Operations | Monitoring | ITSM | DevOps | Cloud

The latest News and Information on DevOps, CI/CD, Automation and related technologies.

Enterprise-Grade Software Security: Mastering Control Over Your Software IP

Enterprises should prioritize securing their software artifacts to protect intellectual property (IP), maintain compliance, and mitigate supply chain risks. A strong security posture requires a deep understanding of access management, distribution controls, compliance enforcement, and software lifecycle governance.

Security in depth with Ubuntu: Mapping security primitives to attacker capabilities

Cybersecurity is not about perfection. In fact, it’s more like a game of chess: predicting your opponent’s moves and making the game unwinnable for your opponent. Like chess players, attackers are always looking for an opening, probing for weaknesses, or waiting for you to make a mistake. Therefore, the best defense isn’t a single unbreakable barrier, but instead a layered strategy that forces your adversary into a losing position at every turn.

What's new with Google Cloud for 2025

Google Cloud remains the third-largest provider, holding a 13% share in the global cloud infrastructure services market. In Q3 2024, Google reported a 30% year-over-year revenue growth reaching $12 billion in sales. However, it is a competitive market so they are working hard to accelerate this momentum and drive future growth with developments in AI innovation and infrastructure investments.

AWS Aurora Pricing In 2025: What Influences Costs And How To Save

Amazon Aurora offers up to five times the throughput of standard MySQL and three times that of PostgreSQL. Its architecture combines the database engine with a cloud-native, SSD-based storage system built for high I/O operations to achieve this. That said, AWS Aurora pricing can be a real headscratcher for customers, with concerns about the cost structure, pricing components, and ways to cut expenses.

How Azure Observability Optimizes Performance and Monitoring

Observability in Azure isn’t just about tracking metrics—it’s about truly understanding how your cloud infrastructure, applications, and services are performing. It helps you spot issues before they become problems, optimize performance, and ensure security. In this guide, we’ll break down Azure Observability in a way that’s easy to follow, covering key concepts, best practices, and some useful tricks to give you an edge.

Everything You Need to Know About Microsoft Sentinel Pricing

Keeping your organization secure is more important than ever. Microsoft Sentinel, a cloud-native Security Information and Event Management (SIEM) solution, helps detect and respond to threats effectively. But to get the most out of it, it’s important to understand how the pricing works.

Jekyll and Hyde: Taming AI Security with Automation

AI offers a world of promise for security teams, including potential for advanced threat detection, automated response capabilities, and enhanced data analysis for cybersecurity. But the same technology that supports cybersecurity teams can also be weaponized by threat actors — a true “Good vs. Evil", or “Jekyll and Hyde” scenario.

1st Live AMA with GitLens Creator Eric Amodio | Feb 13, 1pm EST

What questions would you ask the creator of GitLens? Whether you’re a power user or new to GitLens and have basic questions, we’d love to hear from you. Join us for a live AMA with Eric Amodio, the creator of GitLens on February 13th at 1 PM EST. GitLens has evolved significantly since it began as a simple blame and annotations extension for VS Code. Now, we invite you to ask questions, gain insights, and hear Eric’s perspective on any topics you're curious about.

Migrating from Generic to Custom Attestations: A zero-trust approach to compliance

The kosli attest generic CLI command can attest anything, but unlike a “typed” attestation (such as kosli attest snyk), it does not calculate a true/false compliance value for you. Customers have reported that while a generic “escape hatch” is useful, it nevertheless has some drawbacks: Based on this feedback we’ve implemented a new attest command called kosli attest custom.

The Risks of Not Replacing Skype for Business Before its End of Life

If your organization uses Skype for Business for collaboration, it’s time to start thinking about your next communication platform. On Oct. 15, 2025, Microsoft will stop supporting Skype for Business. As a result, the platform’s performance issues, security vulnerabilities, and other bugs will no longer be fixed. There’s still time to move to a new platform before Skype for Business is no longer supported.