Docker stories
Banks and funds can now build AI-enabled workflows on one governed system, as 3forge aims to reduce integration work and oversight risks.
U.S. agencies can now train and keep control of AI models on isolated systems, with Palantir and NVIDIA targeting sensitive government work.
Production users can now route generative AI requests through a stable open source gateway, with Bloomberg already running it and Nutanix adopting it.
A free account could have let attackers alter Zapier-maintained packages and hijack logged-in users' browser sessions, researchers said.
Existing deployments can gain stronger protection against post-compromise persistence without changing Dockerfiles, CI/CD pipelines or runtime workflows.
Malicious packages are now spreading faster across code repositories, with Google saying open source ecosystems face the sharpest rise in risk.
Security and compliance teams can now patch buildpack-based containers from a single hardened base, rather than chasing Dockerfiles across repositories.
The platform lets security teams run AI pentests without exposing customer infrastructure data to external models.
Windows fleets could be left blind to malware once attackers gain admin rights, as Bitdefender says bind links can fool endpoint security tools.
UK and Ireland partners will gain wider access to Docker's container platform as Exclusive Networks expands its cloud-native software portfolio.
Users of Dify's cloud service could have had private chats and files exposed after Zafran Security disclosed four flaws in the AI platform.
The expansion gives IT teams central control over AI agent permissions, reducing risky static keys and easing reviews as workplace use widens.
Older Liquibase Community users can now check release-by-release vulnerabilities in a free public library covering Docker images and binaries.
Rising demand for secure AI software development has prompted Sonatype to expand its leadership team and scale operations globally.
Most Spring teams are exposed to container risks as 64% of respondents were unaware Dockerfile choices can affect security.
It lets developers use AI coding tools without pasting sensitive credentials into prompts, reducing the risk of secrets leaking into logs or source control.
Security teams may miss data theft as AI agents use Telegram and WhatsApp to run locally on endpoints with user-level access.
The move gives Ignition access to the world's largest cybersecurity market as it targets more than EUR €500 million in revenue within three years.
Gold Lapel unveils a PostgreSQL proxy that auto‑tunes slow SQL, aiming to replace extra cache and pooling layers with in‑database smarts.
Developers can now run OpenClaw and Hermes without setting up servers, as Cloudways adds managed hosting to cut deployment and maintenance work.