ContentPosts from @shafislam..
Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

Starting HPC Worker Processes at Boot Time in VM Scale Sets

One is deploying an HPC embarrassingly parallel application in Azure Virtual Machine Scale Sets (VMSSs) and realized that (i) ssh into VM instances is possible even when they have not been fully provisioned and (ii) worker processes start before such provisioned state is reached. If you got into thi.. read more  

Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

AWS WAF Clients Left Vulnerable to SQL Injection Due to Unorthodox MSSQL Design Choice

The Microsoft SQL Server has an undocumented design choice that allows it to bypass web application firewalls (WAFs) due to a lax attitude towards SQL parsers. This unorthodox design choice can potentially be exploited by hackers to bypass security protections provided by WAFs... read more  

AWS WAF Clients Left Vulnerable to SQL Injection Due to Unorthodox MSSQL Design Choice
Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

A Quick Guide to Benchmarking AI Models on Azure: ResNet with MLPerf Training v3.0

Azure's MLPerf Training v3.0 submission showcased their ND H100 v5 virtual machine, featuring 8x NVIDIA H100 Tensor Core GPUs with advanced technologies like NVSwitch and NVLink 4.0, Quantum-2 CX7 InfiniBand, 4th Gen Intel Xeon Scalable processors, and high-speed interconnects. Replicating the resul.. read more  

A Quick Guide to Benchmarking AI Models on Azure: ResNet with MLPerf Training v3.0
Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

Public Preview: Azure OpenAI Service On Your Data

IntroducingAzure OpenAI Service on your datain public preview—a groundbreaking feature that unlocks the power of OpenAI models, such as ChatGPT and GPT-4, with your own data... read more  

Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

NSA and CISA's Cybersecurity Information Sheet for DevSecOps

This CSI explains how to integrate security best practices into typical software development and operations (DevOps) Continuous Integration/Continuous Delivery (CI/CD) environments, without regard for the specific tools being adapted, and leverages several forms of government guidance to collect and.. read more  

NSA and CISA's Cybersecurity Information Sheet for DevSecOps
Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

Cloud Expenditure - A Storm is Brewing

Expenditure on cloud computing services reached$225 billion in 2022, prompting organizations to implement FinOps frameworks and address the root causes of rising costs, such as complex pricing, lack of understanding, and unpredictability. Specifically, the use of Kubernetes has contributed to cloud .. read more  

Cloud Expenditure - A Storm is Brewing
Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

Cloud Backed SQLite

The cloud back-end SQLite (CBS) system allows databases to be stored within a cloud storage account, enabling reading and writing to the database without first downloading the entire database. The system supports concurrent access to the database by multiple clients and provides APIs for managing co.. read more  

Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

How to get rid of AWS access keys – Reducing Privileges

Reduce privilege and tighten IAM policy by identifying and removing unnecessary access keys, using IAM access advisor for service level adjustments, and considering alternative authentication solutions to minimize risk associated with AWS access keys... read more  

How to get rid of AWS access keys – Reducing Privileges
Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

8 Terraform continuous validation use cases for AWS, Google Cloud, and Azure

Continuous validation is a foundational feature for HashiCorp Terraform Cloud Plus, providing long-term visibility and checks for infrastructure health and security. Users can create assertions to monitor configurations and modules, receive notifications for failed assertions, and proactively identi.. read more  

8 Terraform continuous validation use cases for AWS, Google Cloud, and Azure
Link
@faun shared a link, 2 years, 4 months ago
FAUN.dev()

MOVEit zero-day exploit: Ongoing updates and what's next

Late in May, a SQL injection vulnerability was discovered in the file sharing application Moveit Transfer, leading to a potential breach of high-profile customer data. The Clop ransomware gang is believed to be behind the attack, using the exploit to target multiple organizations... read more  

MOVEit zero-day exploit: Ongoing updates and what's next