<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Indra Gusti Prasetya, Tech Builder · Infrastructure &amp; Security Leader</title>
    <link>https://indragustiprasetya.com/</link>
    <description>Tech strategist &amp; Co-Founder of Temika Cyber. Over a decade building secure, scalable cloud infrastructure, DevOps, Kubernetes, and IT security.</description>
    <atom:link href="https://indragustiprasetya.com/feed.xml" rel="self" type="application/rss+xml"/>
    <item>
      <title>&quot;Kubernetes User Namespaces in 1.36 with hostUsers: false&quot;</title>
      <link>https://indragustiprasetya.com/blog/kubernetes-user-namespaces-in-1-36-with-hostusers-false.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/kubernetes-user-namespaces-in-1-36-with-hostusers-false.html</guid>
      <pubDate>Sat, 06 Jun 2026 00:00:00 +0000</pubDate>
      <description>A hands-on guide to enabling user namespaces in Kubernetes 1.36, the kernel 6.3 and containerd 2.0 prerequisites, the /etc/subuid math, and the silent failures.</description>
    </item>
    <item>
      <title>&quot;Non-Human Identity Governance: Field Tips for 2026&quot;</title>
      <link>https://indragustiprasetya.com/blog/non-human-identity-governance-field-tips-for-2026.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/non-human-identity-governance-field-tips-for-2026.html</guid>
      <pubDate>Sat, 06 Jun 2026 00:00:00 +0000</pubDate>
      <description>How to discover, scope, and govern service accounts, API keys, tokens, and AI agents before machine credentials become your breach path.</description>
    </item>
    <item>
      <title>Harden MCP Servers Against Tool Poisoning</title>
      <link>https://indragustiprasetya.com/blog/harden-mcp-servers-against-tool-poisoning.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/harden-mcp-servers-against-tool-poisoning.html</guid>
      <pubDate>Sat, 06 Jun 2026 00:00:00 +0000</pubDate>
      <description>A practical 2026 guide to securing MCP servers: inspect tool descriptions, scan for poisoning, pin versions against rug pulls, and add a runtime guardrail.</description>
    </item>
    <item>
      <title>&quot;Kubernetes Hardening 2026: RBAC, PSS &amp; Unfixed CVEs&quot;</title>
      <link>https://indragustiprasetya.com/blog/kubernetes-hardening-2026-rbac-pss-unfixed-cves.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/kubernetes-hardening-2026-rbac-pss-unfixed-cves.html</guid>
      <pubDate>Sat, 06 Jun 2026 00:00:00 +0000</pubDate>
      <description>Battle-tested Kubernetes hardening for 2026: enforce Pod Security Standards, fix over-permissive RBAC, default-deny networking, and mitigate the CVEs nobody will patch.</description>
    </item>
    <item>
      <title>&quot;Sandboxing AI Agent Code: A 2026 Runtime Guide&quot;</title>
      <link>https://indragustiprasetya.com/blog/sandboxing-ai-agent-code-a-2026-runtime-guide.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/sandboxing-ai-agent-code-a-2026-runtime-guide.html</guid>
      <pubDate>Sat, 06 Jun 2026 00:00:00 +0000</pubDate>
      <description>AI agent sandboxes isolate untrusted AI-generated code with Firecracker microVMs and gVisor. Here&#x27;s how to pick an execution runtime in 2026.</description>
    </item>
    <item>
      <title>RSA Is on a Clock Now: The 2026 Deadlines Forcing the Post-Quantum Switch</title>
      <link>https://indragustiprasetya.com/blog/post-quantum-migration-2026-deadlines.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/post-quantum-migration-2026-deadlines.html</guid>
      <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
      <description>NIST&#x27;s finalized post-quantum standards plus FIPS and CNSA 2.0 deadlines put RSA and ECC on a countdown. Here&#x27;s why 2026 is the year to start migrating.</description>
    </item>
    <item>
      <title>TypeScript Just Knocked Python Off the Top of GitHub, and AI Did It</title>
      <link>https://indragustiprasetya.com/blog/typescript-overtakes-python-github-2026.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/typescript-overtakes-python-github-2026.html</guid>
      <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
      <description>TypeScript passed Python as the most-used language on GitHub in August 2025, and the data points straight at AI-assisted coding as the reason.</description>
    </item>
    <item>
      <title>The AI Buildout Has a Plug Problem, Not a Chip Problem</title>
      <link>https://indragustiprasetya.com/blog/ai-data-center-power-crisis-2026.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/ai-data-center-power-crisis-2026.html</guid>
      <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
      <description>Hyperscalers will spend $650B on AI infrastructure in 2026, but 7 GW of announced capacity sits stranded behind transformer shortages and grid queues.</description>
    </item>
    <item>
      <title>Dependency Cooldowns Beat Fast Supply Chain Attacks</title>
      <link>https://indragustiprasetya.com/blog/dependency-cooldowns-beat-fast-supply-chain-attacks.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/dependency-cooldowns-beat-fast-supply-chain-attacks.html</guid>
      <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
      <description>Dependency cooldowns delay installing brand-new package versions a few days, blocking most npm and RubyGems supply chain attacks before malware lands.</description>
    </item>
    <item>
      <title>The AI Agent You Deployed Last Quarter Is Probably Your Weakest Login</title>
      <link>https://indragustiprasetya.com/blog/ai-agent-weakest-login-2026.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/ai-agent-weakest-login-2026.html</guid>
      <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
      <description>88% of enterprises hit an AI agent security incident in the past year. The cause isn&#x27;t exotic attacks, it&#x27;s identities nobody logged out or audited.</description>
    </item>
    <item>
      <title>WebMCP Hands Your Site&#x27;s Tools to AI Agents, and Chrome 149 Just Made It Real</title>
      <link>https://indragustiprasetya.com/blog/webmcp-chrome-149-origin-trial.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/webmcp-chrome-149-origin-trial.html</guid>
      <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
      <description>Chrome 149&#x27;s origin trial ships WebMCP, the Google, Microsoft API that lets sites declare callable tools to AI agents instead of being screenshotted and guessed at.</description>
    </item>
    <item>
      <title>Durable Execution Is Moving Into Postgres</title>
      <link>https://indragustiprasetya.com/blog/durable-execution-is-moving-into-postgres.html</link>
      <guid isPermaLink="true">https://indragustiprasetya.com/blog/durable-execution-is-moving-into-postgres.html</guid>
      <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
      <description>Microsoft&#x27;s pg_durable, DBOS, and Temporal are pushing crash-proof, exactly-once workflows into Postgres in 2026. Here&#x27;s how to choose.</description>
    </item>
  </channel>
</rss>
