Supply Chain Security [Tech Ops]
cloud203020 Syys 2024

Supply Chain Security [Tech Ops]

In this episode, we dive deep into a recent and highly sophisticated SSH intrusion attack that was discovered in the Linux kernel. We'll discuss how the attackers were able to inject a backdoor into a critical compression library, leveraging social engineering tactics to become a trusted maintainer over several years. The attack was designed to bypass security checks and evade detection, even from advanced techniques like eBPF monitoring. We'll explore the technical details of how the backdoor was triggered, the potential impact on various Linux distributions, and the broader implications for software supply chain security. This incident highlights the challenges of maintaining trust in open-source projects and the need for robust security measures to protect critical infrastructure. Join us as we unpack this fascinating case and consider the lessons it holds for the future of secure software development.

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(500)

Mirantis IREN Acquisition

Mirantis IREN Acquisition

We discuss the acquisition of Mirantis by the neocloud company IREN, and use it to examine the current market for infrastructure and AI deployment. We look at Mirantis’ consulting business, Kubernetes...

7 Elo 1h 4min

Did AI Kill OpenSource

Did AI Kill OpenSource

In this episode we discuss whether AI and LLMs are changing the role of open source, including the pressure on maintainer review queues and the growing appeal of private forks and internal maintenance...

31 Heinä 37min

Vibe 3 Step [TechOps]

Vibe 3 Step [TechOps]

In this episode we work through a Vibe Coding Operations session using Claude AI inside Digital Rebar as an analysis tool. We describe a three-phase flow of plan, execute, and analyze for inspecting a...

24 Heinä 38min

When Vibe Fails [TechOps]

When Vibe Fails [TechOps]

This episode we discuss a failure in vibe coding with Claude and Digital Rebar. We try to build a CloudMD-driven setup for running Claude in a container and analyzing inputs, and we run into some prob...

17 Heinä 34min

Vibe Digital Rebar Install

Vibe Digital Rebar Install

In this episode, we continue our exploration of vibe coding, this time we build a prompt for installing Digital Rebar. We test and refine the prompt across multiple runs, focusing on readiness checks,...

10 Heinä 44min

Vibe Coding for Ops Project Restart [TechOps]

Vibe Coding for Ops Project Restart [TechOps]

This week, we continue our Vibe Coding, and use the lessons and prompt instructions we’ve learned from previous sessions to restart the project using the latest version of Vibe Code. We walk through t...

3 Heinä 26min

AI UX Building

AI UX Building

In this episode, we explore AI's transformative impact on user experience (UX) and the relevance of stochastic and deterministic systems in designing effective AI interfaces. We give our predictions a...

26 Kesä 44min

Kubernetes as Common Platform

Kubernetes as Common Platform

This week we examine the emergence of Kubernetes as a common infrastructure platform. We contrast cloud assumptions with bare-metal reality and dig deep on supportability, repairability, and the opera...

19 Kesä 38min