Vue normale

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.
Hier — 20 août 2026Flux principal

Slack Code gives AI coding agents their own team channels

Par : IT News
20 août 2026 à 15:22
Slack Code gives AI coding agents their own team channels
Slack Code turns AI coding agents into visible collaborators by creating dedicated channels for each development task. Teams can work with Claude Code, Devin, Vercel Agent, or GitHub Copilot without leaving Slack, while non-technical colleagues can follow, pause, or stop the work.

Source

VS Code 1.135 expands Copilot agent controls and voice features

Par : IT News
19 août 2026 à 22:04
VS Code 1.135 expands Copilot agent controls and voice features
Visual Studio Code 1.135 Insiders improves Copilot agent management with consistent sandbox policies, enterprise-controlled permissions, workspace-aware session handling, and notifications for sessions that need attention. The release also expands voice interactions and adds a signed-out BYOK testing option for the Copilot Agent Host.

Source

Azure landing zones move from portal work to gated Terraform pipelines

Par : IT News
19 août 2026 à 22:04
Azure landing zones move from portal work to gated Terraform pipelines
A Microsoft deployment pattern puts Azure Landing Zones under version control and approval gates instead of relying on manual portal configuration. By combining Azure DevOps with Terraform, organizations can provision subscriptions, networking, identity, policies, security, and monitoring through a repeatable pipeline that produces an audit trail before changes reach production.

Source

Cursor launches Origin as a GitHub outage puts rival hosting in the spotlight

Par : IT News
19 août 2026 à 22:04
Cursor launches Origin as a GitHub outage puts rival hosting in the spotlight
Cursor has launched Origin, a code-hosting platform that aims to challenge GitHub just as GitHub endured a worldwide outage lasting more than six hours, with error rates reportedly nearing 20%. Origin supports repositories, collaborative editing, and pull requests, while allowing teams to keep existing GitHub workflows in place.

Source

Docker puts AI development on a sandboxed platform

Par : IT News
19 août 2026 à 22:04
Docker puts AI development on a sandboxed platform
Docker is expanding beyond container packaging with Docker Sandboxes, which run autonomous AI coding agents inside isolated microVMs, and Docker AI Governance, which lets organizations control their access to filesystems and networks. The shift gives administrators a way to adopt AI-assisted development without allowing unpredictable agents to reach developer laptops or internal systems directly.

Source

À partir d’avant-hierFlux principal

GitHub outage traced to autoscaling blind spot and VS Code retry storm

Par : IT News
19 août 2026 à 16:59
GitHub outage traced to autoscaling blind spot and VS Code retry storm
GitHub’s August 17 outage, whose recovery began after Microsoft identified the failing component, was caused by a monitoring blind spot that let Central US load balancers overload. GitHub now says a Visual Studio Code retry bug then amplified Copilot authentication traffic roughly tenfold, extending the disruption to 7 hours and 47 minutes.

Source

VS Code 1.134 makes AI chat sessions easier to compare and search

Par : IT News
19 août 2026 à 16:59
VS Code 1.134 makes AI chat sessions easier to compare and search
VS Code 1.134 adds a grid layout for running related AI chats side by side, plus a prompt timeline that shows which requests changed files. Building on side chats introduced in VS Code 1.132 and the chat-navigation improvements covered in VS Code 1.133, the update focuses on keeping long agent sessions understandable and reviewable.

Source

GitLab - la faille qui a fait rouvrir une version morte

Par : Korben ✨
18 août 2026 à 09:07

GitLab a sorti hier (lundi 17 août), un correctif d'urgence , complètement en dehors de son calendrier habituel, pour une faille qui permet à quelqu'un sans compte ni mot de passe de modifier ou de supprimer vos projets publics et des données utilisateur. Hé ouais c'est chaud et c'est pour ça que son score CVSS est de 9,4 sur 10.

5 jours plus tôt, le 12 août, GitLab publiait son patch de routine pour la 19.2, 19.1 et 19.0. C'est un périmètre normal puisque sa politique de maintenance ne couvre que la version stable et les deux précédentes. Mais comme là, on est dans l'exceptionnel, ce correctif du 17 août en couvre une quatrième, la 18.11, dont le support avait pris fin le 16 juillet dernier. Ils sont allés rouvrir une branche morte juste pour patcher ce GROS problème !

La faille elle-même, on n'en sait presque rien par contre. Estampillée CVE-2026-19478, c'est une histoire de directive GraphQL, mais GitLab ne dit ni laquelle, ni dans quelles conditions ça se déclenche. Les détails techniques sortiront vers la mi-novembre, c'est-à-dire 90 jours après le correctif, comme d'habitude, histoire d'être sûr que tout le monde ait patché son install.

Maintenant, la bonne nouvelle c'est que si vous êtes sur GitLab.com ou sa version Dedicated , vous n'avez rien à faire, puisque c'est déjà patché. En fait cette histoire ne concerne que les instances auto-hébergées.

Et parmi elles, tout le monde n'est pas impacté de la même manière. En effet, le vecteur d'attaque passe par le réseau et vise les projets publics. Cela veut dire que votre instance planquée derrière un VPN, sans visibilité publique, risque beaucoup moins que celle qui expose ses dépôts à Internet.

Ensuite, pour la mise à jour, ça dépend d'où vous partez. Entre la 18.2 et la 18.10, aucun correctif n'existe sur votre branche. Il faudra upgrader jusqu'à la 18.11.11, en vous arrêtant aux paliers de 18.5 et 18.8 s'ils sont sur votre route.

Si vous tournez déjà en 18.11, prenez la 18.11.11. Sur une 19, c'est 19.0.8, 19.1.6 ou 19.2.4. Et plus ancien que 18.2 ? Bah là, GitLab ne liste pas ces versions parmi les affectées, mais elles ne reçoivent plus de correctif depuis un bon moment, donc ce serait bien de mettre à jour quand même, hein...

Pour le moment, personne n'a signalé d'attaque et aucun exploit ou PoC n'a fait surface sur GitHub. Ça ne veut pas dire grand-chose, je vous l'accorde mais on se rassure comme on peut...

Allez, bon courage !

Source : The Hacker News

Cursor launches Origin code hosting with GitHub sync and AI agents

Par : IT News
17 août 2026 à 23:06
Cursor launches Origin code hosting with GitHub sync and AI agents
Cursor is rolling out Origin, an early-beta code-hosting platform for all paid plans. It combines repositories, pull requests, GitHub synchronization, and Cursor’s AI agents in one workspace, while letting existing GitHub repositories remain connected rather than forcing an immediate migration.

Source

GitHub outage recovery begins after Microsoft identifies the failing component

Par : IT News
17 août 2026 à 20:21
GitHub outage recovery begins after Microsoft identifies the failing component
GitHub’s massive global outage has entered recovery after Microsoft identified the problematic component and applied corrective actions, although error rates remained slightly elevated and further disruption was possible. The incident affected GitHub’s web interface, API, Actions, Issues, Pull Requests, Webhooks, authentication services, and Copilot, with raw repository and archive downloads reaching approximately 50 percent errors.

Source

GitHub Copilot update makes model switching the default

Par : IT News
17 août 2026 à 12:07
GitHub Copilot update makes model switching the default
GitHub’s latest Copilot update turns model choice into a core workflow rather than a one-time setting, adding Kimi K3, MAI-Code-1.1-Flash, and per-turn switching in Visual Studio Code. The flexibility comes with an enterprise concern: Copilot still does not provide a reliable record of which model generated or changed specific code.

Source

GitHub Copilot adds portable Agent Plugins 1.0 and smarter CLI workflows

Par : IT News
14 août 2026 à 22:17
GitHub Copilot adds portable Agent Plugins 1.0 and smarter CLI workflows
GitHub Copilot’s latest weekly release makes Agent Plugins 1.0 generally available across VS Code, Copilot CLI, the GitHub Copilot SDK, and the Copilot app, allowing developers to reuse one plugin across compatible agent tools. The update also adds Kimi K3, image understanding for MAI-Code-1.1-Flash, and several controls for managing long-running CLI agents. One plugin across multiple Copilot tools

Source

Grok 4.6 reaches GitHub Copilot with an admin-controlled rollout

Par : IT News
14 août 2026 à 22:17
Grok 4.6 reaches GitHub Copilot with an admin-controlled rollout
Grok 4.6 is rolling out across GitHub Copilot’s eight supported development surfaces, including Visual Studio Code, Copilot CLI, JetBrains, Xcode, and Eclipse. Business and Enterprise administrators must explicitly enable its policy, while all users should expect a gradual release and usage-based billing. Broad Copilot availability

Source

Grok 4.6 turns xAI into a serious coding-model contender

Par : IT News
14 août 2026 à 00:21
Grok 4.6 turns xAI into a serious coding-model contender
Matthew Berman says Grok 4.6 is xAI’s biggest step forward yet, combining strong coding and knowledge-work performance with lower pricing than leading competitors. The model is available through Cursor, Grok Build, its API, OpenRouter, Vercel, and Cloudflare, while Grok 4.7 is reportedly only weeks away.

Source

LiteLLM supply chain attack may be the biggest on record

Par : IT News
13 août 2026 à 18:20
LiteLLM supply chain attack may be the biggest on record
A 153GB archive allegedly stolen during the LiteLLM supply chain attack contains 433,909 files, including CI runner dumps linked to 118,829 runs across 2,488 corporate domains. The March compromise previously raised concerns about more than 2,500 organizations and 434,000 CI/CD pipelines; the newly surfaced data suggests exposed credentials may still be usable.

Source

DeepSeek-V4-Flash-0731 crushes Microsoft MAI-Code-1.1-Flash on price and benchmarks

Par : IT News
12 août 2026 à 15:39
Microsoft’s MAI-Code-1.1-Flash is now available in GitHub Copilot at one-quarter the price of its predecessor, but the cheaper model still trails DeepSeek-V4-Flash-0731 on both cost and key coding benchmarks. The release adds vision support and promises faster, more token-efficient coding workflows.

Source

❌
❌