Join us

ContentUpdates from Boldlink SIG...
Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

The Journey of Bypassing Ubuntu’s Unprivileged Namespace Restriction

Ubuntu's sandbox for unprivileged namespaces flops like a soggy cardboard box; one keen Twitter user blew wide open a glaring weakness.Billed as invincible, these post-exploitation defenses crumbled when a process shimmies into an unconfined AppArmor profile. Suddenly, infamous attack paths throw up.. read more  

The Journey of Bypassing Ubuntu’s Unprivileged Namespace Restriction
Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

GitHub Advisory Database by the numbers: Known security vulnerabilities and what you can do about them

GitHub Advisory Database curates22 000+reviewed and30 000+imported advisories from the NVD, repo advisories, and community sources. It fuels Dependabot, CVSS & EPSS ratings, and CNA services to ruthlessly prioritize and patch vulnerabilities at scale.. read more  

Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

Kafka in 2025: A Clean Docker Compose Setup Without ZooKeeper

KafkakickedZookeeperto the curb as of version 4.0. And by 2023, Docker images were no longer invited to the party. Want to set it up locally?Bitnami'sversion steps in, offering custom settings to play with... read more  

Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

Broadcom is Bullying Enterprises with VMware Audits

Broadcom's latest move? Burying those trusty perpetual licenses. Now it's subscription time, folks, with price tags attached like parachutes packed by someone mildly annoyed. And if that wasn't enough, they're on a mission to sniff out unlicensed users like a bloodhound on a hunt, wielding audits an.. read more  

Broadcom is Bullying Enterprises with VMware Audits
Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

Sniffnet v1.4 introduces PCAP files import and it’s 2X faster than Wireshark!

Sniffnet v1.4zips through1.6 GBPCAP files in just 25 seconds on an 8-year-old MacBook Air. That's2.2x faster than Wireshark. How? It skips the encrypted payloads and goes straight for the packet headers, like a bloodhound on a scent... read more  

Sniffnet v1.4 introduces PCAP files import and it’s 2X faster than Wireshark!
Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

Image Compatibility In Cloud Native Environments

Kubernetes Node Feature Discoverynow gives containers a say in the conversation. They can outline and validate OS and hardware needs. Smart scheduling for demanding apps just got a boost... read more  

Image Compatibility In Cloud Native Environments
Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

Inspecting Service Traffic with mirrord dump

Withmirrord’s latest trick, monitoring incoming TCP traffic in Kubernetes feels like wielding abuilt-in tcpdump. But there’s a twist: it zeroes in on essential resources without eBPF or sidecars. Developers can filter and capture traffic in their sessions, offering a swift solution for debugging in .. read more  

Inspecting Service Traffic with mirrord dump
Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

Kubernetes NodeRestriction Flaw Lets Nodes Bypass Resource Authorization

Kuberneteshas tripped over a major flaw (CVE-2025-4563). Rogue nodes can skip past auth checks, opening a door for privilege escalation. But don’t sweat it too much; this only bites if you've enabledDynamicResourceAllocationand run static pods.AKSusers, you're safe. But only if your setup isn't a me.. read more  

Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

CNCF saves $1 million annually by migrating to OCI

Oracle's tossing$3M a yearin Ampere Arm-based credits into the mix for CNCF's cloud-native projects, supercharging them like they just downed a can of energy drink. Over at the Linux Foundation Education, they're watching their cloud bills shrink by $1M annually. Meanwhile, OCI Kubernetes Engine sho.. read more  

Link
@faun shared a link, 10 months, 3 weeks ago
FAUN.dev()

AWS Introduces Extended Threat Detection for EKS via GuardDuty

AWSGuardDutycranks up EKS security using slickeBPFagents. These agents snag threats like reverse shells and crypto mining directly at the container level. No fuss with user-deployed agents needed. GuardDuty shrugs off traditional security headaches, nudging cloud giants like AWS toward smarter, hass.. read more  

AWS Introduces Extended Threat Detection for EKS via GuardDuty
We help our customers to secure and speed up platform and software delivery on AWS. Your success is our business!

Our Success - Leading with simplicity and intelligence.
Most businesses buy into AWS without realising that they do not have the talent or expertise to implement on the platform. We understand being lost and confused with AWS is no fun and has a steep learning curve, we will speed up your cloud journey.

Our Approach - It’s our aim to remove barriers
Believe - If you are an Enterprise or Startup we believe you are entitled to make your life in the cloud secure compliant fast and easy. Our teams of experts are available to ensure your organisation grows.
Deliver - Guiding your customers in their innovation journey with a heavy focus on hands-on delivery using the latest technologies and processes in secure delivery on AWS cloud platforms.
Transform - With the boom of digital transformation our clients want to accelerate their adoption of AWS cloud clear of the cloud pitfalls to accelerate delivery teams' cloud adoption.

Our Mission - Your success is our business.
Create a place to work where people can joyfully embrace technology innovation, and solve the most complex problems with simple code to their heart's content. Accelerate our customers' time to market by building simple, secure and fast cloud platforms.