News

Attack matrix for Kubernetes

Attack matrix for Kubernetes

While Kubernetes has many advantages, it also brings new security challenges. Kubernetes, the most popular container orchestration system and one of the fastest-growing projects in the history of open source, becomes a significant part of many companies’ compute stack. The flexibility and scalability of containers encourage many developers to move their workloads to Kubernetes.

Read More
Controlling outbound traffic from Kubernetes

Controlling outbound traffic from Kubernetes

We recently finished a major networking project which let us control internal traffic in our platform. And we’ve been thinking about how we can add similar security to network traffic leaving our platform. At Monzo, the Security Team’s highest priority is to keep your money and data safe.

Read More
Moving from reCAPTCHA to hCaptcha

Moving from reCAPTCHA to hCaptcha

We recently migrated the CAPTCHA provider we use from Google’s reCAPTCHA to a service provided by the independent hCaptcha. Since this change potentially impacts all Cloudflare customers, we wanted to walk through the rationale in more detail. We recently migrated the CAPTCHA provider we use from Google’s reCAPTCHA to a service provided by the independent hCaptcha.

Read More
10 Breakthrough Technologies 2020

10 Breakthrough Technologies 2020

Here is our annual list of technological advances that we believe will make a real difference in solving important problems. How do we pick? We avoid the one-off tricks, the overhyped new gadgets.

Read More
How to Avoid Cascading Failures in Distributed Systems

How to Avoid Cascading Failures in Distributed Systems

Cascading failures are failures that involve some kind of feedback mechanism. In distributed software systems they generally involve a feedback loop where some event causes either a reduction in capacity, an increase in latency, or a spike of errors. Laura Nolan explores them using public accounts of real production incidents.

Read More
High Resolution Performance Telemetry at Scale

High Resolution Performance Telemetry at Scale

Brian Martin explores the issues of resolution in performance monitoring, covers sources of performance telemetry including hardware performance and eBPF, and talks about some tricks for getting high resolution telemetry without high costs.

Read More
CNCF Survey 2019

CNCF Survey 2019

Containers have become the norm, reaching 84% use in production this year, up from 23% in our first survey in 2016. Many new projects in serverless, service mesh, and storage are emerging as popular ways to manage or work in conjunction with containers. The use of cloud native projects in production continues to grow, with many projects reaching more than 50% use in production.

Read More
Running Online Services at Riot

Running Online Services at Riot

This article reflects on previous infrastructure solutions and describes a new deployment specification that enables us to collaborate with game shards operators around the world. What’s it like to be a part of Riot Tech?

Read More
Kubernetes Canary deployment with Linkerd & Flagger

Kubernetes Canary deployment with Linkerd & Flagger

In this article i’m going to introduce you to one useful technique for delivering automatically web application serenely : the Canary deployment method. Canary is a type of deployment method that reduce the risk of introducing a new software version in production by gradually shifting traffic to the new version while measuring metrics like Http request success rate and latency. It allows do to capacity testing of the new version in a production environment with a safe rollback strategy if issues are found.

Read More
Tags