Skip to content

WorthPosting

  • Home
  • About

Tag: security

Cat Links Software Engineering

Secrets Management in Practice: From Hardcoded Credentials to Short-Lived Identity

Posted on September 5, 2026September 6, 2026 teliaz

Most breaches involving secrets do not involve sophisticated attacks. They involve a credential that was committed to a git repository

Continue readingSecrets Management in Practice: From Hardcoded Credentials to Short-Lived Identity

Cat Links Software Engineering

SSRF: The Vulnerability That Turns Your Server Against Its Own Network

Posted on September 3, 2026 teliaz

Your webapp has a feature where users can attach an image by URL. A user submits https://example.com/logo.png and the backend

Continue readingSSRF: The Vulnerability That Turns Your Server Against Its Own Network

Cat Links Software Engineering

The keyv Worm and the Anatomy of a Modern Supply Chain Attack

Posted on August 27, 2026August 28, 2026 teliaz

On August 4, 2026, someone took over the GitHub account of the maintainer of keyv, a key-value storage abstraction library

Continue readingThe keyv Worm and the Anatomy of a Modern Supply Chain Attack

Cat Links Software Engineering

Kubernetes Secrets Without the Secret Sprawl: External Secrets Operator in Production

Posted on August 23, 2026 teliaz

Every Kubernetes cluster has the same awkward secret sitting in its API: the Secret. Base64 encoding is not encryption, anyone

Continue readingKubernetes Secrets Without the Secret Sprawl: External Secrets Operator in Production

Cat Links Software Engineering

The Open Source License Wars: Forks, Reversals, and the New Economics of Free Software

Posted on August 14, 2026 teliaz

Every few months, another beloved open source project announces a license change. The blog post is polished, the reasoning sounds

Continue readingThe Open Source License Wars: Forks, Reversals, and the New Economics of Free Software

Cat Links Software Engineering

SBOMs in Practice: Generating, Scanning, and Surviving Supply Chain Audits

Posted on August 11, 2026 teliaz

The software supply chain has become the soft underbelly of modern applications. While teams harden their APIs, patch their runtimes,

Continue readingSBOMs in Practice: Generating, Scanning, and Surviving Supply Chain Audits

Cat Links Software Engineering

Dynamic Secrets: Killing Long-Lived Credentials in Distributed Systems

Posted on August 6, 2026August 7, 2026 teliaz

Most security incidents in distributed systems don’t start with a zero-day exploit. They start with a leaked credential — a

Continue readingDynamic Secrets: Killing Long-Lived Credentials in Distributed Systems

Cat Links Software Engineering

Python 3.14 Template Strings: Safer String Composition with t-strings

Posted on August 5, 2026August 5, 2026 teliaz

F-strings arrived in Python 3.6 and quickly became the most beloved feature in the language. They’re fast, readable, and concise.

Continue readingPython 3.14 Template Strings: Safer String Composition with t-strings

Cat Links Software Engineering

Zero Trust Architecture in Microservices: Identity, mTLS, and Authorization Policies

Posted on August 2, 2026August 3, 2026 teliaz

The traditional security model for microservices relies on a perimeter: hard outer shell, soft trusted interior. Once a request passes

Continue readingZero Trust Architecture in Microservices: Identity, mTLS, and Authorization Policies

Cat Links Software Engineering

Container Image Scanning with Trivy: Catch Vulnerabilities Before They Ship

Posted on July 24, 2026 teliaz

Container images are your application’s most deployable artifact — and potentially its biggest attack surface. Every base image you inherit,

Continue readingContainer Image Scanning with Trivy: Catch Vulnerabilities Before They Ship

Posts navigation

Older posts
  • Home
  • About
Copyright © 2026 WorthPosting | Signify by WEN Themes
Scroll Up