It has not been a relaxing few months for software security teams. In December, React disclosed its first critical CVE: an unauthenticated remote code execution flaw in Server Components. In March, not only was Aqua Security’s Trivy, a widely-used security scanning tool, compromised twice in three weeks through a GitHub Actions misconfiguration, but hackers also
Today’s links look at what happens when 1500 agents hit production at Uber, what a map of system topologies looks like, and how AI is finding 20-year-old bugs in mature software.