CargoWall Open-Sources an eBPF Firewall Built to Stop LLM Agents From Going Rogue
CargoWall, a lightweight {{beat:open-source-ai|open source}} eBPF firewall for {{entity:github|GitHub}} Actions, was built originally to stop LLM agents from phoning home to untrusted domains — then the Trivy supply chain attack happened, and its developers realized they'd accidentally built something the whole CI/CD ecosystem needed.