TL;Der — Developer news digest

tlder@dev
tlder@dev:~$

Your dev world, TL;DR'd. 335 items across all categories. covering May 1 → Jun 17

└─worth-opening/(100 items)

The canonical advisory with the version numbers and CVEs as they drop — bookmark it and check before you redeploy any Node service this week.
└─·backend,security
The official rundown of what changes when you target API 17 — read it before you bump compileSdk, because the resizability requirement will surprise tablet-averse apps.
└─·mobile

└─cross-cutting/(65 items)

Node.js shipped coordinated security releases on June 17 for the 26.x, 24.x, and 22.x lines, with the top issue rated HIGH.
└─·backend,security·Node.js
Google shipped Chrome 149.0.7827.155 on June 16 with 33 security fixes, seven Critical, targeting use-after-free bugs across WebShare, WebView, Digital Credentials, and Web Authentication.
└─·security,web·Chrome Releases Blog
Jun 16
Jun 16·cat news/20260616-android-android-17-stable-ga
cat news/20260616-android-android-17-stable-ga
Android 17 lands on Pixel with large-screen resizability now mandatory
Google shipped the Android 17 stable release to Pixel devices, making adaptive, resizable layouts a requirement rather than a suggestion.
└─Android Developers Blog
Jun 11
Jun 11·cat news/20260611-android-android-cli-stable-10
cat news/20260611-android-android-cli-stable-10
Android CLI Reaches Stable 1.0 with Programmatic Version Lookup and Journeys Support
Android CLI graduated to stable 1.0, adding programmatic version lookup, Journeys support for automated device flows, and official Android resources in Google's Antigravity agent platform.
└─Android Developers Blog
Jun 2
Jun 2·cat news/20260602-android-june-2026-security-bu
cat news/20260602-android-june-2026-security-bu
Google Patches Actively Exploited Android Zero-Day in June 2026 Security Bulletin
Google's June 2026 Android security bulletin closes 124 flaws, including one zero-day already being exploited in targeted attacks.
└─BleepingComputer
Jun 2
Jun 2·cat news/20260602-android-june-2026-drop-person
cat news/20260602-android-june-2026-drop-person
Google's June Android Drop brings fake call alerts and iPhone photo sharing
Google's June Android feature drop adds warnings for suspected fake calls, cross-platform photo sharing with iPhone, and a Wardrobe Planning tool in Photos.
└─blog.google
Jun 15
Jun 15·cat news/20260615-ios-ios266-beta2-dev-seed
cat news/20260615-ios-ios266-beta2-dev-seed
Apple Seeds iOS 26.6 Beta 2 with Bug Fixes and New Blocked-Contact Notifications
Apple released the second developer betas of iOS 26.6, iPadOS 26.6, macOS 26.6, tvOS 26.6, visionOS 26.6, and watchOS 26.6 on June 15, focusing on stability rather than new features.
└─MacRumors / 9to5Mac / Apple Developer
Jun 8
Jun 8·cat news/20260608-ios-ios27-apple-intelligence
cat news/20260608-ios-ios27-apple-intelligence
iOS 27 Apple Intelligence brings Reframe, Extend, and cross-app context awareness
Apple Intelligence in iOS 27 adds spatial photo editing tools, up to 80% faster AirDrop, and a Phone app that can pull context from Mail and Messages mid-call.
└─Apple Newsroom
Jun 8
Jun 8·cat news/20260608-ios-ios27-dev-beta-wwdc-keynote
cat news/20260608-ios-ios27-dev-beta-wwdc-keynote
iOS 27 Developer Beta Ships as WWDC 2026 Keynote Confirms Feature Set
Apple released the iOS 27 developer beta on June 8 following the WWDC keynote, confirming a Siri conversation app, AI photo editing, and the end of Intel Mac support in macOS 27.
└─Apple Developer / MacRumors
Jun 4
Jun 4·cat news/20260604-ios-wwdc2026-ios27-june8
cat news/20260604-ios-wwdc2026-ios27-june8
WWDC 2026 Opens June 8 with iOS 27 Expected Alongside First Developer Betas
Apple's developer conference begins June 8, where iOS 27 is expected to be announced and developer betas are set to drop the same day.
└─MacRumors
Apr 28
Apr 28·cat news/20260502-ios-appstore-sdk-ios26-req
cat news/20260502-ios-appstore-sdk-ios26-req
App Store Connect now requires iOS 26 SDK for all new app uploads
Starting April 28, 2026, all apps submitted to App Store Connect must be built with the iOS 26 and iPadOS 26 SDK.
└─Apple Developer
May 28
May 28·cat news/20260528-react-native-expo-router-v56-fo
cat news/20260528-react-native-expo-router-v56-fo
Expo Router v56 Forks from React Navigation, Adds Streaming SSR and Android Toolbar
Expo Router v56 ships its own navigation stack — severing the React Navigation dependency — alongside streaming SSR and a new Android toolbar.
└─Expo Engineering Blog
May 21
May 21·cat news/20260521-kmp-kotlinconf26-keynote-sub
cat news/20260521-kmp-kotlinconf26-keynote-sub
KotlinConf 2026 Keynote Unveils Kotlin 2.4.0 Preview, Wasm Beta, and Agent Client Protocol
The KotlinConf 2026 keynote landed Kotlin 2.4.0 in preview, pushed Kotlin/Wasm to Beta, introduced an 18-month security support policy for the standard library, and revealed JetBrains co-leading a new open Agent Client Protocol standard.
└─JetBrains Kotlin Blog
────────────────────────────────────────────────────────────
Jun 16
Jun 16·cat news/20260616-css-browsers-firefox-152-stable
cat news/20260616-css-browsers-firefox-152-stable
Firefox 152 Ships JPEG XL by Default, Redesigned Settings, and Notification Action Buttons
Firefox 152 graduates JPEG XL from Labs to stable, ships a redesigned Settings UI, adds widget support on New Tab pages, and brings action-button support for web notifications.
└─9to5Linux
Jun 9
Jun 9·cat news/20260609-css-browsers-chrome-cve-2026-11645
cat news/20260609-css-browsers-chrome-cve-2026-11645
Chrome 149 Security Patch Fixes Actively Exploited V8 Zero-Day CVE-2026-11645
Google shipped Chrome 149.0.7827.102/.103 on June 9 to plug an out-of-bounds read/write in V8 that is already being exploited in the wild.
└─Help Net Security
Jun 2
Jun 2·cat news/20260602-css-browsers-chrome-149-stable
cat news/20260602-css-browsers-chrome-149-stable
Chrome 149 Stable Ships, Sets Up 150 for June 30
Chrome 149 hit stable on June 2, continuing the browser's four-week release cadence with Chrome 150 penciled in for June 30.
└─Chrome Releases Blog
May 20
May 20·cat news/20260520-css-browsers-webmcp-origin-trial
cat news/20260520-css-browsers-webmcp-origin-trial
WebMCP Proposed as Open Web Standard for Browser-Based AI Agents, Chrome 149 Trial Launching
Google proposed WebMCP at Google I/O 2026 as an open web standard enabling browser-based AI agents to execute structured tool calls, with an experimental origin trial starting in Chrome 149.
└─Google Developers Blog
Jun 2
Jun 2·cat news/20260602-nextjs-nextjs-1626-bugfix-drop
cat news/20260602-nextjs-nextjs-1626-bugfix-drop
Next.js 16.2.6 Backports Hydration Fix and Docs Correction
Next.js 16.2.6 ships two backported fixes: a dev-mode hydration failure when pages are served from HTTP cache, and a documentation correction for the 16.2 release.
└─GitHub (vercel/next.js)
May 13
May 13·cat news/20260513-nextjs-nextjs-security-13-cves
cat news/20260513-nextjs-nextjs-security-13-cves
Next.js Security Release Expands to 13 Advisories with CVE-2026-23870 RSC DoS
Vercel's May security release now covers 13 advisories including CVE-2026-23870, a React Server Components denial-of-service vulnerability, with patched versions Next.js 15.5.18 and 16.2.6 available.
└─Vercel
Jun 3
Jun 3·cat news/20260603-svelte-svelte-june-2026-whats-new
cat news/20260603-svelte-svelte-june-2026-whats-new
Svelte's June 2026 Roundup Covers Language Tools, AI Integrations, and Vite Plugin Updates
The monthly Svelte community roundup for June 2026 highlights updates across language-tools, AI tooling integrations, and vite-plugin-svelte.
└─Svelte Blog
May 1
May 1·cat news/20260501-svelte-sveltekit-may-2026-rel
cat news/20260501-svelte-sveltekit-may-2026-rel
SvelteKit 2.56-2.57, Svelte 5.55, and sv CLI 0.1.0 ship TypeScript 6.0 support and breaking query changes
The Svelte May 2026 roundup brings SvelteKit TypeScript 6.0 compatibility, a new form-field default-value API, motion-type exports in Svelte 5.55, and the sv CLI's first stable community add-ons feature — alongside several breaking changes to query lifecycle.
└─Svelte Blog
Jun 1
Jun 1·cat news/20260601-react-react-19-formdata-patch
cat news/20260601-react-react-19-formdata-patch
React 19 Patch Releases Fix FormData Regression in Server Actions
React 19.0.7, 19.1.8, and 19.2.7 all shipped June 1 with a same-day fix for a FormData regression in Server Actions introduced by the previous patch on each branch.
└─GitHub
May 20
May 20·cat news/20260520-react-wordpress-70-shipped
cat news/20260520-react-wordpress-70-shipped
WordPress 7.0 Ships on May 20 with Real-Time Collaboration Deferred
WordPress 7.0 reached final release on May 20 after a cycle extension, but real-time collaboration was pulled from the milestone due to unresolved race conditions and memory concerns.
└─WordPress Developer Blog
────────────────────────────────────────────────────────────
Jun 17
Jun 17·cat news/20260617-nodejs-june-security-releases
cat news/20260617-nodejs-june-security-releases
Patch your Node.js — HIGH-severity fixes land across 26, 24, and 22
Node.js shipped coordinated security releases on June 17 for the 26.x, 24.x, and 22.x lines, with the top issue rated HIGH.
└─Node.js
Jun 1
Jun 1·cat news/20260601-nodejs-node-25-eol-june-2026
cat news/20260601-nodejs-node-25-eol-june-2026
Node.js 25 Reaches End of Support
Node.js 25 went end-of-life on June 1, 2026 and will receive no further security updates.
└─Node.js
May 5
May 5·cat news/20260505-nodejs-node-26-major-release
cat news/20260505-nodejs-node-26-major-release
Node.js 26.0.0 Released with Temporal API and V8 14.6
Node.js 26 ships as the new Current release with Temporal API enabled by default, V8 14.6, and several breaking changes including removal of legacy stream modules and the writeHeader method.
└─Node.js
Jun 15
Jun 15·cat news/20260615-python-fastapi-01371-typing-fix
cat news/20260615-python-fastapi-01371-typing-fix
FastAPI 0.137.1 Fixes Typing Checks in APIRoute
A small patch release corrects a bug that let prefixless routers accept empty paths and tightens typing validation in APIRoute.
└─GitHub
Jun 10
Jun 10·cat news/20260610-python-python-3146-31314-rel
cat news/20260610-python-python-3146-31314-rel
Python 3.14.6 and 3.13.14 Released
The Python core team shipped maintenance releases for both active branches on June 10, carrying a combined ~419 bugfixes, build improvements, and documentation corrections.
└─Python.org
May 6
May 6·cat news/20260506-python-python-2026-roadma
cat news/20260506-python-python-2026-roadma
Python 2026 Roadmap: Free-Threading, Lazy Imports, and Further Speed Gains
A New Stack overview of Python's 2026 roadmap highlights official free-threading support, lazy import machinery, and continued interpreter performance work as the main themes for the year.
└─The New Stack
May 5
May 5·cat news/20260505-python-packaging-council-gov
cat news/20260505-python-packaging-council-gov
Python Establishes a New Packaging Council
The Python community formed a dedicated Packaging Council to consolidate governance over the fragmented packaging ecosystem.
└─Real Python
Jun 15
Jun 15·cat news/20260615-apis-salesforce-summer26-apex-agent
cat news/20260615-apis-salesforce-summer26-apex-agent
Salesforce Summer '26: Agent Script Goes Open-Source, Agentforce Builder Hits GA
Salesforce's Summer '26 release lands new Apex user-mode defaults alongside Agent Script (Apache 2.0) and a programmatic Agent Builder API for configuring Agentforce agents in code.
└─Salesforce Developers Blog
Jun 1
Jun 1·cat news/20260601-apis-dbt-v2-alpha-snowflake-summit
cat news/20260601-apis-dbt-v2-alpha-snowflake-summit
dbt Core v2.0 Alpha Debuts at Snowflake Summit
dbt Labs released dbt Core v2.0 in alpha at Snowflake Summit 2026, introducing support for user-defined function deferral.
└─dbt Labs
May 21
May 21·cat news/20260521-apis-kotlinconf-acp-open-stand
cat news/20260521-apis-kotlinconf-acp-open-stand
JetBrains Unveils Agent Client Protocol, an Open Standard for IDE-Agent Communication
JetBrains co-launched the Agent Client Protocol at KotlinConf, an open standard defining how coding agents interact with IDEs.
└─JetBrains Blog
May 13
May 13·cat news/20260513-apis-github-enterprise-install-api
cat news/20260513-apis-github-enterprise-install-api
GitHub Launches Enterprise Installation API in Public Preview
A new GitHub API in public preview lets GitHub Apps directly query whether they are installed on a specific enterprise and retrieve the installation ID, eliminating the need to paginate all installations.
└─GitHub Changelog
Jun 30
Jun 30·cat news/20260604-javajvm-spring-boot-35-eol-jun30
cat news/20260604-javajvm-spring-boot-35-eol-jun30
Spring Boot 3.5 Free Support Ends June 30
Spring Boot 3.5 reaches end of open-source support on June 30, leaving teams without a commercial agreement dependent on self-patching or a migration to 4.x.
└─endoflife.date
May 21
May 21·cat news/20260521-javajvm-kotlin-240-preview-sec
cat news/20260521-javajvm-kotlin-240-preview-sec
Kotlin 2.4.0 Preview Ships with 18-Month Standard Library Security Support
JetBrains previewed Kotlin 2.4.0 at KotlinConf and committed to an 18-month security support window for stable standard library releases.
└─JetBrains Blog
May 19
May 19·cat news/20260519-javajvm-jdk27-jeps-batch-may19
cat news/20260519-javajvm-jdk27-jeps-batch-may19
Four JDK 27 JEPs Advance to Review: G1 Universal Default, Compact Headers, Vector API, PEM
JDK 27 review cycles opened for JEP 523 (G1 as universal default GC), JEP 534 (compact object headers default), JEP 537 (Vector API 12th incubator), and JEP 538 (new PEM encoding/decoding API).
└─TensorBlue / Java News Roundup
May 14
May 14·cat news/20260514-javajvm-java-post-quantum-tls
cat news/20260514-javajvm-java-post-quantum-tls
Java Gets Post-Quantum TLS - Inside Java Newscast #112
Oracle's Inside Java Newscast #112 details post-quantum TLS support being added to the JDK, a major cryptographic hardening ahead of quantum computing threats.
└─Inside Java (Oracle)
May 14
May 14·cat news/20260514-javajvm-geecon-2026-krakow
cat news/20260514-javajvm-geecon-2026-krakow
GeeCon 2026 in Kraków, Poland (May 14-15)
GeeCon 2026 runs May 14-15 in Kraków with sessions on JDK 27 roadmap items including Structured Concurrency and what excites developers most about Java in 2026.
└─JetBrains Blog
May 28
May 28·cat news/20260528-rust-rust-1-96-0
cat news/20260528-rust-rust-1-96-0
Rust 1.96.0 Released
The new core::range types are now Copy, two pattern-matching assertion macros land, and the wasm linker stops silently inventing imports.
└─Rust Blog
May 15
May 15·cat news/20260515-rust-azure-sdk-rust-stable
cat news/20260515-rust-azure-sdk-rust-stable
Microsoft Releases Stable Azure SDK for Rust
Microsoft shipped the stable Azure SDK for Rust, delivering production-ready crates for Core, Identity, Key Vault, and Storage services.
└─Microsoft Dev Blogs
────────────────────────────────────────────────────────────
Jun 16
Jun 16·cat news/20260616-warehouses-databricks-dais-agentbricks
cat news/20260616-warehouses-databricks-dais-agentbricks
Databricks opens its summit with a bigger Agent Bricks and Unity AI Gateway
At the Data + AI Summit keynote, Databricks expanded Agent Bricks into a fuller agent-building platform and introduced Unity AI Gateway for governing AI assets in one place.
└─Databricks
Jun 7
Jun 7·cat news/20260607-warehouses-snowflake-databricks-age
cat news/20260607-warehouses-snowflake-databricks-age
Snowflake and Databricks Both Want to Own the Agentic Layer Above Your Data
A SiliconAngle analysis unpacks how Snowflake and Databricks are racing past data platforms to claim the agentic AI tier — the layer that enterprise users will actually talk to.
└─SiliconAngle
May 4
May 4·cat news/20260504-warehouses-amazon-quick-ga
cat news/20260504-warehouses-amazon-quick-ga
Amazon Quick launches free and paid tiers with expanded enterprise data source integrations
Amazon's Quick AI assistant is now available in Free and Plus pricing tiers with a native desktop app for macOS and Windows, adding connectors for Google Workspace, Zoom, Airtable, Dropbox, and Microsoft Teams alongside visual asset generation.
└─AWS Blog
Jun 14
Jun 14·cat news/20260614-streaming-apache-flink-213-bugfix
cat news/20260614-streaming-apache-flink-213-bugfix
Apache Flink 2.1.3 patches five bugs and vulnerability fixes
The Flink community shipped the third bug-fix release of the 2.1 series, covering five bugs, vulnerability fixes, and minor improvements.
└─Apache Flink Blog
Jun 2
Jun 2·cat news/20260602-streaming-confluent-snapshot-queries
cat news/20260602-streaming-confluent-snapshot-queries
Confluent Cloud Snapshot Queries reach general availability
Snapshot Queries hit GA, letting you run one-shot Flink SQL against a point-in-time union of Kafka's real-time events and Tableflow's deep history — no separate batch pipeline required.
└─Confluent
Jun 1
Jun 1·cat news/20260601-streaming-apache-kafka-430
cat news/20260601-streaming-apache-kafka-430
Apache Kafka 4.3.0 released with first-class header support in Streams
Kafka 4.3.0 ships KIP-1271 and KIP-1285, letting Streams state stores persist record headers natively — alongside share-group buffer controls and broker log-directory cordoning.
└─Apache Kafka
Jun 1
Jun 1·cat news/20260601-streaming-confluent-flink-dbt-ada
cat news/20260601-streaming-confluent-flink-dbt-ada
Confluent Cloud for Apache Flink gains a dbt adapter
Confluent's Q2 2026 launch post introduces a dbt-confluent adapter, letting developers write streaming Flink transformations as ordinary dbt models.
└─Confluent
Jun 1
Jun 1·cat news/20260601-pipelines-etl-dbt-v2-alpha-snow
cat news/20260601-pipelines-etl-dbt-v2-alpha-snow
dbt Core v2.0 enters alpha at Snowflake Summit
dbt Labs unveiled the first alpha of dbt Core v2.0 at Snowflake Summit, the biggest version bump since the project launched, headlined by UDF-aware deferral.
└─dbt Labs
May 27
May 27·cat news/20260527-pipelines-etl-gcp-managed-airflow
cat news/20260527-pipelines-etl-gcp-managed-airflow
Managed Airflow gets environment tags and a dark console
Google's Managed Service for Apache Airflow began rolling out a release that adds resource tags for IAM policy conditions, a dark theme in the Cloud Console, and faster worker startup on package-heavy environments.
└─Google Cloud
Nov 12
Nov 12·cat news/20261112-databases-postgresql-14-eol-deadline
cat news/20261112-databases-postgresql-14-eol-deadline
PostgreSQL 14 reaches end-of-life on November 12, 2026
PostgreSQL 14 will receive no further security patches or bug fixes after November 12, 2026, requiring teams to migrate to a supported major version.
└─PostgreSQL Global Development Group
May 29
May 29·cat news/20260529-databases-neon-backend-platform
cat news/20260529-databases-neon-backend-platform
Neon wants to be your whole backend, not just the database
Neon now pitches itself as a complete backend for apps and agents — Postgres, Auth, and a Data API today, with object storage, compute, and an AI gateway flagged as coming — and shipped a batch of changelog fixes the same day.
└─Neon
May 20
May 20·cat news/20260520-databases-duckdb-153-quack-protoc
cat news/20260520-databases-duckdb-153-quack-protoc
DuckDB 1.5.3 ships Quack protocol as a core extension
DuckDB 1.5.3 promotes the Quack client-server protocol to a bundled core extension and lands significant Iceberg and DuckLake improvements.
└─duckdb.org
May 20
May 20·cat news/20260520-databases-clickhouse-v26437-stable
cat news/20260520-databases-clickhouse-v26437-stable
ClickHouse v26.4.3.37-stable released
A bug-fix stable patch lands on top of the 26.4 feature release, which added VALUES as a table expression, natural join, and compound INTERVAL literals.
└─ClickHouse
May 20
May 20·cat news/20260520-databases-oracle-goldengate-gcp-ga
cat news/20260520-databases-oracle-goldengate-gcp-ga
Oracle GoldenGate support reaches GA on Oracle Database@Google Cloud
Oracle Cloud Infrastructure GoldenGate is now generally available on Oracle Database@Google Cloud, enabling real-time data replication and transformation between systems.
└─Google Cloud
────────────────────────────────────────────────────────────
Jun 5
Jun 5·cat news/20260605-llms-claude-opus-41-deprecation-dead
cat news/20260605-llms-claude-opus-41-deprecation-dead
Claude Opus 4.1 Deprecated — August 5 Retirement
claude-opus-4-1-20250805 entered deprecated status on June 5 and retires August 5, 2026, with claude-opus-4-8 as the replacement.
└─Anthropic Platform Docs
Jun 16
Jun 16·cat news/20260616-llms-claude-mythos-preview-retire-june30
cat news/20260616-llms-claude-mythos-preview-retire-june30
Claude Mythos Preview Retires June 30
The claude-mythos-preview model endpoint will stop accepting requests on June 30, with claude-mythos-5 as the migration target.
└─Anthropic Platform Docs
Jun 15
Jun 15·cat news/20260615-llms-claude-sonnet4-opus4-retired
cat news/20260615-llms-claude-sonnet4-opus4-retired
Claude Sonnet 4 and Opus 4 Original Builds Fully Retired from the API
As of June 15, claude-sonnet-4-20250514 and claude-opus-4-20250514 no longer accept API requests — the retirement date arrived and both are gone.
└─Anthropic Platform Docs
Jun 15
Jun 15·cat news/20260615-llms-anthropic-prog-billing-live
cat news/20260615-llms-anthropic-prog-billing-live
Anthropic Programmatic Credit Pool Goes Live
Direct API and SDK usage now draws from a dedicated credit pool, separate from Claude.ai consumption, effective June 15.
└─Anthropic API Docs
Jun 15
Jun 15·cat news/20260615-llms-claude-sonnet4-opus4-eol
cat news/20260615-llms-claude-sonnet4-opus4-eol
Claude Sonnet 4 and Opus 4 Retire June 15
Anthropic is retiring Claude Sonnet 4 and Opus 4 on June 15, requiring API callers to migrate to current model versions before that date.
└─Anthropic Docs
Jun 1
Jun 1·cat news/20260601-llms-anthropic-prog-billing-june15
cat news/20260601-llms-anthropic-prog-billing-june15
Anthropic splits programmatic Claude usage into a separate credit pool starting June 15
Claude programmatic usage — CI runs, Agent SDK automation, GitHub Actions, third-party agent frameworks — moves to a dedicated monthly credit pool on June 15, separate from interactive usage.
└─devtoolpicks.com
Jun 12
Jun 12·cat news/20260612-llms-tcs-anthropic-enterprise-par
cat news/20260612-llms-tcs-anthropic-enterprise-par
TCS and Anthropic Announce Partnership to Deploy Claude in Regulated Industries
Tata Consultancy Services and Anthropic struck a partnership to bring Claude into enterprise and regulated-industry workflows, following a similar DXC Technology deal announced just one day prior.
└─Anthropic newsroom
Jun 12
Jun 12·cat news/20260612-llms-anthropic-public-record-transp
cat news/20260612-llms-anthropic-public-record-transp
Anthropic Publishes Its First Public Record Transparency Report
Anthropic released its inaugural Public Record — a structured disclosure covering usage, safety, and policy data — as the first company-wide transparency report of its kind.
└─Anthropic newsroom
Jun 11
Jun 11·cat news/20260611-llms-dxc-anthropic-enterprise-allia
cat news/20260611-llms-dxc-anthropic-enterprise-allia
Anthropic and DXC Technology Sign Multi-Year Alliance to Bring Claude to Regulated Industries
A global partnership with DXC Technology will put Claude into the enterprise systems that banks, airlines, and other regulated-sector clients already run on.
└─Anthropic
Jun 12
Jun 12·cat news/20260612-models-fable5-mythos5-export-su
cat news/20260612-models-fable5-mythos5-export-su
US Government Orders Anthropic to Suspend Fable 5 and Mythos 5 Over Export Controls
Three days after launch, a federal export control directive forced Anthropic to pull both Claude Fable 5 and Mythos 5 worldwide after the government cited a 'potential narrow, non-universal jailbreak' in code-analysis tasks.
└─Anthropic newsroom
Jun 9
Jun 9·cat news/20260609-models-gemini-35-flash-default-all
cat news/20260609-models-gemini-35-flash-default-all
Gemini 3.5 Flash Is Now On by Default and Cannot Be Disabled
Google removed the opt-out toggle for Gemini 3.5 Flash in the Gemini Enterprise app on June 9, making it a mandatory default for all users.
└─Google Cloud
Jun 8
Jun 8·cat news/20260608-models-apple-intelligence-wwdc-nextgen
cat news/20260608-models-apple-intelligence-wwdc-nextgen
Apple Unveils Next-Generation Apple Intelligence at WWDC with Spatial and Cross-App Features
Apple showed a substantially expanded Apple Intelligence at WWDC, with spatial image editing, cross-app context awareness, and rebuilt Photos and Spotlight — running on-device, gated to iPhone 17 Pro/Max/Air for full Siri AI.
└─Apple Newsroom
Jun 2
Jun 2·cat news/20260602-models-glasswing-150-orgs-expansion
cat news/20260602-models-glasswing-150-orgs-expansion
Project Glasswing Opens Claude Mythos Access to 150 More Organizations
Anthropic expanded Project Glasswing on June 2, granting Claude Mythos model access to roughly 150 new organizations across more than 15 countries.
└─Anthropic
Jun 11
Jun 11·cat news/20260611-agents-nvidia-rtx-spark-openshell
cat news/20260611-agents-nvidia-rtx-spark-openshell
NVIDIA and Microsoft put 120B-parameter agents on a Windows laptop
NVIDIA and Microsoft announced RTX Spark, a unified-memory Windows platform that runs 120-billion-parameter models on-device and ships an OpenShell runtime to keep agent data local.
└─NVIDIA Newsroom
Jun 2
Jun 2·cat news/20260602-agents-windsurf-devin-desktop-rebr
cat news/20260602-agents-windsurf-devin-desktop-rebr
Windsurf Retires, Relaunches as Devin Desktop with Rust-Rewritten Engine and ACP Support
Cognition has retired the Windsurf brand and reissued the product as Devin Desktop, swapping Cascade for a Rust-rewritten local engine that claims 30% better token efficiency and ships native ACP support.
└─Devin Blog
May 28
May 28·cat news/20260528-agents-claude-code-dynamic-workflows
cat news/20260528-agents-claude-code-dynamic-workflows
Claude Code gets dynamic workflows in research preview
Alongside Opus 4.8, Claude Code can now plan a task and fan it out across hundreds of parallel subagents in one session.
└─TechCrunch
May 21
May 21·cat news/20260521-agents-kotlinconf-acp-standard
cat news/20260521-agents-kotlinconf-acp-standard
JetBrains Co-Leads Agent Client Protocol, an Open Standard for IDE-Agent Communication
JetBrains announced at KotlinConf 2026 that it is co-leading the Agent Client Protocol, an open standard defining how coding agents and IDEs exchange context, instructions, and results.
└─JetBrains Blog
May 20
May 20·cat news/20260520-frameworks-google-ai-studio-io26
cat news/20260520-frameworks-google-ai-studio-io26
Google AI Studio Gains Native Kotlin Support, Workspace Integrations, and Cloud Run Export
Google expanded AI Studio at I/O 2026 with native Kotlin support, Google Workspace integrations, one-click Cloud Run deployment, and direct export to Antigravity.
└─Google Developers Blog
May 19
May 19·cat news/20260519-frameworks-autogpt-cve-33233-rce
cat news/20260519-frameworks-autogpt-cve-33233-rce
AutoGPT Unsafe Pickle Deserialization Enables Arbitrary Code Execution (CVE-2026-33233)
A CVSS 7.6 vulnerability in AutoGPT allows remote code execution through unsafe pickle deserialization.
└─CVE Records
May 19
May 19·cat news/20260519-frameworks-autogpt-cve-33232-dos
cat news/20260519-frameworks-autogpt-cve-33232-dos
AutoGPT Unauthenticated DoS via Disk Space Exhaustion (CVE-2026-33232)
CVE-2026-33232 allows an unauthenticated attacker to exhaust disk space on AutoGPT instances, rated CVSS 7.5.
└─CVE Records
May 19
May 19·cat news/20260519-frameworks-autogpt-cve-33234-ssrf
cat news/20260519-frameworks-autogpt-cve-33234-ssrf
AutoGPT SSRF Filter Bypass (CVE-2026-33234)
CVE-2026-33234 describes a server-side request forgery bypass in AutoGPT rated CVSS 5.0.
└─CVE Records
May 12
May 12·cat news/20260512-mcp-figma-mcp-server-launch
cat news/20260512-mcp-figma-mcp-server-launch
Figma Launches Official MCP Server for Bidirectional Code-Design Workflows
Figma released an official MCP server enabling AI agents to translate code into Figma designs, modify design systems, and convert designs back to code via the open MCP standard.
└─Figma Help Center
May 5
May 5·cat news/20260505-mcp-jama-connect-mcp-server
cat news/20260505-mcp-jama-connect-mcp-server
Jama Software Launches MCP Server for Jama Connect, Enabling AI Coding Assistants to Access Requirements Traceability
Jama Software has released an MCP Server for Jama Connect, letting AI coding tools such as Claude, Codex, Cursor, and GitHub Copilot query and navigate requirements traceability data while respecting existing permissions and audit workflows.
└─IT Business Net
────────────────────────────────────────────────────────────
Jun 14
Jun 14·cat news/20260614-k8s-cncf-k8s-133-eol-jun28
cat news/20260614-k8s-cncf-k8s-133-eol-jun28
Kubernetes 1.33 Reaches End of Life on June 28
Kubernetes 1.33 hits EOL in two weeks — clusters still on it will receive no further patches after June 28.
└─Kubernetes
Jun 18
Jun 18·cat news/20260604-k8s-cncf-kubecon-india-2026
cat news/20260604-k8s-cncf-kubecon-india-2026
KubeCon + CloudNativeCon India 2026 Confirmed for June 18-19 in Mumbai
CNCF has locked in Mumbai for its inaugural India-focused KubeCon + CloudNativeCon, running June 18-19.
└─CNCF
Jun 16
Jun 16·cat news/20260616-k8s-cncf-k8s-137-enhancements-freeze
cat news/20260616-k8s-cncf-k8s-137-enhancements-freeze
Kubernetes 1.37 hits enhancements freeze
The Kubernetes 1.37 cycle reached its enhancements freeze on June 16, locking the set of features that can still make the release.
└─Kubernetes
Jun 10
Jun 10·cat news/20260610-k8s-cncf-k8s-137-prod-ready-frz
cat news/20260610-k8s-cncf-k8s-137-prod-ready-frz
Kubernetes v1.37 Production Readiness Freeze Lands June 10
The v1.37 release cycle hit Production Readiness Freeze on June 10, signalling that the window to land new enhancements is closing ahead of the August 26 release.
└─kubernetes.dev
May 21
May 21·cat news/20260521-k8s-cncf-obs-summit-na-opened
cat news/20260521-k8s-cncf-obs-summit-na-opened
CNCF Observability Summit North America 2026 Opens in Minneapolis
The CNCF Observability Summit North America 2026 opened on May 21 in Minneapolis, moving from a scheduled conference to an active two-day event.
└─CNCF
Jun 9
Jun 9·cat news/20260609-cloud-gemini-35-flash-default-on
cat news/20260609-cloud-gemini-35-flash-default-on
Gemini 3.5 Flash Becomes Mandatory Default in Google Workspace Enterprise, Opt-Out Removed
Google removed the feature-management toggle for Gemini 3.5 Flash on June 9, making it a forced default across all Gemini Enterprise app users with no opt-out path.
└─Google Cloud Release Notes
Jun 8
Jun 8·cat news/20260608-cloud-aks-flatcar-retires-today
cat news/20260608-cloud-aks-flatcar-retires-today
AKS Flatcar Container Linux Preview Retires Today — No In-Place Migration Available
AKS drops Flatcar Container Linux support today, blocking new node pool creation and cutting off security patches, with a hard code-removal deadline on September 8.
└─Microsoft / Azure AKS
Jun 12
Jun 12·cat news/20260612-cloud-aws-copilot-cli-eol
cat news/20260612-cloud-aws-copilot-cli-eol
AWS Copilot CLI Reaches End of Support June 12, 2026
AWS is ending support for the Copilot CLI on June 12, retiring the container-focused deployment tool in favor of the AWS CDK and ECS native tooling.
└─AWS
Jun 2
Jun 2·cat news/20260602-cloud-windows365-agents-sku
cat news/20260602-cloud-windows365-agents-sku
Windows 365 for Agents Launches as Dedicated Cloud PC SKU for AI Workloads
Microsoft shipped a new Windows 365 SKU at Build 2026 that provisions dedicated cloud PCs specifically for running AI agent workloads.
└─Microsoft News
Jun 2
Jun 2·cat news/20260602-cloud-microsoft-discovery-ga
cat news/20260602-cloud-microsoft-discovery-ga
Microsoft Discovery Reaches General Availability as AI Research Acceleration Platform
Microsoft's Discovery platform — built to accelerate scientific research with AI, informed in part by Majorana 2 chip work — hit GA at Build 2026.
└─Microsoft News
Jun 2
Jun 2·cat news/20260602-cloud-rayfin-agentic-backends
cat news/20260602-cloud-rayfin-agentic-backends
Microsoft Unveils Rayfin for Building Enterprise Agentic Application Backends
Rayfin, a new Microsoft platform for enterprise-grade agentic app backends, was announced at Build 2026.
└─Microsoft News
May 17
May 17·cat news/20260517-cloud-cisco-sdwan-cve-2026-20182
cat news/20260517-cloud-cisco-sdwan-cve-2026-20182
CISA Mandates Federal Patch for Critical Cisco Catalyst SD-WAN Auth Bypass CVE-2026-20182
CISA has ordered federal agencies to patch a CVSS 10.0 authentication bypass in Cisco Catalyst SD-WAN Controller and Manager by May 17, 2026, following confirmed active exploitation.
└─BleepingComputer
May 12
May 12·cat news/20260512-cloud-cisa-kev-cve-2026-32202
cat news/20260512-cloud-cisa-kev-cve-2026-32202
CISA KEV Patch Deadline Arrives for Windows Shell Spoofing CVE-2026-32202
The FCEB mandatory patching deadline for CVE-2026-32202, a zero-click Windows Shell spoofing vulnerability actively exploited by APT28, falls today, May 12, 2026.
└─CISA / The Hacker News
May 9
May 9·cat news/20260509-cloud-cisa-pan-os-0300-deadline
cat news/20260509-cloud-cisa-pan-os-0300-deadline
CISA May 9 Deadline Forces PAN-OS CVE-2026-0300 Mitigations Ahead of Planned May 13 Patch
CISA's May 9 enforcement deadline for federal agencies to mitigate the actively exploited PAN-OS root-level RCE (CVE-2026-0300) arrives while Palo Alto's patch remains four days away.
└─The Hacker News
Jun 12
Jun 12·cat news/20260608-cicd-aws-copilot-cli-eol-jun
cat news/20260608-cicd-aws-copilot-cli-eol-jun
AWS Copilot CLI Reaches End of Support on June 12
AWS is ending official support for Copilot CLI on June 12, leaving ECS teams four days to confirm a migration path.
└─AWS News Blog
Jun 7
Jun 7·cat news/20260607-cicd-gh-actions-win-migration-start
cat news/20260607-cicd-gh-actions-win-migration-start
GitHub Actions Windows Image Migration to Visual Studio 2026 Begins June 8
The windows-latest and windows-2025 label migration to Visual Studio 2026 starts June 8 and completes by June 15, with macOS 26 following on June 15.
└─GitHub Changelog
May 8
May 8·cat news/20260508-cicd-github-agentic-wf-sec
cat news/20260508-cicd-github-agentic-wf-sec
GitHub Details Defense-in-Depth Security Architecture for Agentic CI/CD Workflows
GitHub published a comprehensive security model for agentic workflows, covering sandboxed execution, credential isolation, and full traceability across trust boundaries.
└─InfoQ
────────────────────────────────────────────────────────────
Jun 16
Jun 16·cat news/20260616-cves-chrome-149-june16-33fixes
cat news/20260616-cves-chrome-149-june16-33fixes
Chrome 149 patches 33 vulnerabilities in one drop — seven rated Critical
Google shipped Chrome 149.0.7827.155 on June 16 with 33 security fixes, seven Critical, targeting use-after-free bugs across WebShare, WebView, Digital Credentials, and Web Authentication.
└─Chrome Releases Blog
Jun 12
Jun 12·cat news/20260612-cves-advisories-ivanti-sentry-kev-rce
cat news/20260612-cves-advisories-ivanti-sentry-kev-rce
CISA Adds Ivanti Sentry OS Command Injection to KEV — Unauthenticated Root RCE
CISA added a critical Ivanti Sentry flaw to its Known Exploited Vulnerabilities catalog on June 12, enabling unauthenticated remote attackers to execute commands as root.
└─CISA KEV Catalog
Jun 12
Jun 12·cat news/20260612-cves-advisories-ikev1-vpn-cve-2026-50751
cat news/20260612-cves-advisories-ikev1-vpn-cve-2026-50751
Check Point Confirms Active Exploitation of IKEv1 VPN Flaw CVE-2026-50751, Dutch NCSC Warns of Large-Scale Abuse
CVE-2026-50751, an IKEv1 VPN vulnerability confirmed as actively exploited by Check Point, drew a Dutch NCSC warning about imminent large-scale attacks and a CISA KEV deadline.
└─CISA KEV Catalog
Jun 9
Jun 9·cat news/20260609-cves-advisories-cisco-sdwan-mgr-kev
cat news/20260609-cves-advisories-cisco-sdwan-mgr-kev
CISA Adds Cisco Catalyst SD-WAN Manager to KEV With June 23 Deadline — Still No Patch
CISA formally listed CVE-2026-20245 in its Known Exploited Vulnerabilities catalog on June 9, giving federal agencies until June 23 to remediate — even though Cisco has yet to ship a fix.
└─CISA
Jun 9
Jun 9·cat news/20260609-cves-advisories-arista-eos-cve-2026-7473
cat news/20260609-cves-advisories-arista-eos-cve-2026-7473
Arista EOS CVE-2026-7473 Added to CISA KEV — Action Due June 23
CISA added CVE-2026-7473, an incomplete comparison flaw in Arista Extensible Operating System, to the Known Exploited Vulnerabilities catalog on June 9 with a remediation deadline of June 23, 2026.
└─CISA
Jun 9
Jun 9·cat news/20260609-cves-advisories-chrome-cve-2026-11645
cat news/20260609-cves-advisories-chrome-cve-2026-11645
Google Patches Fifth 2026 Chrome Zero-Day — Actively Exploited V8 Out-of-Bounds Bug CVE-2026-11645
Chrome 149.0.7827.102/.103 lands an emergency fix for CVE-2026-11645, an out-of-bounds read/write in V8 that is being exploited in the wild — the fifth Chrome zero-day patched this year.
└─Help Net Security
May 20
May 20·cat news/20260603-cves-advisories-defender-kev-june3-deadl
cat news/20260603-cves-advisories-defender-kev-june3-deadl
CISA Sets June 3 Deadline for Two Exploited Microsoft Defender Zero-Days
CVE-2026-41091 lets a local attacker escalate to SYSTEM through Defender's Malware Protection Engine, while CVE-2026-45498 kills definition updates — patched together, federal deadline June 3.
└─WinBuzzer / The Hacker News
Jun 2
Jun 2·cat news/20260602-cves-advisories-cisa-kev-cve-2022-0492-linux
cat news/20260602-cves-advisories-cisa-kev-cve-2022-0492-linux
CISA Adds 2022 Linux Kernel CVE-2022-0492 to KEV, Confirming Active Exploitation
CISA added CVE-2022-0492, a Linux Kernel improper authentication flaw first disclosed in 2022, to the Known Exploited Vulnerabilities catalog on June 2 — meaning it is now confirmed to be actively exploited in the wild.
└─CISA
Jun 2
Jun 2·cat news/20260602-cves-advisories-android-zerod-cve25-48595
cat news/20260602-cves-advisories-android-zerod-cve25-48595
Google Patches Actively Exploited Android Zero-Day CVE-2025-48595 Alongside 123 Other Flaws
Google's June 2026 Android bulletin fixes 124 vulnerabilities, one of which — an integer overflow in the Framework component — is already being used in targeted attacks.
└─BleepingComputer / CISA
May 21
May 21·cat news/20260521-cves-advisories-cisa-kev-langflow-trendmicro
cat news/20260521-cves-advisories-cisa-kev-langflow-trendmicro
CISA Adds Langflow and Trend Micro Apex One to KEV Catalog
CISA flagged CVE-2025-34291 (Langflow origin validation error) and CVE-2026-34926 (Trend Micro Apex One directory traversal) as actively exploited, requiring federal agencies to patch under BOD 22-01.
└─CISA
May 20
May 20·cat news/20260520-cves-advisories-cisa-kev-may20-seven-cves
cat news/20260520-cves-advisories-cisa-kev-may20-seven-cves
CISA KEV Adds Seven CVEs Including Two 2026 Microsoft Defender Flaws and Five Legacy Exploits
Seven vulnerabilities joined the KEV catalog on May 20, mixing two fresh Microsoft Defender CVEs with five bugs from 2008-2010 that are, apparently, still being weaponized.
└─CISA
May 17
May 17·cat news/20260517-cves-advisories-cisco-sdwan-cve-2026-20182
cat news/20260517-cves-advisories-cisco-sdwan-cve-2026-20182
CISA Orders Federal Agencies to Patch Cisco Catalyst SD-WAN Auth Bypass CVE-2026-20182 by May 17
A CVSS 10.0 authentication bypass in Cisco Catalyst SD-WAN is being actively exploited in the wild, with CISA mandating federal agency remediation by May 17, 2026 and no complete workaround available short of upgrading.
└─BleepingComputer
May 10
May 10·cat news/20260510-cves-advisories-ivanti-epmm-cisa
cat news/20260510-cves-advisories-ivanti-epmm-cisa
CISA May 10 Deadline Passes for Ivanti EPMM Remote Code Execution Flaw
CISA's May 10 remediation deadline for an Ivanti Endpoint Manager Mobile improper-input-validation bug enabling authenticated-admin RCE has now lapsed, increasing exposure for federal and enterprise deployments.
└─CISA
May 10
May 10·cat news/20260510-cves-advisories-ivanti-epmm-cve6973
cat news/20260510-cves-advisories-ivanti-epmm-cve6973
CISA Adds Ivanti EPMM CVE-2026-6973 to KEV; Federal Patch Deadline Is Today
Ivanti Endpoint Manager Mobile carries a CVSS 7.2 RCE flaw under active exploitation, and CISA ordered Federal Civilian Executive Branch agencies to apply patches by May 10, 2026.
└─The Hacker News
May 9
May 9·cat news/20260509-cves-advisories-cve-2026-0300-deadline
cat news/20260509-cves-advisories-cve-2026-0300-deadline
CISA Deadline Passes for PAN-OS CVE-2026-0300 as Patches Remain Unavailable Until May 13
The CISA May 9 remediation deadline for the actively exploited Palo Alto PAN-OS root-level RCE (CVE-2026-0300) has arrived with official patches still not available, requiring agencies to apply interim mitigations immediately.
└─The Hacker News
Jun 12
Jun 12·cat news/20260612-platform-security-fable-mythos-export-ctrl
cat news/20260612-platform-security-fable-mythos-export-ctrl
US Export Controls Force Anthropic to Suspend Claude Fable 5 and Mythos 5 Access Over Alleged AI Jailbreak
The US government invoked export controls on June 12 to suspend access to Claude Fable 5 and Mythos 5, citing a potential jailbreak with cybersecurity implications.
└─Anthropic
May 28
May 28·cat news/20260528-platform-security-microshift-grpc-patch
cat news/20260528-platform-security-microshift-grpc-patch
Red Hat patches gRPC auth-bypass in MicroShift 4.16.63
RHSA-2026:20436 lands the gRPC-Go fix for CVE-2026-33186 in MicroShift, closing an authorization bypass triggered by a non-canonical request path.
└─Red Hat
May 12
May 12·cat news/20260512-platform-security-cve-2026-32202-cisa-kev
cat news/20260512-platform-security-cve-2026-32202-cisa-kev
CISA KEV Deadline: Federal Agencies Must Patch Windows Shell CVE-2026-32202 by May 12
CISA's May 12 patching deadline for CVE-2026-32202 — an APT28-exploited Windows Shell spoofing flaw enabling zero-click NTLMv2 hash theft — arrives today, requiring the April 2026 cumulative update KB5083769.
└─CISA / The Hacker News
Jun 1
Jun 1·cat news/20260601-supply-chain-miasma-redhat-npm-teampc
cat news/20260601-supply-chain-miasma-redhat-npm-teampc
Miasma Supply Chain Attack Hits 32 Red Hat npm Packages via Compromised CI/CD Pipeline
TeamPCP's latest Mini Shai-Hulud variant compromised 96 versions across 32 @redhat-cloud-services npm packages — the fifth time this actor has pulled the same playbook in six weeks, and their first confirmed pivot to GitHub Actions OIDC tokens instead of individual developer credentials.
└─Wiz Research
May 31
May 31·cat news/20260531-supply-chain-triple-registry-npm-pypi-docker
cat news/20260531-supply-chain-triple-registry-npm-pypi-docker
Three Simultaneous Supply Chain Campaigns Hit npm, PyPI, and Docker Hub in 48 Hours
Three separate credential-stealing campaigns targeted npm, PyPI, and Docker Hub within the same 48-hour window — the Docker Hub incident involved a trojanized Trivy image and picked up CVE-2026-33634.
└─GitGuardian
May 28
May 28·cat news/20260528-supply-chain-openssf-python-secure-coding
cat news/20260528-supply-chain-openssf-python-secure-coding
OpenSSF cuts its first Python Secure Coding Guide to v1.0.0
Among the OpenSSF Community Day North America roundup, the headline artifact is a 1.0.0 Python secure-coding guide developers can actually pin against.
└─OpenSSF
May 25
May 25·cat news/20260525-supply-chain-trapdoor-ai-config-stealer
cat news/20260525-supply-chain-trapdoor-ai-config-stealer
TrapDoor: a cross-ecosystem stealer that poisons your AI assistant
Socket flagged a coordinated stealer across three package registries that also drops poisoned AI config files to turn your coding assistant against you.
└─The Hacker News
────────────────────────────────────────────────────────────
Jun 30
Jun 30·cat news/20260630-ides-microsoft-ends-claude-code-lice
cat news/20260630-ides-microsoft-ends-claude-code-lice
Microsoft Phases Out Internal Claude Code Licenses by June 30
Microsoft is retiring Claude Code seats for Experiences & Devices engineers by June 30, consolidating those workflows onto GitHub Copilot CLI instead.
└─WinBuzzer
Jun 16
Jun 16·cat news/20260616-ides-claude-code-2-1-179
cat news/20260616-ides-claude-code-2-1-179
Claude Code 2.1.179 stops eating partial responses when the connection drops
The June 16 Claude Code release preserves partial output on mid-stream connection drops and clears up a handful of terminal papercuts.
└─Claude Code
Jun 11
Jun 11·cat news/20260611-ides-claude-code-2-1-173
cat news/20260611-ides-claude-code-2-1-173
Claude Code 2.1.173 is a quiet cleanup release
Claude Code 2.1.173 normalizes Fable 5 model names that carried a stray context-window suffix and silences a false sandbox-dependency warning on Windows.
└─Claude Code changelog
Jun 9
Jun 9·cat news/20260609-ides-intellij-idea-2026-1-3
cat news/20260609-ides-intellij-idea-2026-1-3
IntelliJ IDEA 2026.1.3 Fixes tmux Cursor, Markdown Preview, and WSL Shell Detection
JetBrains shipped a maintenance patch addressing tmux terminal cursor rendering, markdown preview failures with external images, database tool window color rendering, and a WSL integration shell detection bug.
└─JetBrains Blog
Jun 6
Jun 6·cat news/20260607-ides-claude-code-2-1-166
cat news/20260607-ides-claude-code-2-1-166
Claude Code 2.1.166 adds model fallbacks and tightens cross-session permissions
Claude Code 2.1.166 introduces automatic model fallbacks when the primary model is unavailable and restricts which permissions can persist across sessions.
└─Claude Code Docs
Jun 16
Jun 16·cat news/20260616-github-gitlab-code-quality-ga-jul20
cat news/20260616-github-gitlab-code-quality-ga-jul20
GitHub Code Quality exits preview — goes paid July 20
GitHub announced on June 16 that Code Quality moves to general availability as a purchasable product on July 20, priced at $10 per active committer per month.
└─GitHub Changelog
Jun 16
Jun 16·cat news/20260616-github-gitlab-github-enterprise-live-m
cat news/20260616-github-gitlab-github-enterprise-live-m
GitHub Enterprise Live Migration Lets Teams Cut Over from Azure DevOps with Under 30 Minutes Downtime
GitHub's new Enterprise Live Migration tool syncs Azure DevOps repos continuously to GitHub Enterprise Cloud so teams can schedule a cutover without locking the source repo.
└─Azure DevOps Blog
Jun 12
Jun 12·cat news/20260612-github-gitlab-fable5-copilot-suspen
cat news/20260612-github-gitlab-fable5-copilot-suspen
GitHub Copilot Suspends Claude Fable 5 Following US Export Control Directive
Three days after launch, Fable 5 was pulled from all GitHub Copilot experiences on June 12 after the US government issued an export control directive requiring Anthropic to suspend access.
└─GitHub Changelog
Jun 10
Jun 10·cat news/20260610-github-gitlab-gitlab-transcend-context
cat news/20260610-github-gitlab-gitlab-transcend-context
GitLab Launches Context Engine for Duo Agent Platform at Transcend Conference
At its Transcend virtual conference, GitLab unveiled the Context Engine — an intelligent orchestration layer for the Duo Agent Platform — alongside consumption pricing options and a roadmap shaped by its recent restructuring toward agentic development.
└─GitLab
Jun 1
Jun 1·cat news/20260601-github-gitlab-copilot-actions-min-bill
cat news/20260601-github-gitlab-copilot-actions-min-bill
GitHub Copilot Code Review to Start Consuming GitHub Actions Minutes on June 1, 2026
Starting June 1, 2026, Copilot code review on private repositories will draw from GitHub Actions minutes under the new AI Credits billing model.
└─Microsoft Learn
Jun 15
Jun 15·cat news/20260615-build-tools-salesforce-summer26-agent-script
cat news/20260615-build-tools-salesforce-summer26-agent-script
Salesforce open-sources Agent Script toolchain as Summer '26 ships
Salesforce dropped the Agent Script toolchain — parser, linter, compiler, LSP, and editor integrations — under Apache 2.0 alongside the Summer '26 release, which also brings Agentforce Builder to GA.
└─Salesforce Developers Blog
Jun 8
Jun 8·cat news/20260608-build-tools-apple-wwdc-sdk-betas-intel
cat news/20260608-build-tools-apple-wwdc-sdk-betas-intel
Apple Drops Six-Platform SDK Betas and Updates Developer Program Terms at WWDC
Apple released SDK betas for all six platforms at WWDC alongside a revised Developer Program License Agreement covering new Apple Intelligence APIs.
└─Apple Developer
May 15
May 15·cat news/20260515-build-tools-msvc-preview-may-2026
cat news/20260515-build-tools-msvc-preview-may-2026
MSVC Build Tools Preview May 2026 Ships C++23 consteval Propagation and ARM64 Improvements
Microsoft's May 2026 MSVC build tools preview delivers C++23 consteval propagation (P2564R3), C++ modules fixes, ARM64 Neon and loop optimizations, and an AddressSanitizer heap-address caching speedup.
└─Microsoft C++ Team Blog
May 1
May 1·cat news/20260501-build-tools-figma-desktop-may-2026
cat news/20260501-build-tools-figma-desktop-may-2026
Figma desktop app update improves file navigation and search for recent work
Figma's May 1 desktop update lets users move between files without losing context, opens links in place rather than spawning new windows, and adds search over recently accessed work.
└─Figma
────────────────────────────────────────────────────────────
Jun 1
Jun 1·cat news/20260601-industry-kubecon-india-2026-june
cat news/20260601-industry-kubecon-india-2026-june
KubeCon + CloudNativeCon India 2026 Scheduled for June 18-19 in Mumbai
CNCF's India edition of KubeCon runs June 18-19 in Mumbai, the conference's first dedicated India event of the 2026 cycle.
└─CNCF
Jun 16
Jun 16·cat news/20260616-industry-databricks-warehouse-runrate-2x
cat news/20260616-industry-databricks-warehouse-runrate-2x
Databricks says its warehouse business doubled to a $1.5B run rate
On the opening day of its summit, Databricks disclosed that its data-warehousing product — the one squaring off against Snowflake — has more than doubled over the past year.
└─Bloomberg
Jun 16
Jun 16·cat news/20260616-industry-oracle-layoffs-jun15-passed
cat news/20260616-industry-oracle-layoffs-jun15-passed
Oracle's June 15 Separation Deadline Passes as 30,000-Person Layoff Completes Final Phase
The June 15 deadline for Oracle's mass separation of 30,000 employees has now passed, closing the announced restructuring cycle.
└─InformationWeek
Jun 15
Jun 15·cat news/20260615-industry-salesforce-summer26-open-source
cat news/20260615-industry-salesforce-summer26-open-source
Salesforce ships Summer '26 and open-sources the Agent Script toolchain
Salesforce's Summer '26 release goes GA today, with Agent Script — parser, linter, compiler, LSP, and editor integrations — dropped under Apache 2.0 alongside a programmatic Agentforce Builder API.
└─Salesforce Newsroom
Jun 12
Jun 12·cat news/20260612-industry-tcs-anthropic-claude-partner
cat news/20260612-industry-tcs-anthropic-claude-partner
TCS and Anthropic Announce Partnership to Bring Claude to Regulated Industries
Tata Consultancy Services and Anthropic struck a partnership to deploy Claude across regulated sectors, the second major IT services alliance Anthropic has signed in two days.
└─Anthropic newsroom
Jun 12
Jun 12·cat news/20260612-governance-eu-ai-act-aug2-deadline
cat news/20260612-governance-eu-ai-act-aug2-deadline
EU AI Act Becomes Fully Applicable August 2 as High-Risk Classification Consultation Closes June 23
The EU AI Act reaches full application on August 2, 2026 — under seven weeks out — while a public consultation on high-risk system classification guidelines runs until June 23.
└─European Commission
Jun 12
Jun 12·cat news/20260612-governance-fable-mythos-export-susp
cat news/20260612-governance-fable-mythos-export-susp
US Government Issues Export Control Directive Suspending Anthropic Fable 5 and Mythos 5 Worldwide
A US government directive invoking national security authorities forced Anthropic to shut off Claude Fable 5 and Mythos 5 globally — the first known use of export controls to pull a deployed commercial AI model.
└─Anthropic newsroom
Jun 12
Jun 12·cat news/20260612-governance-anthropic-public-record
cat news/20260612-governance-anthropic-public-record
Anthropic Publishes Results from Its First Public Record Transparency Report
Anthropic released findings from the inaugural Anthropic Public Record, the company's first structured transparency disclosure.
└─Anthropic newsroom
Jun 10
Jun 10·cat news/20260610-governance-eu-ai-act-code-pract
cat news/20260610-governance-eu-ai-act-code-pract
EU Publishes Final Code of Practice for Labelling AI-Generated Content
The European Commission released its final Code of Practice under AI Act Article 50, setting voluntary labelling and transparency obligations for generative AI that become enforceable on August 2, 2026.
└─European Commission
Jun 1
Jun 1·cat news/20260601-governance-eu-ai-act-expert-panel
cat news/20260601-governance-eu-ai-act-expert-panel
EU Appoints Scientific Panel and Advisory Forum to Enforce the AI Act
The European Commission appointed its AI Act Scientific Panel and Advisory Forum on June 1, standing up the independent expert bodies that will guide enforcement of the regulation.
└─European Commission
Jun 1
Jun 1·cat news/20260601-governance-eu-ai-act-cop-labeling
cat news/20260601-governance-eu-ai-act-cop-labeling
EU AI Act Code of Practice on AI Content Labeling Due in June as August Enforcement Looms
The EU is publishing its voluntary Code of Practice for AI-generated content transparency this month, ahead of the full AI Act becoming enforceable on August 2, 2026.
└─EU Commission / artificialintelligenceact.eu
May 18
May 18·cat news/20260518-governance-open-source-summit-na
cat news/20260518-governance-open-source-summit-na
Open Source Summit North America Opens May 18 in Minneapolis
The Linux Foundation's Open Source Summit North America runs May 18–20 in Minneapolis, co-located with the CNCF Observability Summit.
└─Open Source Initiative
May 15
May 15·cat news/20260515-hiring-comptia-tech-jobs-three-year
cat news/20260515-hiring-comptia-tech-jobs-three-year
CompTIA: New Tech Job Postings Hit Three-Year High in April 2026
April 2026 saw 271,483 new tech job postings — the strongest year-over-year gain of 2026 and a three-year peak — signaling that the tech hiring market has moved from recovery into sustained expansion.
└─CompTIA / PR Newswire
May 11
May 11·cat news/20260511-hiring-fidelity-3300-new-hires-20
cat news/20260511-hiring-fidelity-3300-new-hires-20
Fidelity Plans 3,300 Net-New Hires in 2026, Half in Tech, Alongside Restructuring
Despite trimming 800 roles from its agile squad organization, Fidelity Investments is targeting 3,300 new hires this year — roughly half in technology and product — plus 2,000 early-career positions, making it one of the larger financial-services hiring programs announced so far in 2026.
└─Boston Globe
May 1
May 1·cat news/20260501-hiring-aws-11000-developers
cat news/20260501-hiring-aws-11000-developers
AWS Plans to Hire 11,000 Developers in 2026 Despite Industry-Wide Layoffs
AWS CEO Matt Garman announced a plan to bring on 11,000 developers this year, framing the hires as necessary for AI-driven cloud infrastructure while defending concurrent AI-led workforce reductions elsewhere.
└─Analytics Insight
May 1
May 1·cat news/20260501-hiring-junior-dev-contraction
cat news/20260501-hiring-junior-dev-contraction
Junior Developer Roles Contract as AI Tools Absorb Entry-Level Work
AI coding tools are displacing work previously assigned to junior engineers, raising serious concerns about the long-term health of the developer talent pipeline.
└─Rest of World
May 4
May 4·cat news/20260504-career-gsoc-2026-contributors-welcome
cat news/20260504-career-gsoc-2026-contributors-welcome
Google Summer of Code 2026 Welcomes 1,141 Contributors; Coding Period Begins May 25
Google has selected 1,141 contributors across 184 mentoring organizations for GSoC 2026, with the official coding period opening May 25.
└─Google Open Source Blog
May 1
May 1·cat news/20260501-career-displaced-workers-landing
cat news/20260501-career-displaced-workers-landing
Displaced Tech Workers Finding Roles in Cloud, Security, and Mid-Market IT Leadership
Cloud migration, cybersecurity, and mid-market IT leadership are emerging as the primary landing zones for tech professionals displaced by 2026's wave of layoffs.
└─Kore1
────────────────────────────────────────────────────────────
Jun 15
Jun 15·cat news/20260615-css-state-of-css-2026-survey-c
cat news/20260615-css-state-of-css-2026-survey-c
State of CSS 2026 Survey Closes June 15
The annual State of CSS survey wraps up tomorrow — if you haven't filed a response yet, this is the last call.
└─Devographics
May 20
May 20·cat news/20260520-css-html-in-canvas-api-google-io
cat news/20260520-css-html-in-canvas-api-google-io
Google I/O 2026: HTML-in-Canvas API Brings Accessible, Searchable 3D Web Experiences
Google announced the HTML-in-Canvas API at I/O 2026, enabling developers to render HTML content inside canvas elements for immersive 3D experiences that remain fully accessible and indexable.
└─Google Developers Blog
May 5
May 5·cat news/20260505-css-chrome-148-container-lazy
cat news/20260505-css-chrome-148-container-lazy
Chrome 148 Adds Name-Only Container Queries and Lazy Loading for Video and Audio
Chrome 148 ships two web-platform improvements: container queries that match by name without requiring container-type, and lazy loading support via loading="lazy" on video and audio elements.
└─Chrome Developers
May 1
May 1·cat news/20260501-css-w3c-css-snapshot-2026
cat news/20260501-css-w3c-css-snapshot-2026
W3C Publishes CSS Snapshot 2026
The W3C released CSS Snapshot 2026, the authoritative reference cataloguing which CSS specifications are stable and suitable for implementation.
└─W3C
Jun 8
Jun 8·cat news/20260608-design-systems-apple-liquid-glass-wwdc
cat news/20260608-design-systems-apple-liquid-glass-wwdc
Apple Introduces Liquid Glass Design Language at WWDC 2026
Apple unveiled Liquid Glass at WWDC 2026 — translucent, depth-layered, fluid — spanning iOS 27, iPadOS 27, macOS Golden Gate, watchOS 27, and tvOS 27.
└─Apple Developer
Jun 8
Jun 8·cat news/20260608-design-systems-apple-hig-ios27-update
cat news/20260608-design-systems-apple-hig-ios27-update
Apple Human Interface Guidelines Updated for Liquid Glass and iOS 27
Apple's Human Interface Guidelines gained new chapters covering Liquid Glass materials, revised icon specifications for light/dark/tinted appearances, updated navigation components, visionOS spatial design, customizable home screen widgets, and Control Center extensions.
└─Apple Developer
Jun 3
Jun 3·cat news/20260603-design-systems-shadcn-github-registri
cat news/20260603-design-systems-shadcn-github-registri
shadcn/ui Adds GitHub Registries Support
shadcn/ui now supports GitHub Registries, letting teams distribute and consume custom component registries directly from GitHub.
└─shadcn/ui Changelog
Jun 2
Jun 2·cat news/20260602-design-systems-apple-design-awards-2026
cat news/20260602-design-systems-apple-design-awards-2026
Apple Announces 2026 Design Award Winners at WWDC Week
Apple named the 2026 Design Award winners across six categories — Delight and Fun, Interaction, Social Impact, Visuals and Graphics, Innovation, and Inclusion — celebrating apps and games with standout design and technical craft.
└─Apple Developer News
Jun 4
Jun 4·cat news/20260604-accessibility-wordpress-a11y-ready-dead
cat news/20260604-accessibility-wordpress-a11y-ready-dead
WordPress Accessibility-Ready Tag Requires WCAG Compliance by June 30
Theme authors have until June 30 to update their themes to current WCAG standards or lose the accessibility-ready tag in the WordPress theme directory.
└─WordPress Accessibility Team
May 1
May 1·cat news/20260501-motion-svelte-motion-types-exported
cat news/20260501-motion-svelte-motion-types-exported
Svelte 5.55.0 Exports Motion Primitive Types from svelte/motion
Svelte 5.55.0 now exports TweenOptions, SpringOptions, EasingFunction, and related types directly from the svelte/motion module, making them available for typed consumer code.
└─Svelte Blog
May 1 → Jun 17all335 entries