Digest #43: Azure Penetration Testing 📛

#43: Azure Penetration Testing

🎧 PODCAST/WEBINAR OF THE WEEK
Kubernetes won the container wars (over Swarm, CF and Mesos) and continues to grow in use across many industries. But how did something that was about Cloud-native Applications gain traction without a developer experience? 🤔
📖 POSTS OF THE WEEK
Fantastic Infrastructure as Code security attacks and how to find them
This post we will dive into these IaC risks and focus on IaC management tools such as Terraform, cloud providers, and deployment platforms involving containers and Kubernetes. For each scenario, it will look into threats, tools, integrations, and best practices to reduce risk.
Read more »
"Stop using branches for deploying to different GitOps environments" - Branch-per-environment mostly works, but there are some issues with it - Read more »
"Azure penetration testing: the user-friendly guide" - A great guide on how you can go about performing penetration tests on Azure and what you need to consider before starting - Read more »
"Hands-on with PostgreSQL authorization" - How you can limit users to reading and mutating only their own data with row-level security (RLS) policies - Read more »
"Who’s attacking my server?" - A hands-on tutorial on how to secure a server against brute-forcing SSH access and visualize potential attackers IPs in a map - Read more »
"Contributing to complex projects" - Mitchell Hashimoto (the guy behind Terraform & others) cover in this blog post how to approach with confidence a complex open-source project - Read more »
"CRI-O vulnerability could allow container escape" - A newly discovered vulnerability in the container runtime tool CRI-O could allow attackers who are able to create pods in a Kubernetes or OpenShift to break out to the underlying cluster node, effectively escalating their privileges - Read more »
📕 BOOK OF THE WEEK
This is the book I read these past few weeks. It’s the story of Elon Musk, Peter Thiel, Reid Hoffman, David Sachs and the entire Paypal Mafia surviving the tumultuous time that was the .com era. It’s interesting to hear it from the perspective of an insider writing this before any of these people became as famous as they are today. It’s a genuinely inspiring story because it’s so different from the “young dropout starts a social media app” story we are using to hearing a lot these days.
🛠 PROJECTS OF THE WEEK
The company 0x4447 builds products to increase standardization and security in AWS Organizations. They do this with automated pipelines that use well structured projects to create secure, easy to maintain and fail tolerant solutions. One of which is their VPN product – built on top of the popular OpenVPN® project, which has no license restrictions. You are only limited by the network card in the instance - Read more »
ValidIaC combines the best open-source tools (tflint, tfsec, infracost and inframap under the same roof) to help ensure Infrastructure-as-Code best practices, hygiene & security - Read more »
In order to scan all used images in a K8s cluster for vulnerabilities this application runs scans of all used images on an interval and outputs Prometheus metrics to indicate the problematic images and their vulnerabilities - Read more »
Vim Reference Guide is intended as a concise learning free resource for beginner to intermediate level Vim users. It has more in common with cheatsheets than a typical text book. Topics like Regular Expressions and Macros have more detailed explanations and examples due to their complexity - Read more »
💼 OPEN JOBS OF THE WEEK
Site Reliability Engineer @RetailNext
GCP, Golang, Terraform, Elasticsearch

🌎 Remote, USA
💰 $140K - $170K
Read more »
DevOps Engineer @OMG
AWS, ClickHouse, Elasticsearch

🌎 Remote, anywhere
Read more »
DevOps SRE @Close
AWS, MongoDB, Kubernetes

🌎 Remote, anywhere
Read more »
🐦 TWEET OF THE WEEK
Great tweet that summarizes the top security findings on K8s clusters.
😂 MEMES OF THE WEEK
How to choose the best answer in StackOverflow 😅
Share Share
Tweet Tweet
Forward Forward
Remember to share if you enjoyed this issue!
@devopsbulletin @devopsbulletin
devopsbulletin.com devopsbulletin.com
Copyright © 2022 DevOps Bulletin, All rights reserved.
Want to change how you receive these emails?
You can update your preferences or unsubscribe from this list.

Email Marketing Powered by Mailchimp

Older messages

Digest #44: You're Doing SSH Wrong 😬

Friday, March 25, 2022

Digest #44: You're Doing SSH Wrong 😬 #44: You're Doing SSH Wrong 🎧 PODCAST/WEBINAR OF THE WEEK This episode from DevOps Pradox discusses the challenges with StatesfulSet applications and the

You Might Also Like

Daily Coding Problem: Problem #1664 [Easy]

Friday, January 10, 2025

Daily Coding Problem Good morning! Here's your coding interview problem for today. This problem was asked by Twitter. A permutation can be specified by an array P , where P[i] represents the

Spyglass Dispatch: The Case for a For-Profit OpenAI

Friday, January 10, 2025

RIP Venu • A More Political and Real Time Threads • An OpenAI Auction • Apple's Tough 2025 The Spyglass Dispatch is a newsletter sent on weekdays featuring links and commentary on timely topics

⌨️ 10 Mods to Improve Your Mechanical Keyboard — How to Set Up Quick Share on Windows

Friday, January 10, 2025

Also: Why Are Tech Companies Trying to Sell Me Expensive Clocks? How-To Geek Logo January 10, 2025 Did You Know Famed biologist Charles Darwin and US President Abraham Lincoln were born on the same day

Your best friends in design

Friday, January 10, 2025

​ Working With Designers Product manager & UX designer collaboration guide. How members of your product team work together is just as important as the work itself. A fundamental relationship within

Charted | How Canada Would Rank as the 51st State 📊

Friday, January 10, 2025

Donald Trump has floated the idea that Canada should be the 51st state. Here's how it compares statistically. View Online | Subscribe | Download Our App Presented by: Global X ETFs Power AI's

Pinpointing The Actual Problem 🎯

Friday, January 10, 2025

WordPress accidentally diagnoses its own business problem. Here's a version for your browser. Hunting for the end of the long tail • January 10, 2025 Pinpointing The Actual Problem A blog post from

😱Major Azure Outage in EastUS2, 🚀New AI and Azure Developer CLI Courses, azureedge.net DNS retiring

Friday, January 10, 2025

͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏ ‌ ͏

iOS Cocoa Treats

Friday, January 10, 2025

View in browser Hello, you're reading Infinum iOS Cocoa Treats, bringing you the latest iOS related news straight to your inbox every week. Adopting Swift 6 across the app codebase I've been

Issue #575: Excalibird, bird’s eye metropolis, and Stimulation Clicker

Friday, January 10, 2025

View this email in your browser Issue #575 - January 10th 2025 Weekly newsletter about Web Game Development. If you have anything you want to share with our community please let me know by replying to

22 CES products you can't miss

Friday, January 10, 2025

10 must-install Linux apps; Cybersecurity in 2025; Email encryption how-to -- ZDNET ZDNET Tech Today - US January 10, 2025 CES logo 2025 CES 2025: The 22 most impressive products you don't want to