Suggested Reads

Suggested Reads

54927 bookmarks
Newest
Putin sent Trump a portrait | US envoy says ‘elephant in the room’ in peace talks is whether Ukraine will cede occupied regions | CNN
Putin sent Trump a portrait | US envoy says ‘elephant in the room’ in peace talks is whether Ukraine will cede occupied regions | CNN
The biggest obstacle to resolving Russia’s war in Ukraine is the status of Crimea and the four mainland Ukrainian regions occupied by Russia, said US special envoy Steve Witkoff, calling them “the elephant in the room” in peace talks.
·cnn.com·
Putin sent Trump a portrait | US envoy says ‘elephant in the room’ in peace talks is whether Ukraine will cede occupied regions | CNN
Platform engineering challenges: balancing simplicity and autonomy in Kubernetes | KubeFM
Platform engineering challenges: balancing simplicity and autonomy in Kubernetes | KubeFM
This interview explores how Kubernetes is evolving to support modern workloads while addressing platform engineering challenges. In this interview, Roland Barcia, Director at AWS leading the specialist technology team, discusses: - How **emerging tools** like **Karpenter** and **Argo CD** are adapting to support **diverse workloads** from LLMs to data processing - The balance between **platform standardization** and **team autonomy** in Kubernetes environments - The **future of Kubernetes** and its evolution to support **new workloads** like LLMs and **stateful applications**
·kube.fm·
Platform engineering challenges: balancing simplicity and autonomy in Kubernetes | KubeFM
ai.robots.txt/robots.txt
ai.robots.txt/robots.txt
A list of AI agents and robots to block. Contribute to ai-robots-txt/ai.robots.txt development by creating an account on GitHub.
·github.com·
ai.robots.txt/robots.txt
The Best Monitor Arms
The Best Monitor Arms
We researched and tested more than a dozen monitor arms and stands to find the best options to raise your screen and free up space on your desk.
·nytimes.com·
The Best Monitor Arms
Poisoned Windows shortcuts found to be a favorite of Chinese, Russian, N. Korean state hackers | The Record from Recorded Future News
Poisoned Windows shortcuts found to be a favorite of Chinese, Russian, N. Korean state hackers | The Record from Recorded Future News
The Zero Day Initiative measured the prevalence of manipulated Windows shortcut files in campaigns attributed to nation-state hacking groups — finding at least 11 exploited a bug that allows malicious use of the files.
·therecord.media·
Poisoned Windows shortcuts found to be a favorite of Chinese, Russian, N. Korean state hackers | The Record from Recorded Future News
Last Week in Kubernetes Development - Week Ending March 16 2025
Last Week in Kubernetes Development - Week Ending March 16 2025

Week Ending March 16, 2025

https://lwkd.info/2025/20250319

Developer News

CVE-2026-1767 allows authenticated users to access git repos belonging to other users if created with the in-tree gitRepo volume type. In-tree gitRepo volumes have been deprecated. The SRC suggests several workarounds in the issue.

SIG-Windows plans to make the Windows unit tests release-informing. This is a big step forwards for support of Kubernetes on Windows.

Release Schedule

Next Deadline: Code and Test Freeze, March 20/21

Code and Test Freeze starts at 0200 UTC on Friday, March 21. Your PRs should all be merged by then; file an exception as soon as possible if you think you won’t make that deadline.

Other Merges

kube-openapi updated and integrated streaming tags validation

TestListCorruptObject corrupts the object in etcd instead of changing encryption key

A new function verifyAlphaFeatures implemented to ensure that alpha features cannot be enabled by default

Extracted delegator.Helper interface to allow making delegate decision based on cache state

Split subfunction to allow adding more subtests

Unit tests for Windows DSR and Overlay Support added

scheduler_perf topology spreading tests moved to a separate package

Fixes for unit tests on Windows

PodResourceAllocation type replaced with PodResourceInfoMap

Support for emulation versioning of custom resource formats

Unit tests for credential provider in service account mode

DRA adds user RBAC

InPlacePodVerticalScaling moves pod resize status to pod conditions

DeclarativeValidation feature gate to be enabled by default

ReplicationController spec.replicas and spec.minReadySeconds fields migrated to declarative validation

Declarative Validation enabled for ReplicationController

Fix for incorrect AppArmorProfile.Type marker

JobSuccessPolicy E2E tests promoted to conformance

kubelet to set observedGeneration field on pod conditions if PodObservedGenerationTracking feature gate is set

Workqueue for node updates in DaemonSetController

PreEnqueue plugins to be called before adding pod to backoffQ

Forward compatibility added for compatibility mode

Alpha support for Windows HostNetwork containers removed

Add metrics to track allocation of Uncore Cache blocks

Updated /version response to report binary version information separate from compatibility version

New alpha feature gate MutableCSINodeAllocatableCount introduced

Swap capacity to be reported as part of node.status.nodeSystemInfo

Quota support for PVC with VolumeAttributesClass

UpdatePodSandboxResources CRI method

Multi-tenancy in accessing node images via Pod API

Storage capacity scoring added to VolumeBinding plugin

GA feature gate PersistentVolumeLastPhaseTransitionTime removed

Refactoring for featuregate lifecycle management script

Promotions

InPlacePodVerticalScaling to beta

DRAResourceClaimDeviceStatus to beta

CoordinatedLeaderElection to beta

TopologyAwareHints to GA

RemoteRequestHeaderUID to beta

SchedulerAsyncPreemption to beta

JobSuccessPolicy to GA

Deprecated

apidiscovery.k8s.io/v2beta1 API group is disabled by default

gitRepo volume plugin disabled by default

via Last Week in Kubernetes Development https://lwkd.info/

March 19, 2025 at 02:00PM

·lwkd.info·
Last Week in Kubernetes Development - Week Ending March 16 2025
Exploitation of Apache Tomcat Vulnerability CVE-2025-24813 - NHS England Digital
Exploitation of Apache Tomcat Vulnerability CVE-2025-24813 - NHS England Digital
Exploitation of remote arbitrary code execution vulnerability CVE-2025-24813 reported in the wild.  CVE-2025-24813 is a vulnerability that an attacker could exploit to achieve remote code execution (RCE), view security sensitive files, or inject content into those files.
·digital.nhs.uk·
Exploitation of Apache Tomcat Vulnerability CVE-2025-24813 - NHS England Digital
I haven't been happy with Assassin's Creed in a long time; I'm replaying the Ezio collection | Assassin's Creed Shadows Review: Japanese Setting Refreshes Series - PlayStation LifeStyle
I haven't been happy with Assassin's Creed in a long time; I'm replaying the Ezio collection | Assassin's Creed Shadows Review: Japanese Setting Refreshes Series - PlayStation LifeStyle
Assassin's Creed Shadows refines the formula fans have come to know and love, though some warts still rear their head from time to time.
·playstationlifestyle.net·
I haven't been happy with Assassin's Creed in a long time; I'm replaying the Ezio collection | Assassin's Creed Shadows Review: Japanese Setting Refreshes Series - PlayStation LifeStyle
Asahi Lina Pausing Work On Apple GPU Linux Driver Development
Asahi Lina Pausing Work On Apple GPU Linux Driver Development
Following Hector Martin stepping down from the Asahi Linux project that he founded for bringing Linux to Apple Silicon hardware, Asahi Lina announced today that she is pausing work on all of the Apple GPU driver development she had been pursuing for Asahi Linux with the open-source DRM kernel driver as well as Mesa contributions.
·phoronix.com·
Asahi Lina Pausing Work On Apple GPU Linux Driver Development