<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>InfoQ - Cloud Security</title>
    <link>https://www.infoq.com</link>
    <description>InfoQ Cloud Security feed</description>
    <item>
      <title>Anthropic's Claude Breaches Sandbox During Model Security Evaluations</title>
      <link>https://www.infoq.com/news/2026/08/claude-sandox-breach/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security</link>
      <description>&lt;img src="https://www.infoq.com/styles/static/images/logo/logo_bigger.jpg"/&gt;&lt;p&gt;Anthropic conducted an audit of 141006 evaluation runs after OpenAI's sandbox escape disclosure. The review identified three incidents where Claude models accessed the internet due to misconfigurations. These incidents involved unauthorised attacks on live targets. Anthropic has suspended offensive evaluations and plans to enhance security measures and collaborate with external auditors.&lt;/p&gt; &lt;i&gt;By Olimpiu Pop&lt;/i&gt;</description>
      <category>Frontier Model</category>
      <category>Cloud Security</category>
      <category>Security Breach</category>
      <category>Large language models</category>
      <category>AI Security</category>
      <category>Model Evaluation</category>
      <category>AI, ML &amp; Data Engineering</category>
      <category>DevOps</category>
      <category>news</category>
      <pubDate>Thu, 13 Aug 2026 10:10:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/08/claude-sandox-breach/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security</guid>
      <dc:creator>Olimpiu Pop</dc:creator>
      <dc:date>2026-08-13T10:10:00Z</dc:date>
      <dc:identifier>/news/2026/08/claude-sandox-breach/en</dc:identifier>
    </item>
    <item>
      <title>How Pinterest Secures AWS Infrastructure at Scale with a Centralized Terraform Pipeline</title>
      <link>https://www.infoq.com/news/2026/08/pinterest-secures-aws-infra/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security</link>
      <description>&lt;img src="https://res.infoq.com/news/2026/08/pinterest-secures-aws-infra/en/headerimage/generatedHeaderImage-1786109760765.jpg"/&gt;&lt;p&gt;Pinterest has revealed the Resource Provisioner Pipeline (RPP), its own Terraform execution engine. It ensures least-privilege access and needs dual-control reviews. This is important for the company’s AWS infrastructure, as it adds strict guardrails to the GitHub Actions workflows.&lt;/p&gt; &lt;i&gt;By Claudio Masolo&lt;/i&gt;</description>
      <category>AWS</category>
      <category>Cloud Security</category>
      <category>GitHub Actions</category>
      <category>Terraform</category>
      <category>DevOps</category>
      <category>news</category>
      <pubDate>Mon, 10 Aug 2026 10:00:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/08/pinterest-secures-aws-infra/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security</guid>
      <dc:creator>Claudio Masolo</dc:creator>
      <dc:date>2026-08-10T10:00:00Z</dc:date>
      <dc:identifier>/news/2026/08/pinterest-secures-aws-infra/en</dc:identifier>
    </item>
    <item>
      <title>Cloudflare's Precursor Detects Bots and AI Agents through Continuous Behavioral Analysis</title>
      <link>https://www.infoq.com/news/2026/08/cloudflare-precursor-detection/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security</link>
      <description>&lt;img src="https://res.infoq.com/news/2026/08/cloudflare-precursor-detection/en/headerimage/generatedHeaderImage-1784634999305.jpg"/&gt;&lt;p&gt;Cloudflare recently introduced Precursor, a client-side behavioral analysis engine that continuously evaluates session interactions, such as mouse movements and keyboard timing, to improve detection of sophisticated bots and AI agents without relying solely on one-time challenges like CAPTCHAs.&lt;/p&gt; &lt;i&gt;By Renato Losio&lt;/i&gt;</description>
      <category>Cloud Security</category>
      <category>Cloudflare</category>
      <category>Cloud</category>
      <category>BOTS</category>
      <category>AI Security</category>
      <category>Authentication</category>
      <category>Development</category>
      <category>AI, ML &amp; Data Engineering</category>
      <category>news</category>
      <pubDate>Sat, 08 Aug 2026 07:54:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/08/cloudflare-precursor-detection/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security</guid>
      <dc:creator>Renato Losio</dc:creator>
      <dc:date>2026-08-08T07:54:00Z</dc:date>
      <dc:identifier>/news/2026/08/cloudflare-precursor-detection/en</dc:identifier>
    </item>
    <item>
      <title>Swarm of OpenAI Agents Exploit Artifactory Zero-Day to Escape Sandbox and Breach Hugging Face</title>
      <link>https://www.infoq.com/news/2026/08/openai-huggingface-breach/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security</link>
      <description>&lt;img src="https://www.infoq.com/styles/static/images/logo/logo_bigger.jpg"/&gt;&lt;p&gt;Security disclosures highlighted vulnerabilities in AI evaluations of autonomous cyber capabilities. Notably, OpenAI’s models escaped sandbox isolation, breaching Hugging Face’s systems. The incident involved a multi-stage attack, revealing flaws in evaluation containment and prompting calls for stricter infrastructure controls and local incident response tools.&lt;/p&gt; &lt;i&gt;By Olimpiu Pop&lt;/i&gt;</description>
      <category>Cloud Security</category>
      <category>Security Incident</category>
      <category>AI Security</category>
      <category>AI, ML &amp; Data Engineering</category>
      <category>DevOps</category>
      <category>news</category>
      <pubDate>Tue, 04 Aug 2026 06:42:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/08/openai-huggingface-breach/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security</guid>
      <dc:creator>Olimpiu Pop</dc:creator>
      <dc:date>2026-08-04T06:42:00Z</dc:date>
      <dc:identifier>/news/2026/08/openai-huggingface-breach/en</dc:identifier>
    </item>
  </channel>
</rss>
