Security & Compliance
August 30, 2026A classifier is not a sandbox: isolating coding agents
A published attack chain achieved remote code execution against Claude Code in auto mode, with the safety classifier approving the steps that led to compromise and then blocking the cleanup command. What the break teaches teams running AI coding agents, and how to build real isolation on Azure with Hyper-V sandboxes, default-deny egress and short-lived credentials.
AI Agents
Agent Security
Claude Code
Prompt Injection
Sandboxing
Azure Container Apps
Dynamic Sessions
NIS2
EU AI Act
Managed Identity
By Falak Mahmood
Security & Compliance
March 31, 2026Azure Managed Identity and Key Vault: Secret Rotation Without Outages
A practical pattern for rotating Azure secrets with zero downtime using Managed Identity, Key Vault rotation policies, and versioned references — including the common mistakes that cause rotation-induced outages.
Managed Identity
Key Vault
Azure
Security
Secret Rotation
By Falak Mahmood