Field notes from the edge.
What our engineers learned this week. Hands-on technical deep-dives, postmortems, and strategy frameworks.
AIYour AI bill is out of control. Cloudflare can fix it now.
Cloudflare is addressing the growing challenge of uncontrolled AI spending with new spend management features in its AI Gateway service. The company is launching spend limits in open beta and identity-driven budgets in closed beta, enabling organizations to track, attribute, and control AI costs at the user, team, and model level. These tools aim to solve the common problem of shared API keys and
AIFBI-Flagged Phishing Kit Kali365 Expands Its Reach
The FBI-flagged Kali365 phishing-as-a-service platform has expanded beyond its original Microsoft 365 targets to now include AWS, Okta, and Russian platforms. The threat actor toolkit leverages device code phishing techniques to compromise enterprise authentication systems across multiple cloud service providers.
AIWith Complex Cloud Integrations, Small Errors Lead to Major Compromises
Security researchers uncovered a critical exploit chain in a widely-used automation service that leveraged over-permissioned roles, exposed secrets, and compromised non-human identities. The discovery highlights how seemingly minor misconfigurations in complex cloud integrations can cascade into major security vulnerabilities. This case underscores the growing risk surface created by interconnecte
