uz
Feedback
Kubesploit

Kubesploit

Kanalga Telegramโ€™da oโ€˜tish

News and links on Kubernetes security curated by the @Learnk8s team Website: https://kubesploit.io/

Ko'proq ko'rsatish
2 063
Obunachilar
+224 soatlar
+57 kunlar
+1830 kunlar
Postlar arxiv
Repost from LearnKube news
This week on Learn Kubernetes Weekly 165: ๐Ÿ”ฅ GPU-Based Containers as a Service ๐Ÿš€ Bifrost's Journey from Nginx to Envoy Gatew
This week on Learn Kubernetes Weekly 165: ๐Ÿ”ฅ GPU-Based Containers as a Service ๐Ÿš€ Bifrost's Journey from Nginx to Envoy Gateway for Intelligent Rate Limiting ๐Ÿค– Building Production-Ready Multi-Agent Systems on Kubernetes: Deploying 11 Specialized AI Agents ๐Ÿ”’ Kubernetes Security Fundamentals: Networking ๐Ÿ› Debugging the One-in-a-Million Failure: Migrating Pinterest's Search to Kubernetes Read it now: https://kube.today/issues/165 โญ๏ธ This issue is brought to you by LearnKube โ€” master Kubernetes with hands-on training designed for engineers who want to learn the smart way https://ku.bz/hypSbyc-V

This tool runs inside Kubernetes and automatically decrypts secrets encrypted with Mozilla SOPS, and then creates standard Ku
This tool runs inside Kubernetes and automatically decrypts secrets encrypted with Mozilla SOPS, and then creates standard Kubernetes Secret objects from them. More: https://ku.bz/H3KWGSwl9

This article explains how Kubernetes user namespaces work for container isolation and covers the security benefits of mapping container root users to unprivileged host users, thereby reducing privilege escalation risks. More: https://ku.bz/1kmpsFXbB

External Secrets Operator syncs secrets from AWS, Vault, GCP, Azure, and others via their APIs and injects them as native Kubernetes Secrets using CRDs. More: https://ku.bz/P9-BCNT1L

Repost from Kube Careers
This week's 6 best Kubernetes vacancies that focus on security are: DevSecOps Engineer with OpenAI ๐Ÿ’ฐ $364.5K to $490K a year
This week's 6 best Kubernetes vacancies that focus on security are: DevSecOps Engineer with OpenAI ๐Ÿ’ฐ $364.5K to $490K a year ๐Ÿ‘จโ€๐Ÿ’ป Remote from the United States of America โ†’ https://ku.bz/NXd17JHfV DevSecOps Engineer with Postman ๐Ÿ’ฐ $250K to $275K a year ๐Ÿ ๐Ÿƒ๐Ÿปโ€โ™‚๏ธ๐ŸŒŽ San Francisco, CA; Boston, MA; New York, NY, USA โ†’ https://ku.bz/gWd2ppTCm DevSecOps Engineer with Airwallex ๐Ÿ’ฐ $200K to $300K a year ๐Ÿ ๐Ÿƒ๐Ÿปโ€โ™‚๏ธ๐ŸŒŽ San Francisco, CA, USA โ†’ https://ku.bz/9V59yN3h9 Security Architect with Dexterity ๐Ÿ’ฐ $200K to $300K a year ๐Ÿ  From the office in Redwood, CA, USA โ†’ https://ku.bz/-Tx02LFF4 DevSecOps Engineer with Corelight ๐Ÿ’ฐ $221K to $268K a year ๐Ÿ‘จโ€๐Ÿ’ป Remote from North America. โ†’ https://ku.bz/_D5yTqnHk ๐Ÿ‘‰ Browse 1068 jobs on Kube Careers https://kube.careers

Repost from LearnKube news
This week on Learn Kubernetes Weekly 164: ๐Ÿ“Š Queue-Based Autoscaling Without Flapping: Rethinking App Scaling with Kubernetes
This week on Learn Kubernetes Weekly 164: ๐Ÿ“Š Queue-Based Autoscaling Without Flapping: Rethinking App Scaling with Kubernetes, KEDA, and RabbitMQ ๐Ÿ”„ Announcing Changed Block Tracking API support ๐Ÿณ Why I Ditched Docker for Podman (And You Should Too) ๐Ÿ” That Time I Found a Service Account Token in my Log Files โ˜๏ธ Deploying a .NET Weather Forecast App to AKS Using GitHub Actions and Argo CD Read it now: https://kube.today/issues/164 โญ๏ธ This issue is brought to you by LearnKube โ€” master Kubernetes with hands-on training designed for engineers who want to learn the smart way https://ku.bz/hypSbyc-V

This tutorial walks you through setting up Google Cloud IAP for Kubernetes services, using CDKTF (TypeScript) to configure OAuth, BackendConfig, and service annotations so your internal tools are protected behind identity checks. More: https://ku.bz/f7PqfWlby

Repost from N/a
@miamorecadenza CEO at Techaro explains why traditional password-based authentication is problematic in Kubernetes clusters and how Talos Linux implements a more secure approach using CA certificates. Watch the full episode: https://ku.bz/2kzj2MgfH

PodCertificateSigner lets your Kubernetes cluster automatically issue TLS certificates for pods by handling PodCertificateRequest resources with a custom signer controller. More: https://ku.bz/rbMcq48rD

cert-manager-mcp-server provides cert-manager resource management through Model Context Protocol (MCP), letting AI assistants like Claude inspect certificates, issuers, and certificate requests directly in Kubernetes clusters. More: https://ku.bz/RwfN0Qz5g

Repost from N/a
Ratan Tipirneni, President & CEO @ Tigera, explains how Tigera is responding to market demands by announcing two major developments: Calico AI and bundling Istio with their solution. He discusses the key market trend driving this decision: customers want a single, unified platform that provides everything needed for Kubernetes networking, network security, and observability, while remaining platform-agnostic to avoid vendor lock-in. Watch the interview: https://ku.bz/fwFG0jZNk Read the announcement: https://ku.bz/1nljhB1vQ

This article describes a real-world incident in which a high-privilege Kubernetes service account token was accidentally logged in plaintext. More: https://ku.bz/FDn0rzCqQ

Repost from Kube Careers
This week's 6 best Kubernetes vacancies that focus on security are: DevSecOps Engineer with OpenAI ๐Ÿ’ฐ $364.5K to $490K a year
This week's 6 best Kubernetes vacancies that focus on security are: DevSecOps Engineer with OpenAI ๐Ÿ’ฐ $364.5K to $490K a year ๐Ÿ‘จโ€๐Ÿ’ป Remote from the United States of America โ†’ https://ku.bz/NXd17JHfV DevSecOps Engineer with Airwallex ๐Ÿ’ฐ $200K to $300K a year ๐Ÿ ๐Ÿƒ๐Ÿปโ€โ™‚๏ธ๐ŸŒŽ San Francisco, CA, USA โ†’ https://ku.bz/9V59yN3h9 Security Architect with Dexterity ๐Ÿ’ฐ $200K to $300K a year ๐Ÿ  From the office in Redwood, CA, USA โ†’ https://ku.bz/-Tx02LFF4 DevSecOps Engineer with Corelight ๐Ÿ’ฐ $221K to $268K a year ๐Ÿ‘จโ€๐Ÿ’ป Remote from North America. โ†’ https://ku.bz/_D5yTqnHk ๐Ÿ‘‰ Browse 1011 jobs on Kube Careers https://kube.careers

Crowdsec is a security engine that detects malicious behavior from logs and community-shared intelligence, allowing you to bl
Crowdsec is a security engine that detects malicious behavior from logs and community-shared intelligence, allowing you to block bad IPs and share threat data across your fleet. More: https://ku.bz/M6t4FjWLg

Repost from LearnKube news
This week on Learn Kubernetes Weekly 163: ๐Ÿ”ฅ What would a Kubernetes 2.0 Look Like ๐Ÿ Trying to Break out of the Python REPL
This week on Learn Kubernetes Weekly 163: ๐Ÿ”ฅ What would a Kubernetes 2.0 Look Like ๐Ÿ Trying to Break out of the Python REPL Sandbox in a Kubernetes Environment: A Practical Journey ๐Ÿ› ๏ธ Karpenter at Beekeeper by LumApps: Fun Stories ๐Ÿ’ฅ Extracting JVM Data from Crash-Looping Java Containers in Kubernetes ๐ŸŽฎ ChaosRoom: Hands-On Chaos Engineering Through Games Read it now: https://kube.today/issues/163 โญ๏ธ This newsletter is brought to you by Depot โ€” Speed up your Docker builds by up to 40x with Depot's cloud-based builders https://ku.bz/mTfYrBkWZ

This article explains how eBPF lets you run small, verified programs inside the Linux kernel to unlock powerful observability, security, and networking capabilities without custom kernel modules. More: https://ku.bz/TYf7Jy6cs

This tool enables you to scan and enforce compliance across multi-cloud infrastructure with customizable YAML rules, alerts and integrations. More: https://ku.bz/JZJpNJqnz

This article explains how to use Vault Agent Injector (a mutating webhook) to inject secrets into Kubernetes pods securely, w
This article explains how to use Vault Agent Injector (a mutating webhook) to inject secrets into Kubernetes pods securely, without modifying application code. More: https://ku.bz/DXC0qMd79

This code tool helps you gather logs, metrics and code changes, then uses AI-powered root-cause analysis to surface what brok
This code tool helps you gather logs, metrics and code changes, then uses AI-powered root-cause analysis to surface what broke in production and suggest immediate fixes. More: https://ku.bz/srJCYmX4J

Repost from Kube Careers
This week's 6 best Kubernetes vacancies that focus on security are: DevSecOps Engineer with OpenAI ๐Ÿ’ฐ $364.5K to $490K a year
This week's 6 best Kubernetes vacancies that focus on security are: DevSecOps Engineer with OpenAI ๐Ÿ’ฐ $364.5K to $490K a year ๐Ÿ‘จโ€๐Ÿ’ป Remote from the United States of America โ†’ https://ku.bz/NXd17JHfV DevSecOps Engineer with Airwallex ๐Ÿ’ฐ $200K to $300K a year ๐Ÿ ๐Ÿƒ๐Ÿปโ€โ™‚๏ธ๐ŸŒŽ San Francisco, CA, USA โ†’ https://ku.bz/9V59yN3h9 Security Architect with Dexterity ๐Ÿ’ฐ $200K to $300K a year ๐Ÿ  From the office in Redwood, CA, USA โ†’ https://ku.bz/-Tx02LFF4 DevSecOps Engineer with Corelight ๐Ÿ’ฐ $221K to $268K a year ๐Ÿ‘จโ€๐Ÿ’ป Remote from North America. โ†’ https://ku.bz/_D5yTqnHk ๐Ÿ‘‰ Browse 867 jobs on Kube Careers https://kube.careers