article thumbnail

InfoSec 2022 guide: How DevSecOps practices drive organizational resilience

Dynatrace

Open source code, for example, has generated new threat vectors for attackers to exploit. A case in point is Log4Shell, which emerged in late 2021 and exposed open source libraries to exploitation. Dynatrace introduces automatic vulnerability management for PHP open source scripting language – blog.

article thumbnail

New critical vulnerability, CVE-2022-42889, in Apache Commons Text discovered (but no need to panic)

Dynatrace

A new critical remote code execution (RCE) vulnerability was disclosed on October 13, 2022. While some view CVE-2022-42889 as the next Log4Shell vulnerability , others see its impact as more limited. CVE-2022-42889 not as critical as Log4Shell. CVE-2022-42889 not as critical as Log4Shell.

Java 218
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Trending Sources

article thumbnail

RSA 2022 guide: DevSecOps transformation with runtime vulnerability management

Dynatrace

In addition, as businesses of all kinds adopt cloud-native and open source technologies, their environments become more flexible. At RSA 2022 , the theme is Transform. In short, organizations can’t get mired in operational silos and inefficient work processes. However, these technologies can add to the complexity.

Strategy 218
article thumbnail

Kubernetes in the wild report 2023

Dynatrace

Kubernetes moved to the cloud in 2022. Open-source software drives a vibrant Kubernetes ecosystem. Kubernetes moved to the cloud in 2022. In 2022, Kubernetes became the key platform for moving workloads to the public cloud. Likewise, the share of cloud-hosted clusters increased from 31% in 2021 to 45% in 2022.

article thumbnail

USENIX SREcon APAC 2022: Computing Performance: What's on the Horizon

Brendan Gregg

It was a great privilege. ## SREcon 2023 CFP Tech moves fast, however, and I have little time to reflect on 2022 when there's 2023 to plan! And now, helping bring USENIX conferences to Australia by giving the first keynote: I could not have scripted or expected it. The call for participation ends on March 2nd 23:59 SGT!

article thumbnail

RSA Guide 2023: Cloud application security remains core challenge for organizations

Dynatrace

The CVE Program, which publishes vulnerabilities as they become known, reported a 25% increase in vulnerabilities between 2021 and 2022. At the same time, the pervasiveness of open source has also helped expose vulnerabilities and, as a result, made some software flaws easier to detect and fix.

Cloud 180
article thumbnail

All of Netflix’s HDR video streaming is now dynamically optimized

The Netflix TechBlog

We A/B tested HDR-DO encodes in production in Q3-Q4 2021, followed by improving the ladder generation algorithm further in early 2022. We started backfilling HDR-DO encodes for existing titles from Q2 2022. Yes, we are committed to supporting the open-source community. By June 2023 the entire HDR catalog was optimized.