AWS Puts Elastic Beanstalk on EKS...
AWS Puts Elastic Beanstalk on EKS, CrowdSec Supply-Chain Breach, Critical Next.js RCE, Microsoft Disrupts EvilTokens & Why Fixing the Initial Compromise Isn’t Enough
Ship It Weekly - DevOps, SRE, Platform and Cloud Engineering... by Teller's Tech - DevOps, SRE and Cloud Podcast
E68
Sep 25, 2026
17:18
Episode notes

This week on Ship It Weekly: AWS introduced Elastic Beanstalk Cluster Mode, allowing multiple applications to run on shared EKS infrastructure while AWS handles much of the Kubernetes complexity. CrowdSec published how a software supply-chain compromise led to attackers copying roughly 170 private repositories using a stolen OAuth token. A critical Next.js vulnerability in ImageResponse can lead to remote code execution through attacker-controlled SVG data. And Microsoft disrupted EvilTokens, a cybercrime platform linked to more than 12,000 compromised inboxes across 10,000 organizations.

The bigger theme this week is what happens after trust has been established. Elastic Beanstalk Cluster Mode puts more infrastructure behind a managed abstraction, but shared infrastructure still means understanding isolation and blast radi ... 

Keywords
devops
aws
Next.js
RCE
CVE
EKS
Elastic Beanstalk
CrowdSec
EvilTokens
Microsoft