ContentPosts from @tdaumont..
Link
@faun shared a link, 6 months ago
FAUN.dev()

Argo CD Vulnerability Let Attackers Create, Modify, & Deleting Kubernetes Resources

CVE-2025-47933inArgo CDshreds security and hands injected JavaScript the keys to your Kubernetes kingdom. With a terrifyingCVSS score of 9.1, this one's no joke. Patch it, yesterday!.. read more  

Argo CD Vulnerability Let Attackers Create, Modify, & Deleting Kubernetes Resources
Link
@faun shared a link, 6 months ago
FAUN.dev()

Monolith-First - are you sure?

Modular monolithsrisk turning into messy "big balls of mud" when developers overdo shortcuts or tangle the code. Gomodular-firstand be ready to spot stealthy dependencies lurking in the corners. Skip the quick fixes—they're overrated... read more  

Monolith-First - are you sure?
Link
@faun shared a link, 6 months ago
FAUN.dev()

Woodpecker: Open-source red teaming for AI, Kubernetes, APIs

Woodpeckertakes on the dirty work of red teaming for AI, Kubernetes, and APIs. It tackles over half of the OWASP Top 10 threats without breaking a sweat. Find it free on GitHub, spreading top-notch security testing like free candy... read more  

Woodpecker: Open-source red teaming for AI, Kubernetes, APIs
Link
@faun shared a link, 6 months ago
FAUN.dev()

Kubernetes at Google Cloud: AI, containers and open source scale

Kubernetestransformed from an obscure tech into a backbone for cloud-native AI projects. Today,Google Cloudtakes the crown for effortlessly scaling AI models withGKE. Together,Cloud RunandKubernetescurb AI inference expenses. The secret sauce? On-the-fly GPU access and serverless wizardry that let e.. read more  

Link
@faun shared a link, 6 months ago
FAUN.dev()

Why Kubernetes 1.33 Is a Turning Point for MLOps — and Platform Engineering

Kubernetes v1.33crushes it for AI/ML workloads with slickDynamic Resource Allocation.Your GPU headaches? Gone. It's nimble, modular, and ready to scale. Plus, with topology-aware routing now in the spotlight, Kubernetes slashes network latency and trims cloud expenses by favoring the nearest options.. read more  

Why Kubernetes 1.33 Is a Turning Point for MLOps — and Platform Engineering
Link
@faun shared a link, 6 months ago
FAUN.dev()

Upgrading ECK Operator: A Side-by-Side Kubernetes Operator Upgrade Approach

Abhishek Munagekar from the Search Infrastructure Team at Mercari manages several Elasticsearch clusters on Kubernetes using the Elastic Cloud on Kubernetes (ECK) Operator. The team embarked on an upgrade project to leverage advancements in newer ECK operator versions. By implementing a custom side-.. read more  

Link
@faun shared a link, 6 months ago
FAUN.dev()

Secrets Management in CI/CD Pipeline: Best Practices & Tools

Hardcoding secrets is a ticking time bomb. Instead, reach for centralized tools like HashiCorp Vault; they'll guard your secrets like a vault should. Automate secret rotation so your credentials don't gather dust, and log everything to keep tabs on who does what. Devtron makes it a breeze with its K.. read more  

Link
@faun shared a link, 6 months ago
FAUN.dev()

Introducing MCP Catalog and Toolkit: The Simple and Secure Way to Power AI Agents with MCP

Docker's MCP Catalog and Toolkit bust myths and solve setup headaches, smoothing out AI agent development with snug, secure containers.With heavy-hitter partners likeStripe,Elastic, andHerokuon board, developers now revel in one-click connections through Docker Desktop. Integration nightmares and se.. read more  

Introducing MCP Catalog and Toolkit: The Simple and Secure Way to Power AI Agents with MCP
Link
@faun shared a link, 6 months ago
FAUN.dev()

Kubernetes CRD Abstraction Risks in kro

Orca Research Pod discovered two bugs in kro that could allow an attacker to introduce a malicious CustomResourceDefinition (CRD). Kro is an open-source project enabling custom Kubernetes APIs using ResourceGraphDefinition resources. These vulnerabilities could lead to a confused deputy scenario whe.. read more  

Link
@faun shared a link, 6 months ago
FAUN.dev()

High Available Mosquitto MQTT on Kubernetes

Running a Kubernetes-nativeMQTT brokerwith Eclipse Mosquitto cuts downtime to a mere5 seconds. Compare that to the usual 5-minute snooze. This feat involves Traefik sorcery and a custom failover rig. Uninterrupted message flow? Check. Real-time state? Handled with message bridges that practically da.. read more  

High Available Mosquitto MQTT on Kubernetes