Supply Chain Security [Tech Ops]
cloud203020 Sep 2024

Supply Chain Security [Tech Ops]

In this episode, we dive deep into a recent and highly sophisticated SSH intrusion attack that was discovered in the Linux kernel. We'll discuss how the attackers were able to inject a backdoor into a critical compression library, leveraging social engineering tactics to become a trusted maintainer over several years. The attack was designed to bypass security checks and evade detection, even from advanced techniques like eBPF monitoring. We'll explore the technical details of how the backdoor was triggered, the potential impact on various Linux distributions, and the broader implications for software supply chain security. This incident highlights the challenges of maintaining trust in open-source projects and the need for robust security measures to protect critical infrastructure. Join us as we unpack this fascinating case and consider the lessons it holds for the future of secure software development.

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(500)

Mirantis IREN Acquisition

Mirantis IREN Acquisition

We discuss the acquisition of Mirantis by the neocloud company IREN, and use it to examine the current market for infrastructure and AI deployment. We look at Mirantis’ consulting business, Kubernetes...

7 Aug 1h 4min

Did AI Kill OpenSource

Did AI Kill OpenSource

In this episode we discuss whether AI and LLMs are changing the role of open source, including the pressure on maintainer review queues and the growing appeal of private forks and internal maintenance...

31 Jul 37min

Vibe 3 Step [TechOps]

Vibe 3 Step [TechOps]

In this episode we work through a Vibe Coding Operations session using Claude AI inside Digital Rebar as an analysis tool. We describe a three-phase flow of plan, execute, and analyze for inspecting a...

24 Jul 38min

When Vibe Fails [TechOps]

When Vibe Fails [TechOps]

This episode we discuss a failure in vibe coding with Claude and Digital Rebar. We try to build a CloudMD-driven setup for running Claude in a container and analyzing inputs, and we run into some prob...

17 Jul 34min

Vibe Digital Rebar Install

Vibe Digital Rebar Install

In this episode, we continue our exploration of vibe coding, this time we build a prompt for installing Digital Rebar. We test and refine the prompt across multiple runs, focusing on readiness checks,...

10 Jul 44min

Vibe Coding for Ops Project Restart [TechOps]

Vibe Coding for Ops Project Restart [TechOps]

This week, we continue our Vibe Coding, and use the lessons and prompt instructions we’ve learned from previous sessions to restart the project using the latest version of Vibe Code. We walk through t...

3 Jul 26min

AI UX Building

AI UX Building

In this episode, we explore AI's transformative impact on user experience (UX) and the relevance of stochastic and deterministic systems in designing effective AI interfaces. We give our predictions a...

26 Jun 44min

Kubernetes as Common Platform

Kubernetes as Common Platform

This week we examine the emergence of Kubernetes as a common infrastructure platform. We contrast cloud assumptions with bare-metal reality and dig deep on supportability, repairability, and the opera...

19 Jun 38min

Populært innen Teknologi

lydartikler-fra-aftenposten
tomprat-med-gunnar-tjomlid
teknisk-sett
shifter
rss-ai-forklart
elektropodden
hans-petter-og-co
fornybaren
rss-ki-praten
rss-alt-som-gar-pa-strom
pedagogisk-intelligens
smart-forklart
rss-bak-skyen
rss-digitaliseringspadden
energi-og-klima
rss-ki-til-kaffen
teknologi-og-mennesker
kortslutning
rss-grenser-for-ki
sosialt-sett-om-teknologi-kommunikasjon-og-livet-i-mellom