Supply Chain Security [Tech Ops]
cloud203020 Sep 2024

Supply Chain Security [Tech Ops]

In this episode, we dive deep into a recent and highly sophisticated SSH intrusion attack that was discovered in the Linux kernel. We'll discuss how the attackers were able to inject a backdoor into a critical compression library, leveraging social engineering tactics to become a trusted maintainer over several years. The attack was designed to bypass security checks and evade detection, even from advanced techniques like eBPF monitoring. We'll explore the technical details of how the backdoor was triggered, the potential impact on various Linux distributions, and the broader implications for software supply chain security. This incident highlights the challenges of maintaining trust in open-source projects and the need for robust security measures to protect critical infrastructure. Join us as we unpack this fascinating case and consider the lessons it holds for the future of secure software development.

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(500)

Mirantis IREN Acquisition

Mirantis IREN Acquisition

We discuss the acquisition of Mirantis by the neocloud company IREN, and use it to examine the current market for infrastructure and AI deployment. We look at Mirantis’ consulting business, Kubernetes...

7 Aug 1h 4min

Did AI Kill OpenSource

Did AI Kill OpenSource

In this episode we discuss whether AI and LLMs are changing the role of open source, including the pressure on maintainer review queues and the growing appeal of private forks and internal maintenance...

31 Juli 37min

Vibe 3 Step [TechOps]

Vibe 3 Step [TechOps]

In this episode we work through a Vibe Coding Operations session using Claude AI inside Digital Rebar as an analysis tool. We describe a three-phase flow of plan, execute, and analyze for inspecting a...

24 Juli 38min

When Vibe Fails [TechOps]

When Vibe Fails [TechOps]

This episode we discuss a failure in vibe coding with Claude and Digital Rebar. We try to build a CloudMD-driven setup for running Claude in a container and analyzing inputs, and we run into some prob...

17 Juli 34min

Vibe Digital Rebar Install

Vibe Digital Rebar Install

In this episode, we continue our exploration of vibe coding, this time we build a prompt for installing Digital Rebar. We test and refine the prompt across multiple runs, focusing on readiness checks,...

10 Juli 44min

Vibe Coding for Ops Project Restart [TechOps]

Vibe Coding for Ops Project Restart [TechOps]

This week, we continue our Vibe Coding, and use the lessons and prompt instructions we’ve learned from previous sessions to restart the project using the latest version of Vibe Code. We walk through t...

3 Juli 26min

AI UX Building

AI UX Building

In this episode, we explore AI's transformative impact on user experience (UX) and the relevance of stochastic and deterministic systems in designing effective AI interfaces. We give our predictions a...

26 Juni 44min

Kubernetes as Common Platform

Kubernetes as Common Platform

This week we examine the emergence of Kubernetes as a common infrastructure platform. We contrast cloud assumptions with bare-metal reality and dig deep on supportability, repairability, and the opera...

19 Juni 38min

Populärt inom Teknik

uppgang-och-fall
skogsforum-podcast
rss-uppgang-och-fall
 och-bilen-gar-bra
rss-elektrikerpodden
elbilsveckan
rss-laddstationen-med-elbilen-i-sverige
developers-mer-an-bara-kod
rss-en-ai-till-kaffet
market-makers
bli-saker-podden
rss-veckans-ai
bosse-bildoktorn-och-hasse-p
rss-milpodden
rss-fabriken-2
natets-morka-sida
rss-upplyst-entreprenordirektor
rss-jonas-jaani-podcast
hej-bruksbil
rss-aximapodden