Devops

Devops | News, how-tos, features, reviews, and videos

piggy bank finance gold

7 ways to reduce costs with agile and devops

If you're struggling to find cost savings in complex workflows, agile and devops practices offer ways to find the best opportunities in uncertain times.

Profile photo of a developer / programmer reviewing code on monitors in his workspace.

Grafana Labs’ Phlare, Faro to simplify profiling, app observability

Grafana Labs is adding two new products—Phlare and Faro—to its observability stack to optimize infrastructure profiling and application observability.

Digital bugs amid binary code. [security threats / malware / breach / hack / attack]

Azul detects Java vulnerabilities in production apps

Azul Vulnerability Detection promises to eliminate false positives without impacting performance, by drawing on monitoring and detection capabilities inside the Azul JVM.

road to future forward idea cloud road

The 7 Rs of cloud app modernization

How do you know when to simply relocate an app and when to rebuild from the ground up? Here are some tips on evaluating the technical side and the business case.

A network of connected virtual container blocks.

Most reported CVEs for Docker Hub images are harmless

JFrog used Xray Container Contextual Analysis to scan the 200 most popular community images in Docker Hub, then tallied the results for the 10 most common CVEs. 78% were not exploitable.

nw circular staircase loop infinity nautilus by tine ivanic via unsplash

How to choose a cloud CI/CD platform

Hosting CI/CD in the cloud can speed up interactions between development pipelines and source code repositories and make life easier for developers. There are a surprising number of options.

flashlight beam

Oracle makes Java discovery service free to all

Oracle’s Java Management Service can shine a light on which versions of Java you’re running, what apps are running on them, and which installs are outdated.

Multiple keys.

Public package repos expose thousands of API security tokens—and they’re active

JFrog’s new Xray Secrets Detection uncovered active access tokens in popular open-source software registries including Docker, npm, and PyPI. Here are our findings and takeaways.

cloud network blockchain bitcoin storage

VirtualBox 7 remotes into Oracle Cloud

Update to Oracle’s virtualization application adds remote control of cloud-hosted VMs and the ability to fully encrypt virtual machines.

software automation gears robotic code by mazimusnd getty and bill oxford via unsplash 2400x1600

How intelligent automation changes CI/CD

A new paradigm for continuous delivery is emerging that enables it to serve as the foundation for improving devops and increasing development productivity.

Giant padlock with blue sky on the background 179693980

Why developers hold the key to cloud security

Developer-first security is the future in the cloud. Because the responsibility for cloud security rests with developers and devops teams, not IT security.

broken key

How devops in the cloud breaks down

Devops is always good for application development productivity, right? Think again. If you're missing tools and talent, your cloud development can quickly go off the rails.

U.S. dollar sign consisting of abstract digits.

5 steps to lower Kubernetes costs

Granular visibility can help enterprises keep cloud costs in check. Follow these best practices when using monitoring methods to control Kubernetes-related spending.

data pipeline primary

5 best practices for securing CI/CD pipelines

Build in security from the beginning with continuous testing, automation, zero trust, and AIops.

card-catalog filing cabinet / data repository

What devops needs to know about data governance

Industry leaders agree that data governance belongs to everyone in IT. Managing the privacy, security, and reliability of data impacts all aspects of the business.

no 121228353

Devs don’t want to do ops

Developers are straining under the demands of ‘You build it, you run it,’ and operators are feeling more pressure too. Is it time for development and operations to be separated once again?

bucket with holes breach security vulnerability

Kubescape boosts Kubernetes scanning capabilities

End-to-end open source security platform for Kubernetes has added vulnerability scanning for code repositories and container image registries.

avoid detour side step trap hole in floor arrow by lucadp getty images

7 YAML gotchas to avoid—and how to avoid them

YAML is a human-readable configuration file format that is flexible and easy to understand, but fraught with unexpected pitfalls. Here’s how to dodge its most precarious issues.

network speed

Trying out the Azure Developer CLI

Microsoft’s new Azure developer tool streamlines development in the Azure cloud, from deploying dev environments to running CI/CD.

Binary chain links of data  >  Blockchain / blockchain security / linked elements

How we’ll solve software supply chain security

Security teams need a standard set of processes for locking down roots of trust for software artifacts, and developers need a clear path to balance open source selection against security policies. Open source has answers.

Load More