vibehacker
News
Docker Blog ·

Docker open-sources Sandbox Kit Spec, brings agent permissions to CNCF

At WeAreDevelopers, Docker released the Sandbox Kit Spec under Apache 2.0 and is taking it to CNCF. A Kit is an ordinary OCI image that packages an agent, its tools, and a typed list of hosts, credentials, and volumes it may reach—so pinning the image pins the agent and its permission requests together.

More news

View all

Darktrace: history poisoning hijacks Claude Code, Codex, and Kiro-CLI

Darktrace found Claude Code, OpenAI Codex, AWS Kiro CLI, and Pi store conversation history client side with no check that model replies are authentic. Rewriting that history convinced agents they were mid engagement as authorized red teamers; the lab disclosed to Anthropic, OpenAI, and AWS and proposes cryptographic signing of responses…

Darktrace

Databricks Unity Gateway CLI governs Claude Code, Codex, and Cursor agents

Databricks shipped the Unity Gateway CLI so admins centrally set approved models, MCP servers, skills, and spend policies while developers launch agents with commands like ug claude or ug codex . Smart Routing claims 35% cost savings on their coding benchmark; ug cursor configures MCP only, with model traffic still on the user's Cursor account…

Databricks Blog

AutonomyAI Discover Mode: product questions become review-ready PRs

AutonomyAI shipped Discover Mode on Sept 24, closing its Autonomous Product Delivery loop: a PM asks (or lets it suggest) what to improve, it researches analytics, tickets, calls, and the codebase, then Plan and Build open a review ready PR that matches existing components. Engineers stay the merge gate; 170+ teams including Datadog and Nielsen already run on it…

PR Newswire

Spotted something we missed? Start a thread.