Editorial Calendar
Kubernetes v1.37 Enhances Dynamic Resource Allocation
Like many of its fellow projects in the open source community, Kubernetes has seen an increase in pull requests, many of which are no doubt generated by AI. This week’s release of ...
From Controls to Continuous Assurance: Rethinking GRC for Cloud-Native Environments
The standard process of building governance, risk, and compliance (GRC) programs has been straightforward: define a control, document a control, test the control on a regular basis, and generate a report for ...
Echo Acquires Hardened Container Assets from Minimus
Echo today revealed it has acquired technology assets from Minimus, a provider of hardened open source container images, that earlier this week revealed it is shutting down. Those assets will later be ...
Prompt Injection in Cloud-Native AI Is Now an Access Control Problem
For a long time, prompt injection was treated like other model behavior problems, such as jailbreaks or strange responses. The usual fix was to improve the system prompt, add stronger filters, or ...
How Base Images Impact Software Supply Chain Security in Kubernetes
As organizations scale their Kubernetes environments, the software supply chain becomes increasingly complex, interconnected, and vulnerable. One of the most overlooked yet foundational components of this supply chain is the base image ...
The Hidden Cost of “Just Works” Load Balancing in a Service Mesh
If you’re running a multi-AZ Kubernetes cluster with a service mesh on top, there’s a good chance you’re paying a tax you never signed up for, and it won’t show up as ...
Kubernetes Key Management Streamlined by HashiCorp Vault Plug-In
IBM HashiCorp has released a plug-in that allows Kubernetes clusters to use HashiCorp’s Vault Enterprise as an external key management service (KMS), eliminating the need to store unencrypted passwords or bog Kubernetes ...
Container Runtime Security in Kubernetes: What Teams Overlook
Kubernetes security conversations tend to center on the things that happen on the left-hand side of the process. Scanning images, hardening Dockerfiles, and working with registry access controls all tend to frontload ...
Rust Rewrite Readies Kata Containers for Agent Sandboxing
The OpenInfra Foundation has released version 4 of Kata Containers, which arrives with a new Rust-based default runtime that brings new memory safety and performance gains. With the Rust rewrite, the Foundation ...
Your Model Works in the Notebook and Breaks in the Cluster
A model working in a notebook gives you a particular kind of confidence. The metrics look good, the code runs top to bottom, the researcher demos it, leadership nods, and everyone agrees ...

