rolo

@ro1o@chaos.social
148 Followers
327 Following
581 Posts
Observability, Kubernetes, Shell

Kein Windows 11 für Deinen Computer?

Dann nimm doch Linux und benutze ihn einfach ohne Spyware weiter.

Bei Installation und Einrichtung helfen wir Dir gern.

📅 Wann? 20.09.2025 – jetzt schon vormerken!
📍 Wo? VHS Hannover, Burgstr. 14
ℹ️ Mehr Infos: https://kurzlinks.de/g3g5
oder bei uns: https://lug-hannover.de/

Mach mit und erlebe digitale Freiheit! 🚀✨

#Linux #OpenSource #Hannover #FOSS #endof10

Discover how eBPF, Cilium, and Tetragon enhance container security with real-time kernel-level insights. Learn to combine these tools with SBOMs for robust security monitoring. Boost your skills with OS-SCi education programs! #ContainerSecurity #eBPF #Cilium #Tetragon #SBOMs https://dub.sh/cZVQvk6
Kernel-level container insights: Utilizing eBPF with Cilium, Tetragon, and SBOMs for security - Help Net Security

eBPF allows tools like Cilium’s Tetragon to observe kernel-level activities such as system calls, network traffic, and process executions.

Help Net Security
Neugierig auf #Linux? Die LUG #Hannover trifft sich Mittwoch, 02.07.2025, 19h, im Seminarraum des LUIS (RRZN), Schlosswender Str. 5. (Eingang im Hinterhof). Ab 21h: Essen, Trinken, Fachsimpeln im Kaisers (Nordstadt). https://lug-hannover.de
Linux User Group Hannover

Aktuelle Termine, Themen und Veranstaltungen der Linux User Group Hannover.

26.04.37, Bombenangriff der deutschen Legion Condor auf #Guernica im Baskenland.
Falco vs. Tetragon: A Runtime Security Showdown for Kubernetes

In Kubernetes security, runtime protection sits at the critical intersection of detection and prevention. Two CNCF tools dominate this space: Using a real-world scenario of blocking unauthorized…

Medium
Killport: Stopping Processes by Port Number in Linux
https://linuxtldr.com/installing-killport/
Killport: Stopping Processes by Port Number in Linux

Killport is a Linux command-line tool that allows users to quickly kill processes listening to a single or multiple ports.

Linux TLDR

Hey #kubernetes users, it might be a good idea to update your kubelet:

> In Kubernetes, a security issue was discovered whereby a large number of container checkpoint requests sent to the unauthenticated, read-only HTTP endpoint of the kubelet may cause a Denial of Service attack on a node by filling up its disk.
> This issue has been rated as Medium (6.2) (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H) and has been assigned the identifier CVE-2025-0426.

You can find more details in the messages sent by Craig here:

https://groups.google.com/g/kubernetes-security-announce/c/KiODfu8i6w8/m/aSBs19ciAAAJ

#devops #infosec #cybersecurity #programming

[Security Advisory] CVE-2025-0426: Node Denial of Service via kubelet Checkpoint API

As Cilium v1.17.0 was released yesterday, I decided to type down my ideas on what I've been up to (at last!) in my homelab lately.

My article on kubernaut.eu:

https://kubernaut.eu/posts/k8s-v132--cilium-v170--illumos--true/

k8s v1.32 + Cilium v.17.0 + illumos = true? | kubernaut.eu

A reflection on my twenty years as a home lab tinkler.

Hackery with good intentions: The hacking of Apple’s highly customized ACE3 USB-C controller that first appeared in the iPhone 15 series https://www.forbes.com/sites/daveywinder/2025/01/12/apple-iphone-usb-c-hacked-what-you-need-to-know/ #38c3
Apple iPhone USB-C Hacked—What You Need To Know

The new Apple iPhone USB-C controller has been hacked in a worrying first. The hacker behind it explains what they did along with the security implications.

Forbes
#linux user be like ....