<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>InfoQ - Cloud Security - News</title>
    <link>https://www.infoq.com</link>
    <description>InfoQ Cloud Security News feed</description>
    <item>
      <title>How Pinterest Secures AWS Infrastructure at Scale with a Centralized Terraform Pipeline</title>
      <link>https://www.infoq.com/news/2026/08/pinterest-secures-aws-infra/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security-news</link>
      <description>&lt;img src="https://res.infoq.com/news/2026/08/pinterest-secures-aws-infra/en/headerimage/generatedHeaderImage-1786109760765.jpg"/&gt;&lt;p&gt;Pinterest has revealed the Resource Provisioner Pipeline (RPP), its own Terraform execution engine. It ensures least-privilege access and needs dual-control reviews. This is important for the company’s AWS infrastructure, as it adds strict guardrails to the GitHub Actions workflows.&lt;/p&gt; &lt;i&gt;By Claudio Masolo&lt;/i&gt;</description>
      <category>Terraform</category>
      <category>GitHub Actions</category>
      <category>Cloud Security</category>
      <category>AWS</category>
      <category>DevOps</category>
      <category>news</category>
      <pubDate>Mon, 10 Aug 2026 10:00:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/08/pinterest-secures-aws-infra/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security-news</guid>
      <dc:creator>Claudio Masolo</dc:creator>
      <dc:date>2026-08-10T10:00:00Z</dc:date>
      <dc:identifier>/news/2026/08/pinterest-secures-aws-infra/en</dc:identifier>
    </item>
    <item>
      <title>Cloudflare's Precursor Detects Bots and AI Agents through Continuous Behavioral Analysis</title>
      <link>https://www.infoq.com/news/2026/08/cloudflare-precursor-detection/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security-news</link>
      <description>&lt;img src="https://res.infoq.com/news/2026/08/cloudflare-precursor-detection/en/headerimage/generatedHeaderImage-1784634999305.jpg"/&gt;&lt;p&gt;Cloudflare recently introduced Precursor, a client-side behavioral analysis engine that continuously evaluates session interactions, such as mouse movements and keyboard timing, to improve detection of sophisticated bots and AI agents without relying solely on one-time challenges like CAPTCHAs.&lt;/p&gt; &lt;i&gt;By Renato Losio&lt;/i&gt;</description>
      <category>AI Security</category>
      <category>Cloudflare</category>
      <category>Cloud</category>
      <category>Cloud Security</category>
      <category>BOTS</category>
      <category>Authentication</category>
      <category>AI, ML &amp; Data Engineering</category>
      <category>Development</category>
      <category>news</category>
      <pubDate>Sat, 08 Aug 2026 07:54:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/08/cloudflare-precursor-detection/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security-news</guid>
      <dc:creator>Renato Losio</dc:creator>
      <dc:date>2026-08-08T07:54:00Z</dc:date>
      <dc:identifier>/news/2026/08/cloudflare-precursor-detection/en</dc:identifier>
    </item>
    <item>
      <title>Swarm of OpenAI Agents Exploit Artifactory Zero-Day to Escape Sandbox and Breach Hugging Face</title>
      <link>https://www.infoq.com/news/2026/08/openai-huggingface-breach/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security-news</link>
      <description>&lt;img src="https://www.infoq.com/styles/static/images/logo/logo_bigger.jpg"/&gt;&lt;p&gt;Security disclosures highlighted vulnerabilities in AI evaluations of autonomous cyber capabilities. Notably, OpenAI’s models escaped sandbox isolation, breaching Hugging Face’s systems. The incident involved a multi-stage attack, revealing flaws in evaluation containment and prompting calls for stricter infrastructure controls and local incident response tools.&lt;/p&gt; &lt;i&gt;By Olimpiu Pop&lt;/i&gt;</description>
      <category>AI Security</category>
      <category>Cloud Security</category>
      <category>Security Incident</category>
      <category>DevOps</category>
      <category>AI, ML &amp; Data Engineering</category>
      <category>news</category>
      <pubDate>Tue, 04 Aug 2026 06:42:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/08/openai-huggingface-breach/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Cloud+Security-news</guid>
      <dc:creator>Olimpiu Pop</dc:creator>
      <dc:date>2026-08-04T06:42:00Z</dc:date>
      <dc:identifier>/news/2026/08/openai-huggingface-breach/en</dc:identifier>
    </item>
  </channel>
</rss>
