TLDR IT 2026-09-08
Claude’s data rules ☁️, Self-hosted Cursor agents 🤖, AI’s ROI gap 💸
Sophos brings OpenAI models to vulnerability prioritization (2 minute read)
Sophos is developing Exploit Path Verification to assess whether attackers can actually exploit vulnerabilities given an organization's network access, privileges, patches, and security controls. The capability will use OpenAI cyber models with analyst review, but availability has not been announced.
Claude Fable 5.1 on AWS comes with new data controls (5 minute read)
Claude Fable 5.1 is available through Amazon Bedrock and Claude Platform on AWS, with prompts and outputs subject to retention for up to 30 days and potential safety review by Amazon personnel. Planned Enterprise Frontier Safeguards will let eligible customers keep monitoring data in cloud infrastructure they control.
A decade of software infrastructure (8 minute read)
The next decade will be defined by software infrastructure as AI turns everything into infrastructure. This post outlines six megatrends, including AI-rebuilt development lifecycles, infrastructure re-architected for agents, and APIs replacing apps. Agent-driven buying and early-stage machine-learning infrastructure are predicted to expand opportunities for infrastructure startups.
Have the frontier labs mixed up AI safety and security? (7 minute read)
Frontier AI labs confuse probabilistic AI safety with deterministic security, treating prompt-injection defenses as largely solved despite high failure rates. False positives, weak containment like proxy and firewall gaps, and reliance on detection over containment enabled the failures.
Run cloud agents on machines you manage (6 minute read)
Cursor now lets cloud agents run on your own infrastructure, while Cursor still handles the agent loop, inference, and orchestration. Self-hosted workers can scale dynamically across AWS, Vercel, Modal, Cloudflare, Macs, etc., which gives teams direct access to internal systems, custom hardware, and existing build environments.
OpenShift adds a unified secrets management console (7 minute read)
Red Hat's new console plug-in brings certificate and external secrets resources into one interface, helping administrators investigate expiration warnings and failed dependencies. It is available as an administrator-only technology preview for OpenShift 4.22.
FINOS introduces portable records for AI-assisted work (3 minute read)
The konspekt project proposes an open format for preserving project decisions, artifacts, and source provenance across AI tools. Records live in plain files and require human acceptance, creating an audit trail independent of any model provider or chat platform.
Explaining 3PL (11 minute read)
A third-party logistics provider holds a brand's inventory and handles picking, packing, shipping, and returns while the brand keeps product and customer ownership. This explainer details its rate-card pricing, EDI and API integrations, and cut-off times, arguing that warehouse location and performance directly set delivery dates in Shopping ads and marketplace badges like Prime. It also notes rising fee and mandate disputes, including Amazon surcharges and conflicting accounts of TikTok Shop's shipping mandate.
Curated news 🗞️ and trends 📈 in IT strategy 💻, information security 🔐, and cloud computing ☁️.
Join 570,000 readers for
one daily email