DevOps drawer
@DevOps101
396
subscribers
9
photos
2
files
9.17K
links
Curated DevOps resources from trustworthy sources.
Download Telegram
Join
DevOps drawer
396 subscribers
DevOps drawer
https://blog.sigstore.dev/towards-easier-more-secure-signature-technology-for-the-java-ecosystem-with-sigstore-60d6a02490a8/
DevOps drawer
https://abstraction.blog/2023/01/10/certification-plan
Abstraction.blog
Creating a certification plan
I started my certification journey quite late in my career. I followed the top certified folks on LinkedIn for a while to see if I could learn from their stengths as also mistakes. Some of the questions which I am looking to answer :
DevOps drawer
https://ruudvanasseldonk.com/2023/01/11/the-yaml-document-from-hell
Ruud van Asseldonk
The yaml document from hell
For a data format, yaml is extremely complicated. It aims to be a human-friendly format, but in striving for that it introduces so much complexity, that I would argue it achieves the opposite result. Yaml is full of footguns and its friendliness is deceptive.…
DevOps drawer
https://samnewman.io/blog/2023/02/08/dont-call-it-a-platform/
DevOps drawer
https://blog.sonatype.com/comparing-sbom-standards-spdx-vs.-cyclonedx-vs.-swid
Sonatype
Comparing SBOM Standards: SPDX vs. CycloneDX
Do you know which format for generating a software bill of materials (SBOM) is the best option for your organization? A look at the two leading standards.
DevOps drawer
https://matt-rickard.com/advanced-configuration-languages-are-wrong
Mattrickard
Every Sufficiently Advanced Configuration Language is Wrong
Every sufficiently advanced configuration language is the wrong tool for the job.
For basic configuration, YAML or JSON is usually good enough. It falls apart
DevOps drawer
https://statusgator.com/blog/least-reliable-github-feature-2022/
StatusGator
What Was the Least Reliable GitHub Feature in 2022 | StatusGator
How reliable was GitHub in 2022? Which features are less reliable? We have analyzed GitHub outages and found which features are the most unreliable.
DevOps drawer
https://snyk.io/blog/when-software-isnt-a-supply/
Snyk
When software isn’t a “supply” | Snyk
The following think piece, written by Snyk’s Open Source and Open Standards Strategy Director, Daniel Appelquist, examines the origin of the term “supply chain security” and whether it’s a good fit for today’s open source software development process.
DevOps drawer
https://blog.trailofbits.com/2023/02/14/curl-audit-fuzzing-libcurl-command-line-interface/
The Trail of Bits Blog
cURL audit: How a joke led to significant findings
In fall 2022, Trail of Bits audited cURL, a widely-used command-line utility that transfers data between a server and supports various protocols. The project coincided with a Trail of Bits maker week, which meant that we had more manpower than we usually…
DevOps drawer
https://www.lastweekinaws.com/blog/the-aws-community-isnt-for-amazonians/
DevOps drawer
https://fosdem.org/2023/schedule/track/software_bill_of_materials/
archive.fosdem.org
FOSDEM 2023 - Software Bill of Materials devroom
DevOps drawer
https://www.bobbytables.io/p/incident-travel-time
The Thought Drop
Incident travel time
The real investment is how fast you get there
DevOps drawer
https://github.com/sosedoff/pgweb
GitHub
GitHub - sosedoff/pgweb: Cross-platform client for PostgreSQL databases
Cross-platform client for PostgreSQL databases. Contribute to sosedoff/pgweb development by creating an account on GitHub.
DevOps drawer
https://github.com/thesayyn/no
GitHub
GitHub - thesayyn/no: Easy NodeJS containers.
Easy NodeJS containers. Contribute to thesayyn/no development by creating an account on GitHub.
DevOps drawer
https://nodejs.org/api/single-executable-applications.html
DevOps drawer
https://blog.projectdiscovery.io/projectdiscovery-best-kept-secrets/
ProjectDiscovery
ProjectDiscovery's Best Kept Secrets — ProjectDiscovery Blog
A tour of ProjectDiscovery's less-known public tools, and how to use them by @pry0cc
Introduction
For those unaware, ProjectDiscovery is a group of talented hackers and creators that have massively disrupted the offensive tooling industry by creating tooling…
DevOps drawer
https://yewtu.be/watch?v=8U3yH4TG3js
FOSSA Inc | Invidious
The Future of CycloneDX: Previewing v1.5 and 1.6
Steve Springett, Chair of the CycloneDX Core Working Group, previews new features and functionality that will be added to CycloneDX versions 1.5 and 1.6.
### Learn More
On-Demand Webinar: Understanding and Using the CycloneDX Standard - https://www.bri…
DevOps drawer
https://nagaraj-tantri.medium.com/test-in-production-the-ideal-monitoring-587b23a541f9
Medium
Test In Production — The Ideal Monitoring
Imagine a regression bug in your production system! We need a constant reminder that your production system is working as expected.
DevOps drawer
https://awsteele.com/blog/2023/02/20/a-role-for-all-your-ec2-instances.html
Aidan Steele’s blog (usually about AWS)
A role for all your EC2 instances
tl;dr: You can now pass an IAM role to every EC2 instance in your account + region.
DevOps drawer
https://stevelasker.blog/2023/01/31/initiators-of-supply-chain-incidents/
Steve Lasker
Initiators of Supply Chain Incidents
When describing mitigations to supply chain security incidents, it helps to categorize how different incidents may be initiated. Based on the category, different mitigation strategies are more like…
DevOps drawer
https://blog.container-solutions.com/biggest-cloud-native-strategy-mistake
Container-Solutions
The Biggest Cloud Native Strategy Mistake
Ian uses the Gartner Pyramid visualisation to talk about one of the biggest mistakes made in Cloud Native transformation strategies
TWeb.init({scrollToPost:'DevOps101/8958'});