| |
| 🔗 Stories, Tutorials & Articles |
| |
|
| |
| Why We Chose the Harder Path: Hardened Images, One Year Later |
| |
| |
Docker Hardened Images surpassed 500k daily pulls and now hosts 2,000+ hardened images, all built in a SLSA Build Level 3 pipeline. It compiles tens of thousands of Debian and Alpine packages from source. It runs 1M+ builds. It ships 17 signed attestations per image. It auto-rebuilds customized images under SLA. |
|
| |
|
| |
|
| |
| Post-Quantum Cryptography Migration at Meta: Framework, Lessons, and Takeaways |
| |
| |
| Quantum computers could decrypt data stored today in anticipation of future decryption, posing security risks despite the estimated decade-long timeline. Industry-wide PQC standards are being published by NIST to defend against such threats, including algorithms like ML-KEM and ML-DSA. The industry is advancing towards a PQC-secure future with the availability of robust options to shield against SNDL attacks, thanks to efforts from Meta and others. |
|
| |
|
|
| |
|
| |
| What is AWS Graviton? The custom chip powering applications for 90,000 customers |
| |
| |
| Amazon's Graviton family peaks at a 192-core chip. It delivers up to 25% better performance than Graviton4 and keeps energy efficiency intact. AWS says 98% of its top 1,000 EC2 customers run Graviton. More than half of new EC2 capacity runs on these chips. |
|
| |
|
| |
|
| |
| pgit: I Imported the Linux Kernel into PostgreSQL |
| |
| |
pgit ingested 20 years of the Linux kernel: 1.43M commits, 24.4M file versions. The dataset lives in PostgreSQL with pg-xpatch - 2.7GB on disk.
A 2-hour import on a 24-core EPYC built a queryable SQL DB. Most delta-decompressed queries return in <10s. No preprocessing required. |
|
| |
|
| |
|
| |
| Betterleaks: The Gitleaks Successor Built for Faster Secrets Scanning |
| |
| |
Betterleaks supplants Gitleaks as a drop-in CLI. Scans run faster. It's written in Pure Go - no CGO - and performs parallel git scans.
It replaces entropy heuristics with token-efficient detection via BPE. It adds CEL rule validation. Its roadmap includes LLM assist and auto-revocation. |
|
| |
|
|
| |
👉 Got something to share? Create your FAUN Page and start publishing your blog posts, tools, and updates. Grow your audience, and get discovered by the developer community. |