Podcasts about Red Hat

American software company owned by IBM providing open-source software products to enterprises

  • 1,379PODCASTS
  • 4,454EPISODES
  • 41mAVG DURATION
  • 1DAILY NEW EPISODE
  • May 12, 2025LATEST
Red Hat

POPULARITY

20172018201920202021202220232024

Categories



Best podcasts about Red Hat

Show all podcasts related to red hat

Latest podcast episodes about Red Hat

EM360 Podcast
Can Open Source Ensure AI Works For Everyone, Not Just The Largest Enterprises?

EM360 Podcast

Play Episode Listen Later May 12, 2025 32:58


“Before starting a new AI project, it is really worthwhile defining the business priority first,” asserts Joanna Hodgson, the UK and Ireland regional leader at Red Hat.“What specific problem are you trying to solve with AI? Do we need a general purpose AI application or would a more focused model be better? How will we manage security, compliance and governance of that model? This process can help to reveal where AI adoption makes sense and where it doesn't," she added. In this episode of the Tech Transformed podcast, host Shubhangi Dua, podcast producer at EM360Tech speaks with Hodgson, a seasoned business and technical leader with over 25 years of experience at IBM and Red Hat. They talk about the challenges of scaling AI projects, the importance of open source in compliance with GDPR, and the geopolitical aspects of AI innovation. They also discuss the role of small language models (SLMs) in enterprise applications and the collaboration between IBM and Red Hat in advancing AI technology. Joanna emphasises the need for a strategic approach to AI and the importance of data quality for sustainable business practices. While large language models (LLMs) dominate headlines, SLMs offer a cost-effective and efficient alternative for specific tasks.The podcast answers key questions, like ‘how do businesses balance ethical considerations, moral obligations, and even patriotism with the drive for AI advancement?' Hodgson shares her perspective on how open source can facilitate this balance, ensuring AI works for everyone, not just those with the deepest pockets.Hodgson also provides her vision on the future of AI. It comprises interconnected small AI models, agentic AI, and a world where AI frees up teams to create personal connections and exceptional customer experiences.TakeawaysCuriosity is a strength in technology.AI is becoming embedded in existing applications.Regulatory compliance is crucial for AI systems.Open source can enhance trust and transparency.Small language models are efficient for specific tasks.AI should free teams to create personal connections.A strategic AI platform is essential for businesses.Data quality is key for sustainable business success.Collaboration in open source accelerates innovation.AI can be used for both good and bad outcomes.Chapters00:00 Introduction to the Tech Transform Podcast01:35 Pivotal Moments in Joanna's Career05:12 Challenges in Scaling AI Projects09:15 Open Source and GDPR Compliance13:11 Regulatory Compliance and Data Security17:30 Geopolitical Aspects of AI Innovation22:31 Collaboration Between IBM and Red Hat23:58 Understanding Small Language Models29:54 Future Trends in AI and SustainabilityAbout Red HatRed Hat is a leading provider of enterprise open source solutions, using a community-powered approach to deliver high-performing Linux, hybrid cloud, edge, and Kubernetes technologies. The company is known for Enterprise Linux.They offer a wide range of hybrid cloud platforms and open source...

Les Cast Codeurs Podcast
LCC 325 - Trier le hachis des concurrents

Les Cast Codeurs Podcast

Play Episode Listen Later May 9, 2025 109:42


Gros épisode qui couvre un large spectre de sujets : Java, Scala, Micronaut, NodeJS, l'IA et la compétence des développeurs, le sampling dans les LLMs, les DTO, le vibe coding, les changements chez Broadcom et Red Hat ainsi que plusieurs nouvelles sur les licences open source. Enregistré le 7 mai 2025 Téléchargement de l'épisode LesCastCodeurs-Episode-325.mp3 ou en vidéo sur YouTube. News Langages A l'occasion de JavaOne et du lancement de Java 24, Oracle lance un nouveau site avec des ressources vidéo pour apprendre le langage https://learn.java/ site plutôt à destination des débutants et des enseignants couvre la syntaxe aussi, y compris les ajouts plus récents comme les records ou le pattern matching c'est pas le site le plus trendy du monde. Martin Odersky partage un long article sur l'état de l'écosystème Scala et les évolutions du language https://www.scala-lang.org/blog/2025/03/24/evolving-scala.html Stabilité et besoin d'évolution : Scala maintient sa position (~14ème mondial) avec des bases techniques solides, mais doit évoluer face à la concurrence pour rester pertinent. Axes prioritaires : L'évolution se concentre sur l'amélioration du duo sécurité/convivialité, le polissage du langage (suppression des “rugosités”) et la simplification pour les débutants. Innovation continue : Geler les fonctionnalités est exclu ; l'innovation est clé pour la valeur de Scala. Le langage doit rester généraliste et ne pas se lier à un framework spécifique. Défis et progrès : L'outillage (IDE, outils de build comme sbt, scala-cli, Mill) et la facilité d'apprentissage de l'écosystème sont des points d'attention, avec des améliorations en cours (partenariat pédagogique, plateformes simples). Des strings encore plus rapides ! https://inside.java/2025/05/01/strings-just-got-faster/ Dans JDK 25, la performance de la fonction String::hashCode a été améliorée pour être principalement constant foldable. Cela signifie que si les chaînes de caractères sont utilisées comme clés dans une Map statique et immuable, des gains de performance significatifs sont probables. L'amélioration repose sur l'annotation interne @Stable appliquée au champ privé String.hash. Cette annotation permet à la machine virtuelle de lire la valeur du hash une seule fois et de la considérer comme constante si elle n'est pas la valeur par défaut (zéro). Par conséquent, l'opération String::hashCode peut être remplacée par la valeur de hash connue, optimisant ainsi les lookups dans les Map immuables. Un cas limite est celui où le code de hachage de la chaîne est zéro, auquel cas l'optimisation ne fonctionne pas (par exemple, pour la chaîne vide “”). Bien que l'annotation @Stable soit interne au JDK, un nouveau JEP (JEP 502: Stable Values (Preview)) est en cours de développement pour permettre aux utilisateurs de bénéficier indirectement de fonctionnalités similaires. AtomicHash, une implémentation Java d'une HashMap qui est thread-safe, atomique et non-bloquante https://github.com/arxila/atomichash implémenté sous forme de version immutable de Concurrent Hash Trie Librairies Sortie de Micronaut 4.8.0 https://micronaut.io/2025/04/01/micronaut-framework-4-8-0-released/ Mise à jour de la BOM (Bill of Materials) : La version 4.8.0 met à jour la BOM de la plateforme Micronaut. Améliorations de Micronaut Core : Intégration de Micronaut SourceGen pour la génération interne de métadonnées et d'expressions bytecode. Nombreuses améliorations dans Micronaut SourceGen. Ajout du traçage de l'injection de dépendances pour faciliter le débogage au démarrage et à la création des beans. Nouveau membre definitionType dans l'annotation @Client pour faciliter le partage d'interfaces entre client et serveur. Support de la fusion dans les Bean Mappers via l'annotation @Mapping. Nouvelle liveness probe détectant les threads bloqués (deadlocked) via ThreadMXBean. Intégration Kubernetes améliorée : Mise à jour du client Java Kubernetes vers la version 22.0.1. Ajout du module Micronaut Kubernetes Client OpenAPI, offrant une alternative au client officiel avec moins de dépendances, une configuration unifiée, le support des filtres et la compatibilité Native Image. Introduction d'un nouveau runtime serveur basé sur le serveur HTTP intégré de Java, permettant de créer des applications sans dépendances serveur externes. Ajout dans Micronaut Micrometer d'un module pour instrumenter les sources de données (traces et métriques). Ajout de la condition condition dans l'annotation @MetricOptions pour contrôler l'activation des métriques via une expression. Support des Consul watches dans Micronaut Discovery Client pour détecter les changements de configuration distribuée. Possibilité de générer du code source à partir d'un schéma JSON via les plugins de build (Gradle et Maven). Web Node v24.0.0 passe en version Current: https://nodejs.org/en/blog/release/v24.0.0 Mise à jour du moteur V8 vers la version 13.6 : intégration de nouvelles fonctionnalités JavaScript telles que Float16Array, la gestion explicite des ressources (using), RegExp.escape, WebAssembly Memory64 et Error.isError. npm 11 inclus : améliorations en termes de performance, de sécurité et de compatibilité avec les packages JavaScript modernes. Changement de compilateur pour Windows : abandon de MSVC au profit de ClangCL pour la compilation de Node.js sur Windows. AsyncLocalStorage utilise désormais AsyncContextFrame par défaut : offrant une gestion plus efficace du contexte asynchrone. URLPattern disponible globalement : plus besoin d'importer explicitement cette API pour effectuer des correspondances d'URL. Améliorations du modèle de permissions : le flag expérimental --experimental-permission devient --permission, signalant une stabilité accrue de cette fonctionnalité. Améliorations du test runner : les sous-tests sont désormais attendus automatiquement, simplifiant l'écriture des tests et réduisant les erreurs liées aux promesses non gérées. Intégration d'Undici 7 : amélioration des capacités du client HTTP avec de meilleures performances et un support étendu des fonctionnalités HTTP modernes. Dépréciations et suppressions : Dépréciation de url.parse() au profit de l'API WHATWG URL. Suppression de tls.createSecurePair. Dépréciation de SlowBuffer. Dépréciation de l'instanciation de REPL sans new. Dépréciation de l'utilisation des classes Zlib sans new. Dépréciation du passage de args à spawn et execFile dans child_process. Node.js 24 est actuellement la version “Current” et deviendra une version LTS en octobre 2025. Il est recommandé de tester cette version pour évaluer son impact sur vos applications. Data et Intelligence Artificielle Apprendre à coder reste crucial et l'IA est là pour venir en aide : https://kyrylo.org/software/2025/03/27/learn-to-code-ignore-ai-then-use-ai-to-code-even-better.html Apprendre à coder reste essentiel malgré l'IA. L'IA peut assister la programmation. Une solide base est cruciale pour comprendre et contrôler le code. Cela permet d'éviter la dépendance à l'IA. Cela réduit le risque de remplacement par des outils d'IA accessibles à tous. L'IA est un outil, pas un substitut à la maîtrise des fondamentaux. Super article de Anthropic qui essaie de comprendre comment fonctionne la “pensée” des LLMs https://www.anthropic.com/research/tracing-thoughts-language-model Effet boîte noire : Stratégies internes des IA (Claude) opaques aux développeurs et utilisateurs. Objectif : Comprendre le “raisonnement” interne pour vérifier capacités et intentions. Méthode : Inspiration neurosciences, développement d'un “microscope IA” (regarder quels circuits neuronaux s'activent). Technique : Identification de concepts (“features”) et de “circuits” internes. Multilinguisme : Indice d'un “langage de pensée” conceptuel commun à toutes les langues avant de traduire dans une langue particulière. Planification : Capacité à anticiper (ex: rimes en poésie), pas seulement de la génération mot par mot (token par token). Raisonnement non fidèle : Peut fabriquer des arguments plausibles (“bullshitting”) pour une conclusion donnée. Logique multi-étapes : Combine des faits distincts, ne se contente pas de mémoriser. Hallucinations : Refus par défaut ; réponse si “connaissance” active, sinon risque d'hallucination si erreur. “Jailbreaks” : Tension entre cohérence grammaticale (pousse à continuer) et sécurité (devrait refuser). Bilan : Méthodes limitées mais prometteuses pour la transparence et la fiabilité de l'IA. Le “S” dans MCP veut dire Securité (ou pas !) https://elenacross7.medium.com/%EF%B8%8F-the-s-in-mcp-stands-for-security-91407b33ed6b La spécification MCP pour permettre aux LLMs d'avoir accès à divers outils et fonctions a peut-être été adoptée un peu rapidement, alors qu'elle n'était pas encore prête niveau sécurité L'article liste 4 types d'attaques possibles : vulnérabilité d'injection de commandes attaque d'empoisonnement d'outils redéfinition silencieuse de l'outil le shadowing d'outils inter-serveurs Pour l'instant, MCP n'est pas sécurisé : Pas de standard d'authentification Pas de chiffrement de contexte Pas de vérification d'intégrité des outils Basé sur l'article de InvariantLabs https://invariantlabs.ai/blog/mcp-security-notification-tool-poisoning-attacks Sortie Infinispan 15.2 - pre rolling upgrades 16.0 https://infinispan.org/blog/2025/03/27/infinispan-15-2 Support de Redis JSON + scripts Lua Métriques JVM désactivables Nouvelle console (PatternFly 6) Docs améliorées (métriques + logs) JDK 17 min, support JDK 24 Fin du serveur natif (performances) Guillaume montre comment développer un serveur MCP HTTP Server Sent Events avec l'implémentation de référence Java et LangChain4j https://glaforge.dev/posts/2025/04/04/mcp-client-and-server-with-java-mcp-sdk-and-langchain4j/ Développé en Java, avec l'implémentation de référence qui est aussi à la base de l'implémentation dans Spring Boot (mais indépendant de Spring) Le serveur MCP est exposé sous forme de servlet dans Jetty Le client MCP lui, est développé avec le module MCP de LangChain4j c'est semi independant de Spring dans le sens où c'est dépendant de Reactor et de ses interface. il y a une conversation sur le github d'anthropic pour trouver une solution, mais cela ne parait pas simple. Les fallacies derrière la citation “AI won't replace you, but humans using AI will” https://platforms.substack.com/cp/161356485 La fallacie de l'automatisation vs. l'augmentation : Elle se concentre sur l'amélioration des tâches existantes avec l'IA au lieu de considérer le changement de la valeur de ces tâches dans un nouveau système. La fallacie des gains de productivité : L'augmentation de la productivité ne se traduit pas toujours par plus de valeur pour les travailleurs, car la valeur créée peut être capturée ailleurs dans le système. La fallacie des emplois statiques : Les emplois sont des constructions organisationnelles qui peuvent être redéfinies par l'IA, rendant les rôles traditionnels obsolètes. La fallacie de la compétition “moi vs. quelqu'un utilisant l'IA” : La concurrence évolue lorsque l'IA modifie les contraintes fondamentales d'un secteur, rendant les compétences existantes moins pertinentes. La fallacie de la continuité du flux de travail : L'IA peut entraîner une réimagination complète des flux de travail, éliminant le besoin de certaines compétences. La fallacie des outils neutres : Les outils d'IA ne sont pas neutres et peuvent redistribuer le pouvoir organisationnel en changeant la façon dont les décisions sont prises et exécutées. La fallacie du salaire stable : Le maintien d'un emploi ne garantit pas un salaire stable, car la valeur du travail peut diminuer avec l'augmentation des capacités de l'IA. La fallacie de l'entreprise stable : L'intégration de l'IA nécessite une restructuration de l'entreprise et ne se fait pas dans un vide organisationnel. Comprendre le “sampling” dans les LLMs https://rentry.co/samplers Explique pourquoi les LLMs utilisent des tokens Les différentes méthodes de “sampling” : càd de choix de tokens Les hyperparamètres comme la température, top-p, et leur influence réciproque Les algorithmes de tokenisation comme Byte Pair Encoding et SentencePiece. Un de moins … OpenAI va racheter Windsurf pour 3 milliards de dollars. https://www.bloomberg.com/news/articles/2025-05-06/openai-reaches-agreement-to-buy-startup-windsurf-for-3-billion l'accord n'est pas encore finalisé Windsurf était valorisé à 1,25 milliards l'an dernier et OpenAI a levé 40 milliards dernièrement portant sa valeur à 300 milliards Le but pour OpenAI est de rentrer dans le monde des assistants de code pour lesquels ils sont aujourd'hui absent Docker desktop se met à l'IA… ? Une nouvelle fonctionnalité dans docker desktop 4.4 sur macos: Docker Model Runner https://dev.to/docker/run-genai-models-locally-with-docker-model-runner-5elb Permet de faire tourner des modèles nativement en local ( https://docs.docker.com/model-runner/ ) mais aussi des serveurs MCP ( https://docs.docker.com/ai/mcp-catalog-and-toolkit/ ) Outillage Jetbrains défend la suppression des commentaires négatifs sur son assistant IA https://devclass.com/2025/04/30/jetbrains-defends-removal-of-negative-reviews-for-unpopular-ai-assistant/?td=rt-3a L'IA Assistant de JetBrains, lancée en juillet 2023, a été téléchargée plus de 22 millions de fois mais n'est notée que 2,3 sur 5. Des utilisateurs ont remarqué que certaines critiques négatives étaient supprimées, ce qui a provoqué une réaction négative sur les réseaux sociaux. Un employé de JetBrains a expliqué que les critiques ont été supprimées soit parce qu'elles mentionnaient des problèmes déjà résolus, soit parce qu'elles violaient leur politique concernant les “grossièretés, etc.” L'entreprise a reconnu qu'elle aurait pu mieux gérer la situation, un représentant déclarant : “Supprimer plusieurs critiques d'un coup sans préavis semblait suspect. Nous aurions dû au moins publier un avis et fournir plus de détails aux auteurs.” Parmi les problèmes de l'IA Assistant signalés par les utilisateurs figurent : un support limité pour les fournisseurs de modèles tiers, une latence notable, des ralentissements fréquents, des fonctionnalités principales verrouillées aux services cloud de JetBrains, une expérience utilisateur incohérente et une documentation insuffisante. Une plainte courante est que l'IA Assistant s'installe sans permission. Un utilisateur sur Reddit l'a qualifié de “plugin agaçant qui s'auto-répare/se réinstalle comme un phénix”. JetBrains a récemment introduit un niveau gratuit et un nouvel agent IA appelé Junie, destiné à fonctionner parallèlement à l'IA Assistant, probablement en réponse à la concurrence entre fournisseurs. Mais il est plus char a faire tourner. La société s'est engagée à explorer de nouvelles approches pour traiter les mises à jour majeures différemment et envisage d'implémenter des critiques par version ou de marquer les critiques comme “Résolues” avec des liens vers les problèmes correspondants au lieu de les supprimer. Contrairement à des concurrents comme Microsoft, AWS ou Google, JetBrains commercialise uniquement des outils et services de développement et ne dispose pas d'une activité cloud distincte sur laquelle s'appuyer. Vos images de README et fichiers Markdown compatibles pour le dark mode de GitHub: https://github.blog/developer-skills/github/how-to-make-your-images-in-markdown-on-github-adjust-for-dark-mode-and-light-mode/ Seulement quelques lignes de pure HTML pour le faire Architecture Alors, les DTOs, c'est bien ou c'est pas bien ? https://codeopinion.com/dtos-mapping-the-good-the-bad-and-the-excessive/ Utilité des DTOs : Les DTOs servent à transférer des données entre les différentes couches d'une application, en mappant souvent les données entre différentes représentations (par exemple, entre la base de données et l'interface utilisateur). Surutilisation fréquente : L'article souligne que les DTOs sont souvent utilisés de manière excessive, notamment pour créer des API HTTP qui ne font que refléter les entités de la base de données, manquant ainsi l'opportunité de composer des données plus riches. Vraie valeur : La valeur réelle des DTOs réside dans la gestion du couplage entre les couches et la composition de données provenant de sources multiples en formes optimisées pour des cas d'utilisation spécifiques. Découplage : Il est suggéré d'utiliser les DTOs pour découpler les modèles de données internes des contrats externes (comme les API), ce qui permet une évolution et une gestion des versions indépendantes. Exemple avec CQRS : Dans le cadre de CQRS (Command Query Responsibility Segregation), les réponses aux requêtes (queries) agissent comme des DTOs spécifiquement adaptés aux besoins de l'interface utilisateur, pouvant inclure des données de diverses sources. Protection des données internes : Les DTOs aident à distinguer et protéger les modèles de données internes (privés) des changements externes (publics). Éviter l'excès : L'auteur met en garde contre les couches de mapping excessives (mapper un DTO vers un autre DTO) qui n'apportent pas de valeur ajoutée. Création ciblée : Il est conseillé de ne créer des DTOs que lorsqu'ils résolvent des problèmes concrets, tels que la gestion du couplage ou la facilitation de la composition de données. Méthodologies Même Guillaume se met au “vibe coding” https://glaforge.dev/posts/2025/05/02/vibe-coding-an-mcp-server-with-micronaut-and-gemini/ Selon Andrey Karpathy, c'est le fait de POC-er un proto, une appli jetable du weekend https://x.com/karpathy/status/1886192184808149383 Mais Simon Willison s'insurge que certains confondent coder avec l'assistance de l'IA avec le vibe coding https://simonwillison.net/2025/May/1/not-vibe-coding/ Guillaume c'est ici amusé à développer un serveur MCP avec Micronaut, en utilisant Gemini, l'IA de Google. Contrairement à Quarkus ou Spring Boot, Micronaut n'a pas encore de module ou de support spécifique pour faciliter la création de serveur MCP Sécurité Une faille de sécurité 10/10 sur Tomcat https://www.it-connect.fr/apache-tomcat-cette-faille-activement-exploitee-seulement-30-heures-apres-sa-divulgation-patchez/ Une faille de sécurité critique (CVE-2025-24813) affecte Apache Tomcat, permettant l'exécution de code à distance Cette vulnérabilité est activement exploitée seulement 30 heures après sa divulgation du 10 mars 2025 L'attaque ne nécessite aucune authentification et est particulièrement simple à exécuter Elle utilise une requête PUT avec une charge utile Java sérialisée encodée en base64, suivie d'une requête GET L'encodage en base64 permet de contourner la plupart des filtres de sécurité Les serveurs vulnérables utilisent un stockage de session basé sur des fichiers (configuration répandue) Les versions affectées sont : 11.0.0-M1 à 11.0.2, 10.1.0-M1 à 10.1.34, et 9.0.0.M1 à 9.0.98 Les mises à jour recommandées sont : 11.0.3+, 10.1.35+ et 9.0.99+ Les experts prévoient des attaques plus sophistiquées dans les prochaines phases d'exploitation (upload de config ou jsp) Sécurisation d'un serveur ssh https://ittavern.com/ssh-server-hardening/ un article qui liste les configurations clés pour sécuriser un serveur SSH par exemple, enlever password authentigfication, changer de port, desactiver le login root, forcer le protocol ssh 2, certains que je ne connaissais pas comme MaxStartups qui limite le nombre de connections non authentifiées concurrentes Port knocking est une technique utile mais demande une approche cliente consciente du protocol Oracle admet que les identités IAM de ses clients ont leaké https://www.theregister.com/2025/04/08/oracle_cloud_compromised/ Oracle a confirmé à certains clients que son cloud public a été compromis, alors que l'entreprise avait précédemment nié toute intrusion. Un pirate informatique a revendiqué avoir piraté deux serveurs d'authentification d'Oracle et volé environ six millions d'enregistrements, incluant des clés de sécurité privées, des identifiants chiffrés et des entrées LDAP. La faille exploitée serait la vulnérabilité CVE-2021-35587 dans Oracle Access Manager, qu'Oracle n'avait pas corrigée sur ses propres systèmes. Le pirate a créé un fichier texte début mars sur login.us2.oraclecloud.com contenant son adresse email pour prouver son accès. Selon Oracle, un ancien serveur contenant des données vieilles de huit ans aurait été compromis, mais un client affirme que des données de connexion aussi récentes que 2024 ont été dérobées. Oracle fait face à un procès au Texas concernant cette violation de données. Cette intrusion est distincte d'une autre attaque contre Oracle Health, sur laquelle l'entreprise refuse de commenter. Oracle pourrait faire face à des sanctions sous le RGPD européen qui exige la notification des parties affectées dans les 72 heures suivant la découverte d'une fuite de données. Le comportement d'Oracle consistant à nier puis à admettre discrètement l'intrusion est inhabituel en 2025 et pourrait mener à d'autres actions en justice collectives. Une GitHub action très populaire compromise https://www.stepsecurity.io/blog/harden-runner-detection-tj-actions-changed-files-action-is-compromised Compromission de l'action tj-actions/changed-files : En mars 2025, une action GitHub très utilisée (tj-actions/changed-files) a été compromise. Des versions modifiées de l'action ont exposé des secrets CI/CD dans les logs de build. Méthode d'attaque : Un PAT compromis a permis de rediriger plusieurs tags de version vers un commit contenant du code malveillant. Détails du code malveillant : Le code injecté exécutait une fonction Node.js encodée en base64, qui téléchargeait un script Python. Ce script parcourait la mémoire du runner GitHub à la recherche de secrets (tokens, clés…) et les exposait dans les logs. Dans certains cas, les données étaient aussi envoyées via une requête réseau. Période d'exposition : Les versions compromises étaient actives entre le 12 et le 15 mars 2025. Tout dépôt, particulièrement ceux publiques, ayant utilisé l'action pendant cette période doit être considéré comme potentiellement exposé. Détection : L'activité malveillante a été repérée par l'analyse des comportements inhabituels pendant l'exécution des workflows, comme des connexions réseau inattendues. Réaction : GitHub a supprimé l'action compromise, qui a ensuite été nettoyée. Impact potentiel : Tous les secrets apparaissant dans les logs doivent être considérés comme compromis, même dans les dépôts privés, et régénérés sans délai. Loi, société et organisation Les startup the YCombinateur ont les plus fortes croissances de leur histoire https://www.cnbc.com/2025/03/15/y-combinator-startups-are-fastest-growing-in-fund-history-because-of-ai.html Les entreprises en phase de démarrage à Silicon Valley connaissent une croissance significative grâce à l'intelligence artificielle. Le PDG de Y Combinator, Garry Tan, affirme que l'ensemble des startups de la dernière cohorte a connu une croissance hebdomadaire de 10% pendant neuf mois. L'IA permet aux développeurs d'automatiser des tâches répétitives et de générer du code grâce aux grands modèles de langage. Pour environ 25% des startups actuelles de YC, 95% de leur code a été écrit par l'IA. Cette révolution permet aux entreprises de se développer avec moins de personnel - certaines atteignant 10 millions de dollars de revenus avec moins de 10 employés. La mentalité de “croissance à tout prix” a été remplacée par un renouveau d'intérêt pour la rentabilité. Environ 80% des entreprises présentées lors du “demo day” étaient centrées sur l'IA, avec quelques startups en robotique et semi-conducteurs. Y Combinator investit 500 000 dollars dans les startups en échange d'une participation au capital, suivi d'un programme de trois mois. Red Hat middleware (ex-jboss) rejoint IBM https://markclittle.blogspot.com/2025/03/red-hat-middleware-moving-to-ibm.html Les activités Middleware de Red Hat (incluant JBoss, Quarkus, etc.) vont être transférées vers IBM, dans l'unité dédiée à la sécurité des données, à l'IAM et aux runtimes. Ce changement découle d'une décision stratégique de Red Hat de se concentrer davantage sur le cloud hybride et l'intelligence artificielle. Mark Little explique que ce transfert était devenu inévitable, Red Hat ayant réduit ses investissements dans le Middleware ces dernières années. L'intégration vise à renforcer l'innovation autour de Java en réunissant les efforts de Red Hat et IBM sur ce sujet. Les produits Middleware resteront open source et les clients continueront à bénéficier du support habituel sans changement. Mark Little affirme que des projets comme Quarkus continueront à être soutenus et que cette évolution est bénéfique pour la communauté Java. Un an de commonhaus https://www.commonhaus.org/activity/253.html un an, démarré sur les communautés qu'ils connaissaient bien maintenant 14 projets et put en accepter plus confiance, gouvernance legère et proteger le futur des projets automatisation de l'administratif, stabiilité sans complexité, les developpeurs au centre du processus de décision ils ont besoins de members et supporters (financiers) ils veulent accueillir des projets au delà de ceux du cercles des Java Champions Spring Cloud Data Flow devient un produit commercial et ne sera plus maintenu en open source https://spring.io/blog/2025/04/21/spring-cloud-data-flow-commercial Peut-être sous l'influence de Broadcom, Spring se met à mettre en mode propriétaire des composants du portefeuille Spring ils disent que peu de gens l'utilisaent en mode OSS et la majorité venait d'un usage dans la plateforme Tanzu Maintenir en open source le coutent du temps qu'ils son't pas sur ces projets. La CNCF protège le projet NATS, dans la fondation depuis 2018, vu que la société Synadia qui y contribue souhaitait reprendre le contrôle du projet https://www.cncf.io/blog/2025/04/24/protecting-nats-and-the-integrity-of-open-source-cncfs-commitment-to-the-community/ CNCF : Protège projets OS, gouvernance neutre. Synadia vs CNCF : Veut retirer NATS, licence non-OS (BUSL). CNCF : Accuse Synadia de “claw back” (reprise illégitime). Revendications Synadia : Domaine nats.io, orga GitHub. Marque NATS : Synadia n'a pas transféré (promesse rompue malgré aide CNCF). Contestation Synadia : Juge règles CNCF “trop vagues”. Vote interne : Mainteneurs Synadia votent sortie CNCF (sans communauté). Support CNCF : Investissement majeur ($ audits, légal), succès communautaire (>700 orgs). Avenir NATS (CNCF) : Maintien sous Apache 2.0, gouvernance ouverte. Actions CNCF : Health check, appel mainteneurs, annulation marque Synadia, rejet demandes. Mais finalement il semble y avoir un bon dénouement : https://www.cncf.io/announcements/2025/05/01/cncf-and-synadia-align-on-securing-the-future-of-the-nats-io-project/ Accord pour l'avenir de NATS.io : La Cloud Native Computing Foundation (CNCF) et Synadia ont conclu un accord pour sécuriser le futur du projet NATS.io. Transfert des marques NATS : Synadia va céder ses deux enregistrements de marque NATS à la Linux Foundation afin de renforcer la gouvernance ouverte du projet. Maintien au sein de la CNCF : L'infrastructure et les actifs du projet NATS resteront sous l'égide de la CNCF, garantissant ainsi sa stabilité à long terme et son développement en open source sous licence Apache-2.0. Reconnaissance et engagement : La Linux Foundation, par la voix de Todd Moore, reconnaît les contributions de Synadia et son soutien continu. Derek Collison, PDG de Synadia, réaffirme l'engagement de son entreprise envers NATS et la collaboration avec la Linux Foundation et la CNCF. Adoption et soutien communautaire : NATS est largement adopté et considéré comme une infrastructure critique. Il bénéficie d'un fort soutien de la communauté pour sa nature open source et l'implication continue de Synadia. Finalement, Redis revient vers une licence open source OSI, avec la AGPL https://foojay.io/today/redis-is-now-available-under-the-agplv3-open-source-license/ Redis passe à la licence open source AGPLv3 pour contrer l'exploitation par les fournisseurs cloud sans contribution. Le passage précédent à la licence SSPL avait nui à la relation avec la communauté open source. Salvatore Sanfilippo (antirez) est revenu chez Redis. Redis 8 adopte la licence AGPL, intègre les fonctionnalités de Redis Stack (JSON, Time Series, etc.) et introduit les “vector sets” (le support de calcul vectoriel développé par Salvatore). Ces changements visent à renforcer Redis en tant que plateforme appréciée des développeurs, conformément à la vision initiale de Salvatore. Conférences La liste des conférences provenant de Developers Conferences Agenda/List par Aurélie Vache et contributeurs : 6-7 mai 2025 : GOSIM AI Paris - Paris (France) 7-9 mai 2025 : Devoxx UK - London (UK) 15 mai 2025 : Cloud Toulouse - Toulouse (France) 16 mai 2025 : AFUP Day 2025 Lille - Lille (France) 16 mai 2025 : AFUP Day 2025 Lyon - Lyon (France) 16 mai 2025 : AFUP Day 2025 Poitiers - Poitiers (France) 22-23 mai 2025 : Flupa UX Days 2025 - Paris (France) 24 mai 2025 : Polycloud - Montpellier (France) 24 mai 2025 : NG Baguette Conf 2025 - Nantes (France) 3 juin 2025 : TechReady - Nantes (France) 5-6 juin 2025 : AlpesCraft - Grenoble (France) 5-6 juin 2025 : Devquest 2025 - Niort (France) 10-11 juin 2025 : Modern Workplace Conference Paris 2025 - Paris (France) 11-13 juin 2025 : Devoxx Poland - Krakow (Poland) 12 juin 2025 : Positive Design Days - Strasbourg (France) 12-13 juin 2025 : Agile Tour Toulouse - Toulouse (France) 12-13 juin 2025 : DevLille - Lille (France) 13 juin 2025 : Tech F'Est 2025 - Nancy (France) 17 juin 2025 : Mobilis In Mobile - Nantes (France) 19-21 juin 2025 : Drupal Barcamp Perpignan 2025 - Perpignan (France) 24 juin 2025 : WAX 2025 - Aix-en-Provence (France) 25-26 juin 2025 : Agi'Lille 2025 - Lille (France) 25-27 juin 2025 : BreizhCamp 2025 - Rennes (France) 26-27 juin 2025 : Sunny Tech - Montpellier (France) 1-4 juillet 2025 : Open edX Conference - 2025 - Palaiseau (France) 7-9 juillet 2025 : Riviera DEV 2025 - Sophia Antipolis (France) 5 septembre 2025 : JUG Summer Camp 2025 - La Rochelle (France) 12 septembre 2025 : Agile Pays Basque 2025 - Bidart (France) 18-19 septembre 2025 : API Platform Conference - Lille (France) & Online 23 septembre 2025 : OWASP AppSec France 2025 - Paris (France) 25-26 septembre 2025 : Paris Web 2025 - Paris (France) 2-3 octobre 2025 : Volcamp - Clermont-Ferrand (France) 3 octobre 2025 : DevFest Perros-Guirec 2025 - Perros-Guirec (France) 6-10 octobre 2025 : Devoxx Belgium - Antwerp (Belgium) 7 octobre 2025 : BSides Mulhouse - Mulhouse (France) 9-10 octobre 2025 : Forum PHP 2025 - Marne-la-Vallée (France) 9-10 octobre 2025 : EuroRust 2025 - Paris (France) 16 octobre 2025 : PlatformCon25 Live Day Paris - Paris (France) 16-17 octobre 2025 : DevFest Nantes - Nantes (France) 30-31 octobre 2025 : Agile Tour Bordeaux 2025 - Bordeaux (France) 30-31 octobre 2025 : Agile Tour Nantais 2025 - Nantes (France) 30 octobre 2025-2 novembre 2025 : PyConFR 2025 - Lyon (France) 4-7 novembre 2025 : NewCrafts 2025 - Paris (France) 6 novembre 2025 : dotAI 2025 - Paris (France) 7 novembre 2025 : BDX I/O - Bordeaux (France) 12-14 novembre 2025 : Devoxx Morocco - Marrakech (Morocco) 13 novembre 2025 : DevFest Toulouse - Toulouse (France) 15-16 novembre 2025 : Capitole du Libre - Toulouse (France) 20 novembre 2025 : OVHcloud Summit - Paris (France) 21 novembre 2025 : DevFest Paris 2025 - Paris (France) 27 novembre 2025 : Devfest Strasbourg 2025 - Strasbourg (France) 28 novembre 2025 : DevFest Lyon - Lyon (France) 5 décembre 2025 : DevFest Dijon 2025 - Dijon (France) 10-11 décembre 2025 : Devops REX - Paris (France) 10-11 décembre 2025 : Open Source Experience - Paris (France) 28-31 janvier 2026 : SnowCamp 2026 - Grenoble (France) 2-6 février 2026 : Web Days Convention - Aix-en-Provence (France) 23-25 avril 2026 : Devoxx Greece - Athens (Greece) 17 juin 2026 : Devoxx Poland - Krakow (Poland) Nous contacter Pour réagir à cet épisode, venez discuter sur le groupe Google https://groups.google.com/group/lescastcodeurs Contactez-nous via X/twitter https://twitter.com/lescastcodeurs ou Bluesky https://bsky.app/profile/lescastcodeurs.com Faire un crowdcast ou une crowdquestion Soutenez Les Cast Codeurs sur Patreon https://www.patreon.com/LesCastCodeurs Tous les épisodes et toutes les infos sur https://lescastcodeurs.com/

Vida Digital
Cómo elegir tu modelo de lenguaje de inteligencia artificial

Vida Digital

Play Episode Listen Later May 6, 2025 25:13


Si en el ámbito empresarial se hablaba todo el tiempo de los modelos de lenguaje grandes (Large Language Model o LLM), ahora está surgiendo una tendenciacontraria: avanzar con los modelos de lenguaje pequeños, también llamados Small Language Models (SLM). ¿Por qué? Los motivos son contundentes: menores costos,menos alucinaciones y más precisión.   En este episodio analizamos a fondo las particularidades de ambos modelos para entender cuándo conviene usar uno u otro. Además, comentamos:A qué se debe esta contra tendenciaLLM y SLM: ¿compiten o se complementan?Cuando elegir uno u otroParticularidades de los SLMEl rol del open sourceHost: Débora SlotniskyInvitados:Thiago Araki, director senior de Tecnología yGTM para América Latina en Red Hat Victoria Martínez, gerente de Desarrollo deNegocios en Analítica Avanzada/IA para América Latina en Red Hat.

Dealcasters
How a $6 Hat Built a Six-Figure Brand: Larry Roberts' Accidental Success Story

Dealcasters

Play Episode Listen Later May 5, 2025 60:58


What do red hats, artificial intelligence, and podcasting have in common? Larry Roberts, that's what! We do our best to tap into the brilliant (and slightly eccentric) mind of Larry Roberts, the founder of Red Hat Media and the king of AI-assisted content creation. Larry comes clean on his latest book, Under the Red Hat—written faster than you can decide on a Netflix show—and reveals how AI is reshaping podcasting faster than your grandma figuring out TikTok. If you've ever wondered how to blend brains, branding, and a dash of tech wizardry, buckle up. This is going to be a wild ride!Grab “Under The Red Hat” by Larry Roberts (Amazon): https://geni.us/UnderTheRedHat

Defense Unicorns, A Podcast
Shipping Software Faster and Safer with Pepr

Defense Unicorns, A Podcast

Play Episode Listen Later May 5, 2025 45:07


On this episode of The Defense Unicorns Podcast, host Rebecca Lively chats with Case Wylie, Software Engineering Lead, about building security-minded software that keeps up with developer velocity. From his early days at Red Hat to architecting open-source tools at Defense Unicorns, Case shares how Pepr—a TypeScript-based operator framework—is redefining how Kubernetes clusters are secured and managed in airgapped environments. It's not just about enforcing policy; it's about enabling developers to move faster, safer, and smarter.Through real-world metaphors (ever been to a nightclub with strict bouncers?), Case breaks down the roles of admission controllers, operator frameworks, and how Pepr works seamlessly with GitOps without adding friction. He explains why Pepr isn't just a tool, but part of a broader movement to standardize security postures, reduce configuration drift, and empower app teams to focus on delivering real value. With a human-first API and open-source DNA, Pepr is built to be accessible to all, not just Kubernetes power users.If you're curious about what it takes to scale secure software in complex, mission-critical environments—or just want a fresh, practical take on DevSecOps—this episode delivers. Case also shares his philosophy on open-source collaboration and what it means to build tools that truly stand the test of scale and scrutiny.Key Quote:“Pepr will always be open source and the reason why it's open source is because frankly, open source software, when your software is open source, you expose the application or the software or the platform, whatever it is to exponentially more eyes and more eyes over time and then more people start adopting it and using it and saying like, ‘Hey, you know what? I do have this simple thing I always have to do in my cluster. Maybe I try Pepr for that.' Right? And then they do it with a simple task, and then they say, ‘Hey, you know what? It would be great if Pepr could do this thing. And they put in a feature request. Then we develop that feature request, or they develop it, and they submit a PR to Pepr. And now Pepr as a whole is better because now you're using it. I'm using it. They're using it. The more people that use it, the better.”Case WylieTime Stamps:(02:44) Introduction to UDS and Pepr(05:59) The Importance of Air-Gapped Environments(11:40) Understanding Kubernetes Admission Control(16:05) Comparing Pepr with Other Tools(22:00) Why Pepr Uses TypeScript(34:03) The Benefits of Open Source for Pepr(43:31) Lightning RoundLinks:Connect with Casey WylieConnect with Rebecca LivelyLearn More About Defense Unicorns

Estadão Notícias
Tecnologia #375: #Start Eldorado: planejar e experimentar, o sucesso para a IA

Estadão Notícias

Play Episode Listen Later May 3, 2025 24:16


Na adoção de sistemas de Inteligência Artificial para uma ou mais áreas do negócio, as empresas devem começar cada um dos projetos de maneira estruturada e bem planejada. Pensando mais pequeno, se for o caso - e depois, baseadas nos dados, irem escalando o uso da IA de forma mais assertiva, evitando cair no hype de investir recursos e tempo em uma tecnologia tão inovadora sem muito planejamento, apenas para surfar a onda do momento. Para falar desse tema e das iniciativas para democratizar a IA a grandes, médios e pequenos negócios, por meio do processamento em CPUs, mais baratas e energeticamente mais eficientes do que os grandes sistemas baseados em GPUs, tecnologia que vem ganhando espaço no mercado, e o casamento entre a Inteligência Artificial com o desenvolvimento no padrão Open Source (Código Aberto), que incentiva a colaboração e a integração de ecossistemas com diferentes parceiros, o Start Eldorado recebe Sandra Vaz, country manager da Red Hat para o Brasil, que conversou sobre estes e mais temas com o apresentador Daniel Gonzales. O programa vai ao ar todas as quartas-feiras, às 21h, em FM 107,3 para toda a Grande São Paulo, site, app, canais digitais e assistentes de voz.See omnystudio.com/listener for privacy information.

Canary Cry News Talk
TIME TRAVELING HACKERS | Red Hat Faith Revival Op, Future Politics, Nephilim Programming | 837

Canary Cry News Talk

Play Episode Listen Later May 1, 2025 154:37


BestPodcastintheMetaverse.com Canary Cry News Talk #837 - 04.30.2025 - Recorded Live to 1s and 0s TIME TRAVELING HACKERS | Red Hat Faith Revival Op, Future Politics, Nephilim Programming Deconstructing World Events from a Biblical Worldview Declaring Jesus as Lord amidst the Fifth Generation War! CageRattlerCoffee.com SD/TC email Ike for discount   Join the Canary Cry Roundtable This Episode was Produced By:   Executive Producers Sir LX Protocol V2 Baron of the Berrean Protocol*** Arnie W*** Jill B*** Sarah P*** Sir Tristan Knight of Garden*** Jason***   Producers of TREASURE (CanaryCry.Support) American Hobo, Aaron B, Sir Marty K Knight of the Wrong Timeline, Cage Rattler Coffee, Mrs TinfoilHatMan, Anonymous, Veronica D, Sir Scott Knight of Truth, Sir Casey the Shield Knight   Producers of TALENT Arnie W   Producers of TIME Timestampers: Jade Bouncerson, Morgan E Clippy Team: Courtney S, JOLMS, Kristen Reminders: Clankoniphius Links: JAM   SHOW NOTES/TIMESTAMPS HELLO WORLD EFNO   CYBERPANDEMIC FBI warns of time-traveling hackers (MSN/Fox)   EXECS   PSYOPS Niel Degrass Tyson Red Hat (X) Red Hat poll in comments(X) Red Hat Poll from Tyson   BIBLICAL Why is Gen Z finding Religion (VOX) Why Christianity is taking an Asian turn (The Economist)   PRODUCERS   TRANSHUMAN → Forbes deleted article about Zoltan (Forbes) → Screenshot of article headline (X) Zoltan Istvan announces CA Gubernatorial bid on X (X)  World Renowned Futurist, AI Expert Zoltan Istvan Running for CA Gov as Dem (ABC News)   AI/BEING WATCHED Researchers Secretly Ran Massive, Unauthorized AI Persuasion Experiment on Reddit Users (404)   NEPHILIM UPDATE Jack's transformation in Supernatural final season redefined show's mythology (MSN/Primetimer)   PRODUCERS   TALENT/MEET UP TIME/END

CHAOSScast
Episode 109: SBOMs and Project Health with Brittany Istenes

CHAOSScast

Play Episode Listen Later May 1, 2025 39:53


Thank you to the folks at Sustain (https://sustainoss.org/) for providing the hosting account for CHAOSSCast! CHAOSScast – Episode 109 In this episode of CHAOSScast, host Georg Link is joined by Cali Dolfi, Senior Data Scientist at Red Hat, and Brittany Istenes, FINOS Ambassador. The discussion delves into the importance of measuring open source community health and the role of Software Bill of Materials (SBOM) in ensuring software security and compliance. They talk about the rising threats in open source software, the need for standardizing SBOMs, and how organizations can leverage these tools to proactively manage risks and project health. Also, they touch on practical steps being taken at Red Hat and other organizations to address these challenges. Hit download now to hear more! [00:00:21] Our guests introduce themselves and their backgrounds. [00:01:55] Georg explains the rise of malicious packages (700%) and the risks of neglected open source components. [00:04:36] What is a SBOM? Brittany explains SBOMs as a list of all software components and libraries in each application and automation and tooling adoption is discussed. [00:06:08] Cali outlines the lack of consensus on SBOM fields and formats and advocates for including upstream repo links to assess project health. Brittany mentions companies being cautious about publicizing SBOMs due to IP concerns. [00:09:12] Georg gives a historical overview about SBOMs began as tools for license compliance and how SBOMs now cover more including cybersecurity, post U.S. Executive Order 14028 (May 2021). [00:15:51] Georg shares three pillars of SBOM strategy: License compliance, Security, and Project Health and how CHAOSS Metrics can be combined with SBOMs to move from reactive to proactive strategies. [00:16:59] Brittany emphasizes risk analysis and good design from project inception and proactive open source strategies save effort later. [00:18:43] Cali talks about using project health metrics and advocates for tracking maintainer activity, patch frequency, and project responsiveness. [00:21:28] Brittany stresses internal engineering education on project health and risk and developer smush understand what makes a project “healthy.” [00:22:55] Georg talks about how open source has evolved and details using CHAOSS metrics for risk assessment and CI/CD integration. [00:27:36] Cali shares Red Hat's efforts to define what makes a project vulnerable and how it's focused on detecting and sunsetting unmaintained dependencies. [00:31:37] Brittany emphasizes risk from version mismatches and misinterpreted CVEs and mentions a CHAOSS doc to read, “Metrics for OSS Viability” by Gary White. [00:34:17] We end with Georg sharing some upcoming events: CHAOSScon North America, June 26 and Open Source Summit North America, June 23-25. Value Adds (Picks) of the week: [00:36:08] Georg's pick is building a platform for his dog to look out the window. [00:37:06] Brittany's pick is spending time with Georg and Cali. [00:38:12] Cali's pick is her great support system since having ACL surgery. *Panelist: * Georg Link Guests: Cali Dolfi Brittany Istenes Links: CHAOSS (https://chaoss.community/) CHAOSS Project X (https://twitter.com/chaossproj?lang=en) CHAOSScast Podcast (https://podcast.chaoss.community/) podcast@chaoss.community (mailto:podcast@chaoss.community) Georg Link Website (https://georg.link/) Britany Istenes LinkedIn (https://www.linkedin.com/in/brittany-istenes-91b902152/) Brittany Istenes GitHub (https://github.com/BrittanyIstenes) Cali Dolfi LinkedIn (https://www.linkedin.com/in/calidolfi/) State of the Software Supply Chain (Sonatype) (https://www.sonatype.com/state-of-the-software-supply-chain/introduction) CHAOSScast Podcast-Episode 103: GrimoireLab at FreeBSD (https://podcast.chaoss.community/103) CHAOSS Community: Metrics for OSS Viability by Gary White (https://chaoss.community/viability-metrics-what-its-made-of/) CHAOSScon North America 2025, Denver, CO, June 26 (https://chaoss.community/chaosscon-2025-na/) Open Source Summit North America, Denver CO, June 23-25 (https://events.linuxfoundation.org/open-source-summit-north-america/) Fintech Open Source (FINOS) (https://www.finos.org/) Cyber Resilience Act (European Commission) (https://digital-strategy.ec.europa.eu/en/policies/cyber-resilience-act) Rising Threat: Understanding Software Supply Chain Cyberattacks And Protecting Against Them(Forbes) (https://www.forbes.com/councils/forbestechcouncil/2024/02/06/rising-threat-understanding-software-supply-chain-cyberattacks-and-protecting-against-them/) Executive Order on Strengthening and Promoting Innovation in the Nation's Cybersecurity (The White House) (https://bidenwhitehouse.archives.gov/briefing-room/presidential-actions/2025/01/16/executive-order-on-strengthening-and-promoting-innovation-in-the-nations-cybersecurity/) Types of Software Bill of Material (SBOM) Documents (https://www.cisa.gov/sites/default/files/2023-04/sbom-types-document-508c.pdf) OpenSSF Scorecard (https://openssf.org/projects/scorecard/) OSS Project Viability Starter (CHAOSS) (https://chaoss.community/kb/metrics-model-project-viability-starter/) Show Me What You Got: Turning SBOMs Into Actions- Georg Link & Brittany Istenes (https://lfms25.sched.com/event/1urWz) Special Guests: Brittany Istenes and Cali Dolfi.

Irish Tech News Audio Articles
Simplifying IT for the AI and Multicloud Era

Irish Tech News Audio Articles

Play Episode Listen Later Apr 28, 2025 5:36


Guest post by Brian O' Toole, Consumption and Software Sales Leader at Dell Technologies AI is rapidly reshaping the business landscape, making digital transformation not just a priority but a necessity for Irish organisations. Yet as companies look to harness its potential, they often find themselves navigating increasingly complex IT environments - a challenge that can feel overwhelming for businesses of all sizes. Whether it's navigating cloud migration or staying secure and scaling AI projects or even just managing day-to-day IT workloads with limited resources, there's one thing we keep hearing from businesses and organisations alike is that 'we need to simplify'. At Dell Technologies, we've seen these challenges firsthand - and that's why we're helping organisations embrace technology as-a-Service. Adopting this approach can help simplify operations, modernise IT infrastructure, and give businesses the agility they need to innovate at speed in the AI era. A Fresh Approach to IT Management Today, IT teams face a perfect storm of priorities from business leaders responding to external challenges. These priorities pressure IT leaders to do more with less as they get operations teams to innovate while addressing expanding regulatory frameworks around data. All these pressures and potentially competing priorities increase the risk of IT decision sprawl that could solve problems in one area while adding complexity in others. To help IT and business leaders navigate this environment and shift IT costs from capital expenditure (CapEx) to operational expenditure (OpEx), Dell APEX Cloud Platforms provide integrated infrastructure management that reduces multicloud complexity while strengthening security and governance. APEX is a portfolio of fully integrated, turnkey systems that integrate Dell infrastructure, software and cloud operating stacks to deliver consistent multicloud operations. By extending cloud operating models to on-premises and edge environments, Dell APEX Cloud Platforms bridge the cloud divide by delivering consistent cloud operations everywhere. With Dell APEX Cloud Platforms, you can: Minimize multicloud costs and complexity in the cloud ecosystem of your choice. Increase application value by accelerating productivity with familiar experiences that enable you to develop anywhere and deploy everywhere. Improve security and governance by enforcing consistent cloud ecosystem management from cloud to edge and enhancing control with layered security. The shift to an As-a-Service approach gives businesses control without the chaos. Whether a scaling startup or an established large business planning to advance their Multicloud solutions or leverage AI-driven applications, they can get access to latest technology such as storage, servers, devices and cloud services - on demand with only the cost for what they use. Enabling organisations to innovate in an AI and Multicloud era For organisations, the shift to an as-a-service model is not just about simplifying IT systems, it's about ensuring they can unlock innovation and growth. Businesses can pay for what they use which aligns technology investment to actual value and usage. This approach is especially critical for costly infrastructure such as GPUs, servers, and storage which all require substantial investment. By spreading costs over time, organisations in Ireland can forge a cost-effective pathway to leveraging cutting-edge AI capabilities without being locked into long-term technology commitments. In Ireland, we're seeing a growing appetite for more agile, scalable IT models, especially among businesses embracing AI, hybrid work, and Multicloud strategies. As the debate between public and private clouds are fading, Multicloud ecosystems are the future, and Dell APEX is leading the charge. With partnerships spanning hyper scalers like Microsoft, Red Hat, VMware, and Google Cloud, Dell APEX delivers simplified IT management across environments. Dell APEX innovatio...

WALL STREET COLADA
Rally Pierde Fuerza, Tesla y Aurora Apuestan por Autonomía y Dudas en IBM.

WALL STREET COLADA

Play Episode Listen Later Apr 24, 2025 4:35


En este episodio, repasamos los temas más importantes del día: • Wall Street retrocede tras el rebote: Los futuros bajan con $SPX -0.6%, $US100 -0.8%, $INDU -0.6% mientras se enfría el rally por la posible desescalada comercial. El Tesoro a 10Y en 4.35%. Trump moderó su tono, pero el Tesoro advierte que un acuerdo con China podría tardar 2-3 años. Hoy reportan $GOOG, $INTC, $AAL y $CMCSA. • Tesla avanza con robotaxis: $TSLA inicia pruebas de su servicio de robotaxis con empleados en Austin y el Área de la Bahía. Lanzamiento oficial previsto para verano 2025. Buscará competir con $GOOGL (Waymo), $AMZN (Zoox) y otros jugadores en el espacio autónomo. • Aurora marca hito con camión autónomo: $AUR lanza su primer camión sin conductor en ruta de Dallas a Houston. Planea tener decenas operando en 2025. Ya tiene acuerdos con $FDX y $UBER. Los analistas piden cautela mientras la acción ronda los $6. • IBM cae por dudas en consultoría: Aunque $IBM superó expectativas en ingresos y mantiene guía optimista, la caída en Consultoría (-2%) y las dudas sobre DOGE generan presión. Ingresos de Software +7% y Red Hat con crecimiento de doble dígito, pero el modelo de crecimiento anual sigue bajo revisión. Un episodio para entender cómo la autonomía, la política comercial y las estrategias corporativas están moviendo los mercados.

So klingt Wirtschaft
KI-Agenten: Warum Unternehmen jetzt handeln müssen

So klingt Wirtschaft

Play Episode Listen Later Apr 16, 2025 17:32


Effizienz, Innovation, Wettbewerb: Markus Eisele von Red Hat über den echten Nutzen autonomer KI-Agenten.

TestGuild Performance Testing and Site Reliability Podcast
Automation - First DevOps Focus with Kedar Kulkarni

TestGuild Performance Testing and Site Reliability Podcast

Play Episode Listen Later Apr 10, 2025 30:28


Welcome to another exciting episode of the DevOps Toolchain podcast, where we delve into the dynamic world of DevOps, automation, and cloud infrastructure. Today, we're thrilled to have Kedar Kulkarni, a DevOps and cloud infrastructure expert, join us. Kedar has a wealth of experience in CICD, Kubernetes, and what he calls 'automation first' DevOps. He co-authored a popular IT automation ebook and created the AT-CasC framework, an integral part of Red Hat's automation stack. In this episode, we explore his unique approach to infrastructure test automation and the impact of his work in shaping how teams think about testing infrastructure as code. We'll dive deep into GitOps and explore open-source tools, learning what it really takes to build DevOps frameworks that matter. Along the way, Kedar shares insights on the significance of infrastructure as code, how to build a successful opensource project, and his thoughts on the future of DevOps practices. Whether you're a DevOps professional or just dipping your toes into the field, you won't want to miss this conversation. Tune in as we journey through the essentials of building efficient, scalable, and user-friendly DevOps frameworks that help you stay ahead in the game. Try out Insight Hub free for 14 days now: https://testguild.me/insighthub. No credit card required.

Growth Colony: Australia's B2B Growth Podcast
REBROADCAST | EP #175: Implementing Brand Experience Into ABM Programs

Growth Colony: Australia's B2B Growth Podcast

Play Episode Listen Later Apr 9, 2025 32:34


Shahin chats with Christine Law, Director & Head of ABM, Asia Pacific & Japan at ServiceNow, about bringing brand experience and ABM together. The episode covers the following: What is brand experience?How to define ABMThe mistakes marketers makeFinding the balance between strategy and uplifting the strategy Christine has worked at some of the world's most innovative and open companies, including ServiceNow, Google, Red Hat, and IBM. She and her team established and spearheaded marketing strategies and execution for these companies' top strategic accounts and fuelled multi-million pipeline and revenue growth for the Asia Pacific region. When she isn't thinking about marketing strategies for her portfolios, Christine loves exploring culinary treats in Singapore or around the world during her travels. She is fascinated with what the different cultures have on offer and appreciates the richness of diversity. Resources mentioned in this episode: Who Says Elephants Can't Dance? - Louis Gerstner _________________

airhacks.fm podcast with adam bien
High-Performance Load Testing

airhacks.fm podcast with adam bien

Play Episode Listen Later Apr 6, 2025 70:10


An airhacks.fm conversation with Francesco Nigro (@forked_franz) about: discussion about the importance of stress testing over System Tests and unit tests, Coordinated Omission Problem in load generators where they don't accurately measure server performance during slowdowns, introduction to HyperFoil as a high-performance load generator capable of generating millions of requests per second with just two cores, explanation of how HyperFoil avoids GC overhead by pre-allocating resources, the architecture of HyperFoil using Netty event loops and a graph-based execution model, comparison with other load testing tools like JMeter, K6, Apache Benchmark and Vegeta, introduction to QDUP as a shell automation tool for distributed testing, overview of Horreum for performance test results storage and analysis, explanation of how these tools work together in Red Hat's performance testing pipeline, discussion of JCTools and its importance for GC-free concurrent data structures, the Universal Scalability Law and its application to load balancing algorithms, the pick-two-random algorithm for efficient resource allocation, the benefits of using JBang for easy one-line execution of HyperFoil, potential drawbacks of HyperFoil including ergonomics and JIT compilation warm-up issues, the possibility of using GraalVM native image to avoid JIT compilation delays Francesco Nigro on twitter: @forked_franz

Pathmonk Presents Podcast
Unlocking Digital Potential with Expert Integration | Brett Carnali from Stone Door Group

Pathmonk Presents Podcast

Play Episode Listen Later Apr 4, 2025 20:02


Brett Carnali, VP of Sales at Stone Door Group, joins Rick on Pathmonk Presents to share how their 17-year legacy in DevOps integration empowers enterprises. Specializing in automation and virtualization solutions with partners like Red Hat and IBM, they tackle challenges in finance and healthcare. Brett discusses their customer-first ethos, referral-driven growth, and plans to revamp their dated website. Learn how Stone Door Group solves tough digital problems in this compelling episode!

Business of Tech
MSP Regulations Shift: CMMC 2.0, FedRAMP Overhaul, UK Cyber Bill & AI Security Concerns

Business of Tech

Play Episode Listen Later Apr 2, 2025 15:30


Michael Duffy, President Donald Trump's nominee for Undersecretary of Defense for Acquisition and Sustainment, has committed to reviewing the Pentagon's Cybersecurity Maturity Model Certification (CMMC) 2.0 if confirmed. This revamped program, effective since December, mandates that defense contractors handling controlled, unclassified information comply with specific cybersecurity standards to qualify for Department of Defense contracts. Concerns have been raised about the burden these regulations may impose on smaller firms, with a report indicating that over 50% of respondents felt unprepared for the program's requirements. Duffy aims to balance security needs with regulatory burdens, recognizing the vulnerability of small and medium-sized businesses in the face of cyber threats.In addition to the CMMC developments, the General Services Administration (GSA) is set to unveil significant changes to the Federal Risk Authorization Management Program (FedRAMP). The new plan for 2025 focuses on establishing standards and policies rather than approving cloud authorization packages, which previously extended the process for up to 11 months. The GSA intends to automate at least 80% of current requirements, allowing cloud service providers to demonstrate compliance more efficiently, while reducing reliance on external support services.Across the Atlantic, the UK government has announced a comprehensive cybersecurity and resilience bill aimed at strengthening defenses against cyber threats. This legislation will bring more firms under regulatory oversight, specifically targeting managed service providers (MSPs) that provide core IT services and have extensive access to client systems. The proposed regulations will enhance incident reporting requirements and empower the Information Commissioner's Office to proactively identify and mitigate cyber risks, setting higher expectations for cybersecurity practices among MSPs.The episode also discusses the implications of recent developments in AI and cybersecurity. With companies like SolarWinds, CloudFlare, and Red Hat enhancing their offerings, the integration of AI into business operations raises concerns about security and compliance. The ease of generating fake documents using AI tools poses a significant risk to industries reliant on document verification. As the landscape evolves, IT service providers must adapt by advising clients on updated compliance practices and strengthening their cybersecurity measures to address these emerging threats. Four things to know today 00:00 New Regulatory Shifts for MSPs: CMMC 2.0, FedRAMP Overhaul, and UK Cyber Security Bill05:21 CISA Cuts and Signal on Gov Devices: What Could Go Wrong?08:15 AI Solutions Everywhere! SolarWinds, Cloudflare, and Red Hat Go All In11:37 OpenAI's Image Generation Capabilities Raise Fraud Worries: How Businesses Should Respond  Supported by:  https://www.huntress.com/mspradio/https://cometbackup.com/?utm_source=mspradio&utm_medium=podcast&utm_campaign=sponsorship  Join Dave April 22nd to learn about Marketing in the AI Era.  Signup here:  https://hubs.la/Q03dwWqg0 All our Sponsors: https://businessof.tech/sponsors/ Do you want the show on your podcast app or the written versions of the stories? Subscribe to the Business of Tech: https://www.businessof.tech/subscribe/Looking for a link from the stories? The entire script of the show, with links to articles, are posted in each story on https://www.businessof.tech/ Support the show on Patreon: https://patreon.com/mspradio/ Want to be a guest on Business of Tech: Daily 10-Minute IT Services Insights? Send Dave Sobel a message on PodMatch, here: https://www.podmatch.com/hostdetailpreview/businessoftech Want our stuff? Cool Merch? Wear “Why Do We Care?” - Visit https://mspradio.myspreadshop.com Follow us on:LinkedIn: https://www.linkedin.com/company/28908079/YouTube: https://youtube.com/mspradio/Facebook: https://www.facebook.com/mspradionews/Instagram: https://www.instagram.com/mspradio/TikTok: https://www.tiktok.com/@businessoftechBluesky: https://bsky.app/profile/businessof.tech

Packet Pushers - Full Podcast Feed
TNO022: Secure Automation at Enterprise Scale for the Public Sector with Red Hat Ansible (Sponsored)

Packet Pushers - Full Podcast Feed

Play Episode Listen Later Mar 28, 2025 68:21


There are both benefits and challenges when adopting automation in the public sector, but Red Hat Ansible enhances efficiency, security and service delivery. With the right tooling, network operators can integrate automation into existing environments and improve network security.  Providing insights into adopting automation in the public sector are Tony Dubiel, Principal Specialist Solution Architect... Read more »

Packet Pushers - Fat Pipe
TNO022: Secure Automation at Enterprise Scale for the Public Sector with Red Hat Ansible (Sponsored)

Packet Pushers - Fat Pipe

Play Episode Listen Later Mar 28, 2025 68:21


There are both benefits and challenges when adopting automation in the public sector, but Red Hat Ansible enhances efficiency, security and service delivery. With the right tooling, network operators can integrate automation into existing environments and improve network security.  Providing insights into adopting automation in the public sector are Tony Dubiel, Principal Specialist Solution Architect... Read more »

Code Story
S10 Bonus: Quinn Li O'Shea, Braid

Code Story

Play Episode Listen Later Mar 27, 2025 23:26


Quinn Li started into tech well before college. In High School, she was into fashion and would take pictures of herself and her friends. She wanted to share these pictures, and found her way to Squarespace - which ultimately, led her getting into HTML and CSS - and the rest is history. Outside of tech, she plays a lot of tennis, and teaches Aerial. I had to ask what this was, and she explained it was the art form that you see in the circus, when people are climbing the sheets in the air, acrobatically.Quinn Li has been focused on productivity throughout her career. As she started to swing her focus to building connections at work through play. One of the games she and her team built went viral on TikTok - and they knew they were on to something.This is the creation story of Braid.SponsorsPropelAuthTeclaSpeakeasyQA WolfSnapTradeLinkshttps://www.trybraid.io/https://www.linkedin.com/in/qloshea/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

Surveillance Report
Q&A: Keeping Passwords Safe From Malware

Surveillance Report

Play Episode Listen Later Mar 26, 2025 22:54


Q&A219: How can you keep your password manager safe from infostealing malware? Do we prefer Debian-based or RedHat-based Linux distros? How do we harden or customize our distros? How can you recreate Qubes' Disposable VMs on a non-Qubes device? Join our next Q&A on Patreon: https://www.patreon.com/collection/415684?view=expanded or XMR Chat: https://xmrchat.com/surveillancepodWelcome to the Surveillance Report Q&A - featuring Techlore & The New Oil answering your questions about privacy and security.❤️ Support us on Patreon: https://www.patreon.com/surveillancepod

Code Story
S10 E25: Alberto Simon, Masterworks

Code Story

Play Episode Listen Later Mar 25, 2025 25:59


Alberto Simon is an immigrant from Mexico, moving to Florida with his small family when he was very young. At a young age, he got interested in computers, through gaming and building his own computers. In college, he briefly studied mechanical engineering, but quickly switched over to MIS. Post that, he joined an adtech startup, caught hold of the rocket, and built the professional skills he still utilizes today. Outside of tech, he enjoys dancing, specifically salsa and machata, and participates in CrossFit. For both things, he enjoys the challenge, working hard towards goals, and seeing progress.Alberto and his co-founders had worked in the startup world for quite some time. They noticed the trends of platforms leading the charge on portfolio management, without advisors, alongside the democratization of investments in things like real estate, crypto, etc. They decided to move forward in removing the opaqueness from investment in art.This is the creation story of Masterworks.SponsorsPropelAuthTeclaSpeakeasyQA WolfSnapTradeLinkshttps://www.masterworks.com/https://www.linkedin.com/in/albertosimonOur Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

Awaken Beauty Podcast
Centralized Control vs. Decentralized Freedom. What side are you on?

Awaken Beauty Podcast

Play Episode Listen Later Mar 25, 2025 13:44


Hi Beloved. There is NO DOUBT we are on the cusp of an economic tail wind, shifting into the ecosystem of “Sound Money” through transparency. TRUE CONFESSION: I purchased Bitcoin in 2011, and 5 years later, sold due to it's scandal in the dark web and child trafficking (proven). XRP? Yes please. You're about to learn why. KASS. Digital assets? That's not your vibe. Glad you asked. It actually VERY MUCH is my vibe as an avid economic student. I will be dropping in here and there with foundational education for us to come around the table, learn from and ultimately support you in understanding your options as we move from one decline to the greatest incline in history. This may not make any sense to you - but I suggest listening and letting your subconscious mind to take it in, so when this does hit peak, you have some insights that will remove fear and embody greater understanding. This video features my Friend Rob Dunningham and Kyle. READY? Let's break down the tech stacks behind the emerging digital asset ecosystem. There's a lot of nuance and legal precedent that's important to understand.On one side, we have Bitcoin - the mysterious crypto that's been hyped relentlessly by the media for 16 years. But what does it really do? Payments? Smart contracts? Scalability? Efficiency?Then there's Ethereum - the smart contract platform invested in by CCP-linked entities, JP Morgan, etc. Its founder Vitalik Buterin even crashed on the couch of Ripple's early CTO.And let's talk about Tether - the offshore, unaudited stablecoin whose magical printing seems to prop up Bitcoin's price. Suspicious much?On the other hand, you have Ripple and XRP. XRP has clear legal definition as a virtual currency, not a security. It has real-world use cases, efficiency, and transparency that the others lack.Ripple built on top of the open-source XRP Ledger, similar to how Red Hat built on Linux. This allows interoperability, smart contracts, tokenization, and more across the crypto ecosystem.The key is the XRP token - it acts as the "motor oil" enabling fast, low-cost value transfer between any two parties or ledgers. It's the glue that binds this entire system together.With the RLUSD stablecoin backed 1:1 by reserves and XRP required for all transactions, this seems to be the digital dollar framework envisioned by Trump to keep the USD dominant.The legal clarity, real-world use cases, and technology behind Ripple/XRP make it stand out in this space. It'll be interesting to see how this all plays out. What are your thoughts on the future of digital assets?Thank you to Rob and Captain Kyle. We appreciate your ruthless research, leadership and timeWhere we go one- we go all. Love, Kassandra. PS: Share with a friend. And….follow my X Threads for the most recent real world shifts. Get full access to The Light Between at thelightbetween.substack.com/subscribe

The Cloud Pod
296: Google Forces AI Protection

The Cloud Pod

Play Episode Listen Later Mar 21, 2025 59:26


Welcome to episode 296 of The Cloud Pod – where the forecast is always cloudy! Today is a twofer – Justin and Ryan are in the house to make sure you don't miss out on any of today's important cloud and AI news. From AI Protection, to Google Next, to Amazon Q Developer, we've got it all, this week on TCP!  Titles we almost went with this week: Amazon Step Functions, walks step by step into my IDE Deepseek seeks the truth of “is it serverless or servers”?  Well Architected Reviews by AI… What will my solutions architects do now?  The cloud pod hosts steps over the Azure EU Data Boundary BYOIP to ALBs… only years too late for everyone. A big thanks to this week's sponsor: We're sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You've come to the right place! Send us an email or hit us up on our slack channel for more info.  General News  01:02 HashiCorp and Red Hat, better together  Hashicorp has more details on its future, with the recent IBM acquisition in this blog post.  They talk about the wide range of Day 2 operations, including things like drift detection, image management and patching, rightsizing, and configuration management.   As Red Hat Ansible is a purpose built operational management platform, it makes it easier to properly configure resources after the initial creation, but also to evolve the configuration after setup, and then execute ad-hoc playbooks to keep things running reliably and more securely at scale.  Some additional things they're exploring, now that the acquisition has closed: Red Hat Ansible Inventory generated dynamically by Terraform.  Official Terraform modules for Redhat Ansible, making it easier to trigger terraform from Ansible Playbooks. Redhat and Hashicorp officially support the Red Hat Ansible Provider for Terraform, making it easier to trigger Ansible from Terraform. Evolving Terraform provisioners to support a more comprehensive set of lifecycle integrations. Improved mechanisms to invoke Ansible Playbooks outside of the resource provisioning lifecycle Customers – not surprisingly – regularly integrate Vault and Openshift, and they have identified dozens of connection points that can add value, including: Vault Secrets Operator for OpenShift Etcd data encryption  Argo CI/CD Istio Certificate issuance 01:48 Justin – “That's a lot of promise for Ansible there, that I'm not sure it completely lives up to…” 07:09

Code Story
S10 Bonus: Don Gossen, Nevermined

Code Story

Play Episode Listen Later Mar 20, 2025 32:22


Don Gossen is Canadian, but at this point, in name only. He lives in Portugal with his wife and 2 daughters. He grew up all over the world, and his career has afforded him to travel the globe. He's been in the machine learning space for 20 years, but spent his early days in statistical modeling - which was fun to setup, but boring to operate. For fun, he enjoys traveling and skiing, in particular off trail - and anywhere in Japan during the winter.In 2016, Don caught the crypto bug, but not from the speculative component. He was fascinated with the providential integrity that is found in the blockchain. This culminated with 20 years of experience in deep tech, and led him down the path of AI agent payments.This is the creation story of Nevermined.SponsorsPropelAuthTeclaSpeakeasyQA WolfSnapTradeLinkshttps://nevermined.app/https://www.linkedin.com/in/donald-gossen-40ab96/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

DealMakers
Rami Tamir On Selling Two Companies To Cisco And Red Hat, A Third $500-Million Company To Oracle, And Now Helping Businesses Configure Their Applications

DealMakers

Play Episode Listen Later Mar 20, 2025 40:18


Rami Tamir is no stranger to the startup world. A seasoned entrepreneur with multiple successful exits, he has honed his ability to build, scale, and navigate acquisitions like a veteran baseball player hitting home runs with each venture. Rami's latest venture, Salto, has attracted funding from top-tier investors like Bessemer Venture Partners, Accel, Lightspeed Venture Partners, Salesforce Ventures.

The InfoQ Podcast
Simplify Your System By Challenging The Status-Quo And Learning From Other Ecosystems

The InfoQ Podcast

Play Episode Listen Later Mar 20, 2025 44:24


In this podcast, Max Rydahl Andersen, distinguished engineer at RedHat and the creator of JBang discusses how continuously learning from other ecosystems and adopting new tools allows you to simplify your thinking and systems. This will allow you to increase the developer joy of the coders and further, obtain safer and more robust systems. Read a transcript of this interview: https://bit.ly/4kz8tb7 Subscribe to the Software Architects' Newsletter for your monthly guide to the essential news and experience from industry peers on emerging patterns and technologies: https://www.infoq.com/software-architects-newsletter Upcoming Events: QCon London (April 7-10, 2025) Discover new ideas and insights from senior practitioners driving change and innovation in software development. https://qconlondon.com/ InfoQ Dev Summit Boston (June 9-10, 2025) Actionable insights on today's critical dev priorities. devsummit.infoq.com/conference/boston2025 InfoQ Dev Summit Munich (October 15-16, 2025) Essential insights on critical software development priorities. https://devsummit.infoq.com/conference/munich2025 QCon San Francisco 2025 (17-21, 2025) Get practical inspiration and best practices on emerging software trends directly from senior software developers at early adopter companies. https://qconsf.com/ InfoQ Dev Summit New York (Save the date - December 2025) https://devsummit.infoq.com/ The InfoQ Podcasts: Weekly inspiration to drive innovation and build great teams from senior software leaders. Listen to all our podcasts and read interview transcripts: - The InfoQ Podcast https://www.infoq.com/podcasts/ - Engineering Culture Podcast by InfoQ https://www.infoq.com/podcasts/#engineering_culture - Generally AI: https://www.infoq.com/generally-ai-podcast/ Follow InfoQ: - Mastodon: https://techhub.social/@infoq - Twitter: twitter.com/InfoQ - LinkedIn: www.linkedin.com/company/infoq - Facebook: bit.ly/2jmlyG8 - Instagram: @infoqdotcom - Youtube: www.youtube.com/infoq Write for InfoQ: Learn and share the changes and innovations in professional software development. - Join a community of experts. - Increase your visibility. - Grow your career. https://www.infoq.com/write-for-infoq

Open at Intel
Balancing Act: Software Security and Developer Experience

Open at Intel

Play Episode Listen Later Mar 20, 2025 25:32


In this episode, we sit down with Luke Hinds, CTO of Stacklok and creator of Sigstore, to learn from his extensive background in open source security. Luke shares insights into his journey and passion for security, highlighting the thrill of the 'cat and mouse' dynamics. He discusses Stacklok's project, Minder, a software supply chain platform designed to streamline security while boosting developer productivity. Luke also touches on Trusty, another Stacklok initiative aimed at assessing the security risks of open source packages using data science. The conversation expands to the impact of AI on code contributions and developer identity, reflecting on the evolving dynamics in software development and security. Finally, Luke shares thoughts on the ongoing challenges and opportunities in bridging the gap between operations and engineering to maintain robust security in fast-paced development environments. 00:00 Introduction  02:29 Personal Reflections on Security 04:14 Introduction to Stacklok and Minder 05:02 Minder's Features and Capabilities 07:38 Target Audience and Use Cases for Minder 10:41 Balancing Security and Developer Productivity 13:00 The Importance of Seamless Security 13:52 Introduction to Trusty: Understanding Open Source Security Risks 14:45 Analyzing Malicious Packages and Developer Contributions 18:06 The Role of Developer Identity in Open Source Projects 19:20 AI's Impact on Code Development and Security 20:10 Challenges and Future Directions in Developer Identity 23:31 Concluding Thoughts and Future Conversations Guest: Luke Hinds is the CTO of Stacklok. He is the creator of the open source project sigstore, which makes it easier for developers to sign and verify software artifacts. Prior to Stacklok, Luke was a distinguished engineer at Red Hat.  

Environment Variables
The Week in Green Software: Sustainable AI Progress

Environment Variables

Play Episode Listen Later Mar 20, 2025 50:27


For this 100th episode of Environment Variables, guest host Anne Currie is joined by Holly Cummins, senior principal engineer at Red Hat, to discuss the intersection of AI, efficiency, and sustainable software practices. They explore the concept of "Lightswitch Ops"—designing systems that can easily be turned off and on to reduce waste—and the importance of eliminating zombie servers. They cover AI's growing energy demands, the role of optimization in software sustainability, and Microsoft's new shift in cloud investments. They also touch on AI regulation and the evolving strategies for balancing performance, cost, and environmental impact in tech.

Code Story
S10 E25: Shmuel Kliger, Causely

Code Story

Play Episode Listen Later Mar 18, 2025 29:23


Shmuel Kliger is a self proclaimed old man. He was born in Israel, and served in the army for 6 years. It was in the army where he obtained his passion for the space, from which he got his bachelors, masters and eventually, his PhD. Outside of tech, he is married with 4 kids and 2 grandchildren. He met his wife during grad school, and they now live in New York. When asked what he did for fun, he laughed and said that he enjoyed living in the "best city in the world", with everything at his fingertips.When his past venture winded down, Schmuel found himself at the center of an idea that was the culmination of all his years in technology. To build something that could not only process large amounts of observability data - but could make sense of it, and take appropriate action.This is the creation story of Causely.SponsorsPropelAuthTeclaSpeakeasyQA WolfSnapTradeLinkshttps://www.causely.ai/https://www.linkedin.com/in/shmuel-kliger-1a91963/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

Code Story
Podcasthon & the American Cancer Society

Code Story

Play Episode Listen Later Mar 17, 2025 2:45


Hello Listeners.Today is going to be a special episode, a bit out of the ordinary to our normal programming. I'm participating in Podcasthon, which gives Code Story the opportunity to dedicate one episode to a charity of choice. Hundreds of podcasts are participating in this, releasing their episodes simultaneously in a coordinate effort, with the goal of creating a massive and international wave of inspiring audio content.Whats the point? The point is to raise awareness for a huge number of charities worldwide.The charity I've chosen is the American Cancer Society.The American Cancer Society is fighting cancer through research into cures and support for existing patients in their family. This not for profit organization, and is enabled to do its work through donations, grants and other sources.If you feel led to help fight cancer and support patients, go to the cancer.org website and click Donate. You can even give in Honor & Memorial of someone who's life has been impacted by cancer.If you want to learn more, go to cancer.org. That C A N C E R.org.Big thanks to the American Cancer Society for the work they do, and to Podcasthon, for coordinated this effort for charity.And thanks again for listening.SponsorsPodcasthonLinkshttps://www.cancer.org/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

PurePerformance
An Inside Look into Platform Engineering for Architects with the authors Max, Hilliary & Andi

PurePerformance

Play Episode Listen Later Mar 17, 2025 59:14


In the ever-changing IT world, it's hard to create content that stays relevant for long. One of the objectives of "Platform Engineering for Architects: Crafting Modern Platforms as a Product" was to stay timeless by providing practical examples of use cases that are not necessarily tied to current technology trends.The book focuses on the importance of building a platform with a purpose, making the impact measurable and making sure the platform continuous evolves by continuously including the end users (the engineering teams) in the evolution of the platform.Tune in to this episode and hear from Max Körbächer (Founder of Liquid Reply), Hilliary Lipsig (Senior Principal SRE at RedHat) and Andi Grabner (Co-Host of PurePerformance) on what made them write a book on Platform Engineering and get some personal insights into what gets the authors excited about their respective topics.If you have a chance meet Max, Hilliary and Andi at KubeCon in London. They will present at Platform Engineering Day and will also do a book signing at KubeCrawl!Links we discussed:Book on Amazon: https://www.amazon.com/Platform-Engineering-Architects-Crafting-platforms-ebook/dp/B0DH5DJFTHPlatform Engineering Day Session: https://colocatedeventseu2025.sched.com/event/1u5mX/platform-engineering-for-architects-crafting-platforms-as-a-product-max-korbacher-liquid-reply-hilliary-lipsig-red-hatHilliary Lipsig: https://www.linkedin.com/in/hilliary-lipsig-a5935245/Max Körbächer: https://www.linkedin.com/in/maxkoerbaecher/Andi Grabner: https://www.linkedin.com/in/grabnerandi/

Code Story
S10 Bonus: Tyler Wells, Braingrid

Code Story

Play Episode Listen Later Mar 13, 2025 20:09


Tyler Wells lives outside of Austin, TX. He moved there 4 years ago, but spent most of this time in the Bay Area and Silicon Valley. Outside of tech, he is married with a family. His 3 kids are heavily involved in sports and extracurricular activities, which keeps them all pretty busy. But, when he has time, he is into cooking. He thinks of it as a nerdy endeavor, eating at a fancy restaurant and going home to try to recreate the dish.At the sunset of his prior company, Tyler and his co-founders started digging into the AI Code Editor, Cursor, and how the agent side of things could increase the power and speed of coding. Through the shutdown, they decided to start something new.This is the creation story of Braingrid.SponsorsPropelAuthTeclaSpeakeasyQA WolfSnapTradeLinkshttps://www.braingrid.ai/https://propeldata.comhttps://www.linkedin.com/in/tylerswells/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

Sales Ops Demystified
Why Sales Training Fails - And How AI is Fixing It with Ivy Holt, Head of Global Revenue Enablement at PagerDuty

Sales Ops Demystified

Play Episode Listen Later Mar 13, 2025 40:46


In this episode of Revenue Insights, host Guy Rubin speaks with Ivy Holt, Head of Global Revenue Enablement at PagerDuty, about the evolving role of enablement in driving sales success. Ivy shares insights on the distinction between revenue operations and enablement, measuring effectiveness, and the impact of AI and remote work on modern sales strategies. With 18+ years of experience at Red Hat, Pendo, and PagerDuty, she specializes in aligning global teams, scaling enterprise sales, and shifting organizations from transactional selling to strategic partnerships. This episode is packed with valuable takeaways for sales leaders and enablement professionals looking to optimize performance and drive revenue growth.

Open at Intel
Open Source and Public Policy: A Conversation with Deb Bryant

Open at Intel

Play Episode Listen Later Mar 13, 2025 20:23


Deb Bryant discusses her career journey and the significant role of open source software in public policy, particularly in the US and Europe. She highlights her work with the Open Source Initiative, Oregon State University, and Red Hat, emphasizing the importance of open source in government operations and cybersecurity. Deb also addresses the challenges and evolution of open source policies, the critical need for sustainability in open source projects, and her current focus on AI's impact on the ecosystem. She concludes by advocating for harmonized international regulations and human-centered AI approaches. 00:00 Introduction 00:44 Government and Open Source Software 01:38 Experiences in the Private Sector 02:14 Open Source in Public Policy 04:31 Cybersecurity and Open Source 07:42 Sustainability in Open Source 15:05 Future of Open Source and AI 18:53 Conclusion and Final Thoughts Guest: Deb Bryant, Director, US Policy and Founder, Open Policy Alliance Open Source Initiative Throughout her career, Deborah has lent her voice to supporting open source projects and developers, building bridges between academia, industry, non-profits, and government along the way. Today she provides guidance to open source foundations seeking to support public policy development in open technology domains. She has worked in emerging technology and has been an advocate of free and open source software and the community that makes it so since the 1990s. Deborah is board director emeritus at the Open Source Initiative (OSI); serves on the DemocracyLab board; serves on the advisory boards of Open Source Elections Technology Foundation and the OASIS Open Project, and as an advisor to the Brandeis University Open Technology Management program. She also represents OSI as a member of the Digital Public Goods Alliance. For eight years prior to her reentry into the nonprofit world, she led one of the world's largest open source program offices (OSPO) at Red Hat where her global team was responsible for the company's strategy and stewardship in open source software communities. While at Red Hat she served on the Eclipse Foundation board for two years. Deborah's published academic research includes the Use of Open Source in Cybersecurity in the Energy Industry and Collaborative Models for Creating Software in the Public Sector.  

IT Privacy and Security Weekly update.
Deep Dive. Keep it Safe. Featuring 21 Crypto scams to avoid. The IT Privacy and Security Weekly Update for the Week Ending March 11th., 2025

IT Privacy and Security Weekly update.

Play Episode Listen Later Mar 13, 2025 19:22


EP 233.5 Key Cryptocurrency Threats & ScamsIn 2025, crypto remains a hotspot for scams like Ponzi schemes, fake ICOs, pump-and-dumps, phishing attacks, and malicious wallets or exchanges designed to steal funds. Social media is often used for deceptive giveaways, impersonations, and investment scams. Other risks include fake mining operations, rug pulls, fraudulent apps, SIM swapping, and impostor tech support.AI Skills Demand in the Tech Job MarketAI expertise is increasingly sought after, with about one in four U.S. tech job postings requiring AI-related skills. This trend cuts across industries like healthcare, finance, and professional services. Although overall tech job postings have dipped, AI job listings have surged since ChatGPT's launch, offering premium pay and higher job security.What Is Free95?Free95 is an open-source operating system on GitHub aiming for Windows compatibility without the bloat. It currently supports basic Win32 programs, with future plans for DirectX and gaming. Its creators prioritize security, simplicity, and independence from major corporate control, positioning it as a leaner alternative to systems like ReactOS.DOJ Push for Google to Sell ChromeThe U.S. Department of Justice still wants Google to divest Chrome, citing an illegal monopoly in search. The DOJ argues that selling Chrome would create room for genuine competition. While it continues to push for restrictions on Google's paid search placement deals, it has dropped calls for Google to shed AI start-up investments.Edge Computing on the ISSAxiom Space and Red Hat's AxDCU-1 data center on the ISS tests cloud, AI, and cybersecurity in orbit. Red Hat's Device Edge software enables real-time data processing in space, crucial due to limited satellite links with Earth. This development could boost AI training, imaging, cybersecurity, and overall autonomy in space operations.Undocumented ‘Backdoor' in a Chinese Bluetooth ChipResearchers found hidden commands in the ESP32 microcontroller, used in over a billion devices. Attackers could exploit these commands to impersonate devices, steal data, or infiltrate networks. The chip's widespread adoption in smartphones, locks, and medical equipment heightens the security risk, as attackers might gain long-term control.Security & Privacy Concerns of ‘Agentic AI'Signal President Meredith Whittaker warns that agentic AI requires broad system access, potentially gathering financial, scheduling, and messaging data with near-root permissions. This could break down privacy barriers between apps and introduce significant security risks, especially if sensitive data is processed in the cloud.Expanded Social Media Screening for Non-CitizensThe U.S. is considering extending social media checks beyond new arrivals to all non-citizens applying for benefits like permanent residency or citizenship. This raises privacy concerns, as individuals who entered before such screenings were routine may now face additional digital scrutiny when adjusting their immigration status.

Code Story
S10 E23: Anthony Eden, DNSimple

Code Story

Play Episode Listen Later Mar 11, 2025 23:30


Anthony Eden is a gray beard in terms of internet time, being around when Netscape was released. He was studying music at the University of Miami, and decided to build a website to show off his music and other peoples work - and was hooked. Outside of tech, he grew up surfing, living in Hawaii, France and now Florida. He enjoys writing software for fun - when he has time - and playing board games with this kids - when they are around.In the past, Anthony was coming off of a failed startup. At the time, he was using a different vendor to manage domains and DNS - which he did not like at all. He decided to go forward and build a better solution, and one that is - you guessed it - simple.This is the creation story of DNSimple.SponsorsPropelAuthTeclaSpeakeasyQA WolfSnapTradeLinkshttps://dnsimple.com/https://www.linkedin.com/in/aeden/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

Code Story
S10 Bonus: Andrew Lau, Jellyfish

Code Story

Play Episode Listen Later Mar 6, 2025 26:38


Andrew Lau is located in Boston now, but is a California native. He grew up in Oakland, and calls himself the odd duck who went west instead of east, like most people. He went to the north east for school, and stayed to be apart of the startup world, interestingly enough with his current co-founders. Outside of tech, he's married to an AP Calculus teacher, and has two daughters. He enjoys cooking and making new cuisine with his kids. Fun fact, he is a certified barbecue judge in Kansas City, and has come to Texas a time or two to tour the Texas Monthly list.Andrew met his current co-founders in 1999. Recently, they re-connected, recalling the successes and camaraderie they had during their startup days. They recalled that the act of leading engineering teams is hard - and they wanted to build something that makes that easier.This is the creation story of Jellyfish.SponsorsPropelAuthTeclaSpeakeasyQA WolfSnapTradeLinkshttps://jellyfish.co/https://www.linkedin.com/in/amlau/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

T-Minus Space Daily
Ariane 6 back in action.

T-Minus Space Daily

Play Episode Listen Later Mar 6, 2025 27:47


Arianespace's Ariane 6 lifted off from French Guiana carrying a French spy satellite to sun-synchronous orbit. AST spaceMobile, Kayhan Space and LeoLabs collaborated on a demonstration to reduce US Space Force tracking times. Red Hat and Axiom have collaborated on an on-orbit data center which is scheduled to launch to the International Space Station this spring, and more. Remember to leave us a 5-star rating and review in your favorite podcast app. Be sure to follow T-Minus on LinkedIn and Instagram. T-Minus Guest Our guest today is Tom Roeder, Senior Data Analyst, Space Foundation. You can connect with Tom on LinkedIn, and learn more about the Space Foundation on their website. Selected Reading LIVE: Launch of European Space Agency's Ariane 6 rocket AST, Kayhan, LeoLabs team to demo capability to reduce Space Force satellite tracking times Red Hat Teams Up with Axiom Space to Launch, Optimize the Space Company's Data Center Unit-1 On Orbit | Business Wire BlackSky Reports Fourth Quarter and Full Year 2024 Results- Business Wire Firefly Aerospace Ready to Launch Alpha FLTA006 for Lockheed Martin's LM 400 Spacecraft No Earlier Than March 15 What time is SpaceX's Starship Flight 8 launch on today?- Space NASA Sets Coverage for Agency's SpaceX Crew-10 Launch, Docking UK Space Agency Awards SatixFy £1.8M for the Development of Advanced LEO Payload Software Ericsson, Qualcomm and Thales Alenia Space reach milestone in space-based connectivity Voyager Technologies Adds Space-Based Biopharma Company Space LiinTech to GWC Science Park NASA Turns Off 2 Voyager Science Instruments to Extend Mission T-Minus Crew Survey We want to hear from you! Please complete our 4 question survey. It'll help us get better and deliver you the most mission-critical space intel every day. Want to hear your company in the show? You too can reach the most influential leaders and operators in the industry. Here's our media kit. Contact us at space@n2k.com to request more info. Want to join us for an interview? Please send your pitch to space-editor@n2k.com and include your name, affiliation, and topic proposal. T-Minus is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Code Story
S10 E22: Ayush Agarwal, Dodo Payments

Code Story

Play Episode Listen Later Mar 4, 2025 19:58


Ayush Agarwal is a techy trying to code his way out of things. He graduated with a degree in Computer Science, but more importantly, he discovered entrepreneurship in college, inspired by his successful classmates. He spent years gathering experience in different startup verticals, including fintech. But outside of tech, he loves to play badminton, cricket, and hangout with friends. He is also big into Chess, which he mentioned enjoying Chess.com, as well as our recent interview with their CTO, Josh Levine.When Ayush met his now co-founder, they started to think through businesses and how much goes into setting up payments, taxes, etc. They started to dream about building this layer of payments, to enable builders to send and receive global payments easily, so they can focus on their core competencies.This is the creation story of Dodo Payments.SponsorsPropelAuthTeclaSpeakeasyQA WolfSnapTradeLinkshttps://dodopayments.com/https://www.linkedin.com/in/aagarwal1012/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

airhacks.fm podcast with adam bien
Java Scalability Considerations

airhacks.fm podcast with adam bien

Play Episode Listen Later Mar 2, 2025 68:44


An airhacks.fm conversation with Francesco Nigro (@forked_franz) about: Netty committer and performance engineer at Red Hat, discussion of Netty's history, focus on low-level core components like buffers and allocators in Netty, relationship between Vert.x and Netty where Vert.x provides a more opinionated and user-friendly abstraction over Netty, explanation of reactive back pressure implementation in Vert.x, performance advantages of Vert.x over Netty due to batching and reactive design, detailed explanation of IO_uring as a Linux-specific asynchronous I/O mechanism, comparison between event loop architecture and Project Loom for scalability, limitations of Loom when working with IO_uring due to design incompatibilities, discovery of a major Java type system scalability issue related to instance-of checks against interfaces, explanation of how this issue affected Hibernate performance, deep investigation using assembly-level analysis to identify the root cause, collaboration with Andrew Haley to fix the 20-year-old JDK issue, performance improvements of 2-3x after fixing the issue, discussion of CPU cache coherency problems in NUMA architectures, explanation of how container environments like kubernetes can worsen performance issues due to CPU scheduling, insights into how modern CPUs handle branch prediction and speculation, impact of branch misprediction on performance especially with memory access patterns, discussion of memory bandwidth limitations in AI/ML workloads, advantages of unified memory architectures like Apple M-series chips for AI inference Francesco Nigro on twitter: @forked_franz

YouTube Creators Hub
A Conversation With One Of YouTubes First Employees Ryan Carey

YouTube Creators Hub

Play Episode Listen Later Feb 28, 2025 36:14


In this episode of the YouTube Creators Hub podcast, host Dusty Porter speaks with Ryan Carey, CEO of Better On and one of YouTube's earliest team members. They discuss Ryan's journey from working at YouTube during its early days to founding Better On, a company focused on helping individuals enhance their presence and communication skills through video. The conversation delves into the importance of authenticity, building trust with audiences, and overcoming self-doubt as a creator. Ryan shares valuable insights on how to connect with audiences and the significance of self-awareness in the creative process. What We Offer Creators Join Creator Communities. A place to gather with other creators every single day. This provides you access to Our Private Discord Server, Monthly Mastermind Group, and MORE!  Hire Dusty To Be Your YouTube Coach Subscribe to our weekly newsletter. Each week I document what I'm doing in my business and creative journey, share new things I've discovered, mistakes I've made, and much more! Follow The Show: Facebook /// X /// YouTube /// Instagram About Ryan: Ryan Carey is the CEO behind BetterOn, a company dedicated to helping leaders and professionals build authentic presence on video, in person, and across workplaces. A pioneer in the video space, he was one of YouTube's earliest team members, witnessing firsthand the platform's explosive growth and transformative power. After his own journey as a YouTube content creator, Ryan launched BetterOn in 2014, combining his unique insights into video with a mission to elevate workplace communication. Forward thinking companies like Google, IBM, Deloitte, and Red Hat use BetterOn to invest in their high potential people. Connect With Ryan Here: BetterOn /// LinkedIn /// Instagram Request a Guest To Come On The Podcast:

Software Defined Talk
Episode 508: Software Defined Interviews Crossover: PaaS and Career Advice with Brian Gracely

Software Defined Talk

Play Episode Listen Later Feb 28, 2025 77:27


This week, we're sharing a Software Defined Interviews episode. Coté and Whitney talk with Brian Gracely from the Cloudcast and Red Hat about cloud news, PaaS evolution, and career advice. If you like this, subscribe to Software Defined Interviews for more great conversations! Subscribe to Software Defined Interviews (https://www.softwaredefinedinterviews.com/) Special Guests: Brian Gracely and Whitney Lee.

Code Story
S10 Bonus: Josh Ho, Referral Rock

Code Story

Play Episode Listen Later Feb 27, 2025 37:18


Josh Ho was into tech at a young age. In high school, which was around the time of bulletin boards and AOL online, he had to code a way to connect windows to the internet using TCP/IP. Outside of tech, he is married with a family. He notes that because he is in tech, people perceive him to be younger in age. He plays handball, and has been into the sport since he was younger.Prior to his current venture, Josh had a SaaS product he attempted to launch that didn't work out. While he was getting his car worked on at a dealership, he noticed patrons being referred to salesmen in real time - and he started to think, who manages this sort of thing for other businesses?This is the creation story of Referral Rock.SponsorsSpeakeasyQA WolfSnapTradeLinkshttps://referralrock.com/https://mojoho.com/https://www.linkedin.com/in/joshuajho/Our Sponsors:* Check out Kinsta: https://kinsta.com* Check out Red Hat: https://www.redhat.com* Check out Vanta: https://vanta.com/CODESTORYSupport this podcast at — https://redcircle.com/code-story/donationsAdvertising Inquiries: https://redcircle.com/brandsPrivacy & Opt-Out: https://redcircle.com/privacy

Ask Noah Show
Ask Noah Show 429

Ask Noah Show

Play Episode Listen Later Feb 26, 2025 53:51


This week Noah and Steve describe their geek weekend. Steve teaches Noah about containers, and takes on a cool ZFS on boot project! -- During The Show -- 01:00 Steve's Trip Went up North to visit Noah and Altispeed 02:22 Nextcloud on VMs - Bradly Nextcloud works better on VMs NFS challenges Give MariaDB lots of memory This is how enterprise deploys things All in one falls over Struggled to get real time collaboration to work Pass a zvol through to the VM S3 storage Ceph (https://docs.ceph.com/en/quincy/start/)/Gluster (https://www.gluster.org/) is complicated but most robust Pass a block device not another QCOW2 file 13:52 3D printing experience - Jeremy Prusa MK4S, open source friendly Handheld Framework Case (https://www.printables.com/model/1051411-framework-portable-handheld-case-beth-deck-rev-15) Creality 6 SE Creality Ender 3 Fully open vs high end 3D printers Cloud dependant 22:52 AI for interviews - Avri Interview Coder (https://github.com/ibttf/interview-coder) Red Hat interview story Kid using hotel kiosk 29:52 Forwarding SMS - PIX Beeper (https://www.beeper.com/) 32:50 Matrix Foundation How Matrix and Element started Matrix foundation split from Element/New Vector Matrix foundation lost half their budget $100,000 needed by March 31st Been providing bridges and matrix.org server Donate Now (matrix.org/support) Advocate or run your own server $610k Needed annually Blog Post (https://matrix.org/blog/2025/02/crossroads/) Matrix State of the Union YouTube (https://www.youtube.com/watch?v=1NQeE_Rm6as) 38:42 Steve's Trip 3 Laptops and mango server Steve leaving Fedora Encrypted laptop policy LUKS with ZFS on root AI trouble shooting Steve and containers at Altispeed Steve at the Church -- The Extra Credit Section -- For links to the articles and material referenced in this week's episode check out this week's page from our podcast dashboard! This Episode's Podcast Dashboard (http://podcast.asknoahshow.com/429) Phone Systems for Ask Noah provided by Voxtelesys (http://www.voxtelesys.com/asknoah) Join us in our dedicated chatroom #GeekLab:linuxdelta.com on Matrix (https://element.linuxdelta.com/#/room/#geeklab:linuxdelta.com) -- Stay In Touch -- Find all the resources for this show on the Ask Noah Dashboard Ask Noah Dashboard (http://www.asknoahshow.com) Need more help than a radio show can offer? Altispeed provides commercial IT services and they're excited to offer you a great deal for listening to the Ask Noah Show. Call today and ask about the discount for listeners of the Ask Noah Show! Altispeed Technologies (http://www.altispeed.com/) Contact Noah live [at] asknoahshow.com -- Twitter -- Noah - Kernellinux (https://twitter.com/kernellinux) Ask Noah Show (https://twitter.com/asknoahshow) Altispeed Technologies (https://twitter.com/altispeed)

Tech Optimist
#98 - Meet the Startup Elevating Sales With Intelligent Quoting Solutions

Tech Optimist

Play Episode Listen Later Feb 25, 2025 18:28


In this Meet the Startup episode of the Alumni Ventures Tech Optimist Podcast, Meera Oak speaks with Lizzie Matusov, co-founder and CEO of Quotient, about transforming developer productivity. Lizzie shares how Quotient leverages the SPACE framework to identify and resolve inefficiencies in engineering workflows, helping teams eliminate friction and collaborate more effectively. With her extensive experience at Red Hat and Invitae, Lizzie offers unique insights into creating smarter, more efficient engineering practices. This conversation highlights the future of developer efficiency and the tools shaping the next generation of software teams.To Learn More:Alumni Ventures (AV)AV LinkedInAV Women's FundTech OptimistQuotient Legal Disclosure:https://av-funds.com/tech-optimist-disclosuresCreators & Guests Meera Oak - Guest Lizzie Matusov - Guest

Alexa's Input (AI)
Revolutionizing Containers: SELinux, Container Security & AI with Dan Walsh (Part 2)

Alexa's Input (AI)

Play Episode Listen Later Feb 24, 2025 47:37


Security isn't an afterthought-it's the foundation of modern infrastructure. In this episode, Dan Walsh, Senior Distinguished Engineer at Red Hat, dives deep into the critical role of SELinux in container security and how it thwarts real-world vulnerabilities. We also explore Dan's latest project, Ramalama, which is bridging the gap between Al models and container technology, making Al enterprise-ready. If you've ever wondered how to balance security, usability, and innovation, this episode is must listen! Links:LinkedIn: https://www.linkedin.com/in/dan-walsh-a8729b2/Podman: ⁠https://podman.io⁠Buildah: ⁠https://buildah.io⁠CRI-O: ⁠https://cri-o.io⁠Skopeo: ⁠https://github.com/containers/skopeo⁠SELinux Project Documentation: ⁠https://selinuxproject.org⁠SELinux Coloring Book (Explains SELinux visually): ⁠https://github.com/SELinuxProject/selinux-coloring-book⁠Ramalama GitHub Repository: ⁠https://github.com/containers/ramalama⁠Introduction to Ramalama (Blog post, if available): Add a link if Daniel has written one or plans to."Podman in Action" by Daniel Walsh (Free PDF from Red Hat): ⁠https://developers.redhat.com/podman-in-action⁠Purchase "Podman in Action" on Amazon: ⁠https://www.amazon.com/Podman-Action-Daniel-J-Walsh/dp/1617299427⁠You can support this podcast on the ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠creators page⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠. Make sure to subscribe and follow ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Alexa's Input Twitter account⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ to get notified when a new podcast episode comes out.

The Talent Angle with Scott Engler
Cultivating Change Leaders, With Red Hat CPO Jennifer Dudeck

The Talent Angle with Scott Engler

Play Episode Listen Later Feb 18, 2025 42:01


Change agility — the ability to effectively manage and adapt to change — is a top leadership priority for organizations in 2025. As disruption becomes the norm, leaders must adapt and equip their teams to do the same. Red Hat CPO Jennifer Dudeck joins the Talent Angle Podcast to share her insights on how to lead through change and build a strong bench of future change-ready leaders. Jennifer Dudeck is Senior Vice President and Chief People Officer at Red Hat. In this role, she leads the team responsible for managing global human resources, administering payroll, and creating inspiring work environments supporting Red Hat's award-winning culture. She has more than 25 years of human resources experience across all functions with a focus on helping the teams she led maximize alignment with, and impact on, the enterprise Jennifer is passionate about improving the experience of being a Red Hatter. Throughout her time at Red Hat, she has driven increased focus on manager excellence, performance and development, and career mobility. Jennifer is also a thought leader on the opportunities and challenges created by the convergence of AI and human resources. Jennifer has been a change leader across the enterprise, playing an active role in multiple major transformational initiatives in previous roles. Before joining Red Hat, Jennifer worked with Cisco Systems most recently as Vice President of the Transformation Office focused on enabling ongoing employee engagement, growth, and business impact. During her time with the company, she also held various leadership roles across the human resources function. Prior to that, Jennifer held several business-aligned human resources roles at Honeywell Corp.'s Aerospace and Performance Materials business units. Peter Aykens is the chief of research for Gartner's HR practice. Aykens is responsible for building and leading research teams within the practice to address clients' key initiatives. Before his current role, he spent over 25 years at Gartner leading research teams focused on banking and financial services strategy, producing numerous studies that addressed business strategy, channels, marketing, customer experience and product challenges. He holds a bachelor's degree in political science from St. Olaf College, a master's degree in international politics from Aberystwyth University (formerly known as the University College of Wales, Aberystwyth), and a master's degree and a doctorate in political science from Brown University.

Beyond Clean Podcast
Planet Surgery: The Other Red Hat: Surgery Trials Through the Eyes of Our Vendors

Beyond Clean Podcast

Play Episode Listen Later Feb 10, 2025 39:12


When advocating for SPD becomes more important than selling products, you know there's a bigger story to tell! Join Territory Manager Jeremy Adler on this week's episode of Beyond Clean's Planet Surgery as he reveals why building strong partnerships between vendors and Sterile Processing is the key to making every surgery possible. From successful product trials and in-services to building lasting partnerships, discover what happens when vendors become Sterile Processing's biggest champions. With insights from both the OR and SPD, this is one vendor's perspective you don't want to miss – tune in today! Season 27 of Beyond Clean releases under the 1 Episode = 1 CE delivery model. After finishing this interview, earn your 1 CE credit immediately by passing the short quiz linked below each week. Visit our CE Credit Hub at https://www.beyondcleanmedia.com/ce-credit-hub to access this quiz and over 350 other free CE credits.  #BeyondClean #SterileProcessing #Podcast #Season27 #PlanetSurgery #Vendors #SurgeryTrials

Late Night Linux
Late Night Linux – Episode 319

Late Night Linux

Play Episode Listen Later Feb 3, 2025 31:08


What if Qt had been under a friendlier licence? Would KDE have become the standard desktop instead of GNOME? What if IBM hadn't bought Red Hat? Plus a self-hostable workflow automation platform, simple systemd management, and Redshift on Xfce in Discoveries. Then we wonder why there seems to be less in the way of interesting... Read More

Kubernetes Podcast from Google
Linkerd, with William Morgan

Kubernetes Podcast from Google

Play Episode Listen Later Jan 29, 2025 53:06


William Morgan is the CEO of Buoyant, the company behind Linkerd. You worked at Twitter before as a software engineer and engineering manager and you have a long experience in the field.   Do you have something cool to share? Some questions? Let us know: - web: kubernetespodcast.com - mail: kubernetespodcast@google.com - twitter: @kubernetespod - bluesky: @kubernetespodcast.com   News of the week RedHat blog: Next generation multicluster application connectivity and traffic policy management KubeCon EU 2025 schedule CFP for KubeCon Japan (closes Feb 2, 2025) CFP for KubeCon China (closes Feb 2, 2025) CFP for KubeCon India (closes March 23, 2025) kubezonnet   Links from the interview linkerd.io Linkerd on GitHub Linkerd architecture “Linkerd doesn't use Envoy” Blog Post (2020) envoyproxy.io Sidecar containers in Kubernetes Linkerd2 on GitHub Rust programming language Dynamic Admission Control (Mutating Webhooks) Linkerd Multi-cluster Federated Services KubeCon NA 2024, “Open Source 2.0: The Maintainers' Perspective - Panel” Cloud Native Startup Fest, “​​Panel: Startups With Open Source Projects: Can They Be Successful in the CNCF? And Should They Be?”