TGViewer
Channel Public Channel
Kubesploit

Kubesploit

@kubesploit

News and links on Kubernetes security curated by the @Learnk8s team
Website: https://kubesploit.io/
Subscribers
2.13K
Photos
961
Videos
208
Links
1.9K

Showing posts older than #1246 · Back to latest

Older Posts 20 shown
Post #1245 345

Forwarded from LearnKube news

This week on Learn Kubernetes Weekly 117:

🪝 Building my first Go project: a cert-manager webhook for DuckDNS
🔥 From dumpster fire to sparkling clean: SaaS with Kubernetes operators and garbage collection
✨ The journey to creating our next-generation cloud control plane
🚦 Understand scheduling in Kubernetes
🔎 Overview of kubernetes CNI network models: VETH & bridge / overlay / BGP

Read it now: https://learnk8s.io/issues/117

🌟 This newsletter is brought to you by Loft Labs to announce the launch of Multitenancy March https://ku.bz/yk4mJkv34
Post #1243 355

Forwarded from KubeFM

Yue Yin, Software Engineer at ByteDance, discusses their open-source Gödel scheduler and Katalyst resource management system. She explains how these tools address the challenges of managing online and offline workloads in large-scale Kubernetes deployments.

You will learn:

- How Gödel's distributed architecture with dispatcher, scheduler, and binder components enables the scheduling of 5,000 pods per second
- Why NUMA-aware scheduling and two-layer architecture are crucial for handling complex workloads at scale
- How Katalyst provides node-level resource insights to enable efficient workload co-location and improve CPU utilization

Watch (or listen to) it here: https://ku.bz/lMpNng_33

🌟 This episode is brought to you by Learnk8s — Become an expert in Kubernetes! Join the next Advanced Kubernetes workshop: https://learnk8s.io/training

With @Birthmarkb "Chief Idea Officer" Farrell
Post #1240 572

Forwarded from KubeFM

Tim Miller, CEO and Co-founder at Kusari, discusses three categories of tools that are transforming the Kubernetes ecosystem.

He highlights Ko, which helps developers deploy applications with minimal friction**, Falco by Sysdig, which provides deep system visibility, and SBOM generation tools like Excalibur and Guac, which make container dependencies more transparent. These tools focus on developer experience and system observability.

Watch the full interview: https://ku.bz/-2Sqn9Jb9
Post #1238 436

Forwarded from Kube Careers

This week's 6 best Kubernetes vacancies that focus on security are:

Security Architect with Adobe Inc.
💰 $191.7K to $345.7K a year
🏠 From the office in Seattle, WA / San Francisco / San Jose, CA, USA
→ https://kube.careers/t/b6de3faf-adb8-462a-9dd9-260446149b27

Security Architect with Dexterity
💰 $200K to $300K a year
🏠 From the office in Redwood, CA, USA
→ https://kube.careers/t/b9a90583-a0e8-4f13-b776-839c8b1d6275

DevSecOps Engineer with Attentive
💰 $200K to $270K a year
👨‍💻 Remote from the United States of America
→ https://kube.careers/t/9d5fda72-efd7-4b36-9432-e14b829f7912

DevSecOps Engineer with Plaid
💰 $186.84K to $279.72K a year
🏠🏃🏻‍♂️🌎 US
→ https://kube.careers/t/65616251-5ba0-42af-af39-fb64a1c2d20d

DevSecOps Engineer with Glean
💰 $185K to $280K a year
🏠🏃🏻‍♂️🌎 Palo Alto, CA, USA
→ https://kube.careers/t/384dd05a-a906-4db7-933a-51b15110f87f

👉 Browse all 1151 Kubernetes jobs on Kube Careers https://kube.careers
Post #1236 352

Forwarded from LearnKube news

This week on Learn Kubernetes Weekly 116:

💥 Node.js 20 upgrade: a journey through unexpected heap issues with Kubernetes
🐳 How to optimize Kubernetes for large Docker images
📈 How to optimize autoscaling in Kubernetes using metrics based on application workflows
🔎 Container internals series: seccomp
🛑 Preemptible pods

Read it now: https://learnk8s.io/issues/116

🌟 StormForge — the only JVM workload rightsizing solution for Kubernetes https://ku.bz/PJjcy3PwL
Post #1234 383

Forwarded from KubeFM

Platform Engineer Artem Lajko breaks down observability into three distinct layers and explains how tools like Prometheus, Grafana, and Falco serve different purposes.

You will learn:

- How to implement the three-layer model (external, internal, and OS-level) and why each layer serves different stakeholders
- How to choose and scale observability tools using a label-based approach (low, medium, high)
- How to manage observability costs by collecting only relevant metrics and logs

Watch (or listen to) it here: https://ku.bz/9sGxhmm8s

🌟 This episode is brought to you by Learnk8s — Become an expert in Kubernetes! Join the next Advanced Kubernetes workshop this January: https://learnk8s.io/training

With @Birthmarkb "Kubernetes historian" Farrell
Post #1233 464
AWRBACS is a tool that audits CRUD permissions in Kubernetes' RBAC, allowing users to enumerate and verify the permissions of users and service accounts.

More: https://github.com/lobuhi/awrbacs
Post #1231 2.12K
The Trivy Operator leverages Trivy to continuously scan your Kubernetes cluster for security issues.

The scans are summarised in security reports as Kubernetes Custom Resource Definitions, which become accessible through the Kubernetes API.

More: https://github.com/aquasecurity/trivy-operator
Post #1230 507

Forwarded from Kube Careers

This week's 6 best Kubernetes vacancies that focus on security are:

Security Architect with Adobe Inc.
💰 $191.7K to $345.7K a year
🏠 From the office in Seattle, WA / San Francisco / San Jose, CA, USA
→ https://kube.careers/t/b6de3faf-adb8-462a-9dd9-260446149b27

Security Architect with Dexterity
💰 $200K to $300K a year
🏠 From the office in Redwood, CA, USA
→ https://kube.careers/t/b9a90583-a0e8-4f13-b776-839c8b1d6275

DevSecOps Engineer with Crusoe
💰 $180K to $300K a year
🏠🏃🏻‍♂️🌎 San Francisco, CA, USA
→ https://kube.careers/t/cc2ab37b-4b47-4dc0-9199-04269d9e3607

DevSecOps Engineer with Attentive
💰 $200K to $270K a year
👨‍💻 Remote from the United States of America
→ https://kube.careers/t/9d5fda72-efd7-4b36-9432-e14b829f7912

DevSecOps Engineer with Plaid
💰 $186.84K to $279.72K a year
🏠🏃🏻‍♂️🌎 US
→ https://kube.careers/t/65616251-5ba0-42af-af39-fb64a1c2d20d

👉 Browse all 1218 Kubernetes jobs on Kube Careers https://kube.careers
Post #1228 344

Forwarded from LearnKube news

This week on Learn Kubernetes Weekly 115:

🥷 Kubernetes has its "ADCS" how to backdoor a Kubernetes in silence
🔒 GitOps secrets with Argo CD, Hashicorp Vault and the External Secret Operator
🌲 Why is running as root in kubernetes containers dangerous? @Marcin Wasiucionek
🔭 Go deeper: linux runtime visibility meets wireshark
🤫 Securing secrets in confidential containers: usage patterns to avoid

Read it now: https://learnk8s.io/issues/115

🌟 Become an expert in Kubernetes! Join the next Advanced Kubernetes workshop next week: https://learnk8s.io/online-advanced-january-2025
Older posts →
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →