/blog/trivy-s...

#devsecops #devops #infosec

@securityonline.bsky.socialOct 7, 2026, 4:59 PM

Four critical Argo CD vulnerabilities, including AppProject bypass CVE-2026-77459, threaten the repo-server and clusters. Upgrade to v3.5.4 now.

#ArgoCD #Kubernetes #GitOps #CVE202677459 #Kustomize #Jsonnet #DevSecOps #Vulnerability

@securityonline.bsky.socialOct 7, 2026, 2:36 PM

A Gitea security update fixes 27 flaws, including SSRF bug CVE-2026-101027 and SSH key flaw CVE-2026-103059. Upgrade to Gitea 28.1.0 now.

#Gitea #Git #DevSecOps #SSRF #CVE2026101027 #CVE2026103059 #SupplyChainSecurity #Vulnerability

@fsse8info.bsky.socialOct 7, 2026, 10:43 AM

honeycomb.io o11y day two #devsecops

meetingmeetingbooking.com