Security as a working bench
The strongest thread in opexxx is security as engineering work. Kubernetes ingress, certificate automation, service proxies, sidecars, single sign-on and managed cloud comparisons appear not as abstract trends but as implementation problems that need diagrams, defaults and trade-offs.
The feed also keeps one foot in the testing bench. OWASP material, vulnerability discovery, exploitation notes and tool statistics sit beside defensive documentation, which gives the topic a practical red-team and blue-team rhythm.
News is present, but it is filtered through usefulness. A story like the OpenSSL scare matters here because it changes how practitioners assess risk, patch systems and explain urgency, not because it supplies drama.
The occasional workforce and mentoring items broaden the frame. They suggest a view of infosec as a living practice: skills, tools, communities and operating knowledge all need maintenance.
- Further reading
- Service proxy, pod, sidecar, oh my!
- Managed Kubernetes Services Compared: GKE vs. EKS vs. AKS | by Bharat Arimilli | Better Programming | Sep, 2020
- Securing K8s Ingress Traffic with HashiCorp Vault PKIaaS and JetStack Cert-Manager | by Nicolas Ehrman | HashiCorp Solutions Engineering Blog
- Single Sign-On in Kubernetes. When I’ve just started working on this… | by Andrii Sumko | Aug, 2020
- Terraform your physical network with YANG