DevOps Weekly Digest - Week 24, 2026
⚡ Curated updates from Kubernetes, cloud native tooling, CI/CD, IaC, observability, and security - handpicked for DevOps professionals!
📌 Handpicked by DevOps Daily - Your weekly dose of curated DevOps news and updates!
⚓ Kubernetes
📄 Benchmarking KubeVirt performance with virtbench
Organizations migrating VM estates from traditional hypervisors to KubeVirt often discover that many Kubernetes observability tools were originally designed around container workloads rather than VM-c
📅 Jun 8, 2026 • 📰 CNCF Blog
📄 Scaling the future: How Garanti BBVA manages etcd in massive Red Hat OpenShift environments
At the OpenShift Commons Gathering in Amsterdam on March 23—a Day Zero event for KubeCon + CloudNativeCon Europe 2026—attendees got a deep look into the engine room of 1 of Turkey's largest private ba
📅 Jun 5, 2026 • 📰 OpenShift Blog
📄 The path to autonomous intelligent networks
Telecommunications (telco) service providers face a landscape of massive operational complexity. As they adopt 5G standalone architectures and multivendor radio access networks (RANs), they must manag
📅 Jun 4, 2026 • 📰 OpenShift Blog
📄 Build an EKS Environment Factory with Pulumi and vCluster
AWS reports in an AWS Architecture Blog case study that Deloitte’s move to a virtual cluster model on Amazon EKS resulted in 89% faster testing environment provisioning. By consolidating dozens of dis
📅 Jun 4, 2026 • 📰 Pulumi Blog
📄 Field Notes: Using the Harvester CSI Driver to consume Longhorn storage in your guest cluster
When running a guest Kubernetes cluster inside SUSE Virtualization/Harvester, you get the best of both worlds: bare-metal performance with VM-level flexibility. It’s a really common pattern: you insta
📅 Jun 3, 2026 • 📰 SUSE Blog
📄 OpenShift Virtualization 4.21: Removing complexity from your virtual machine networking workflow
Red Hat OpenShift Virtualization 4.21 introduces highly anticipated networking design flows to simplify network management. Tailored to VM network requirements, this complete workflow lets you more ef
📅 Jun 2, 2026 • 📰 OpenShift Blog
📄 From Kubernetes Dashboard to Headlamp: Understanding the Transition
For many people, Kubernetes Dashboard was their first window into Kubernetes. It offered a simple visual way to see what was running in a cluster, inspect resources, and build confidence without relyi
📅 Jun 1, 2026 • 📰 Kubernetes Blog
☁️ Cloud Native
📄 Breaking free of a single datacenter: Practical geo-distributed AI operations with the k0smos platforms
Breaking the single datacenter assumption Modern AI architectures are built on the assumption of centralized, homogeneous data centers. In reality, infrastructure is messy. For most organizations, com
📅 Jun 8, 2026 • 📰 CNCF Blog
📄 Amazon ECS with AWS Fargate now supports 32vCPU compute configurations
Amazon Elastic Container Service (Amazon ECS) with AWS Fargate now supports 32vCPU compute configurations, enabling customers to run more demanding applications with greater flexibility and performanc
📅 Jun 5, 2026 • 📰 CloudFormation Updates
📄 Identity and Access Management Whitepaper
As cloud native architectures become more distributed, dynamic, and automated, identity increasingly becomes the new security perimeter. Traditional approaches to authentication and authorization stru
📅 Jun 4, 2026 • 📰 CNCF Blog
📄 Hardened Images Explained: Fewer CVEs, Smaller Attack Surface
When security teams scan their container environments for the first time, they often discover hundreds of known vulnerabilities, and almost none of them trace back to application code. The overwhelmin
📅 Jun 4, 2026 • 📰 Docker Blog
📄 Yugandhar Suthari
CNCF Kyverno maintainer, KubeCon Europe 2026 Program Committee member, KyvernoCon 2025–2026 program comittee and speaker, Golden Kubestronaut
📅 Jun 3, 2026 • 📰 KubeCon Updates
📄 Fragnesia and friends: When page cache vulnerabilities keep coming back
A couple of weeks ago, I wrote about Copy-Fail (CVE-2026-31431) and how Red Hat OpenShift’s defense-in-depth approach prevented container escape despite a vulnerable kernel. I spent time actively tryi
📅 Jun 2, 2026 • 📰 OpenShift Blog
🔄 CI/CD
📄 Shai-Hulud Miasma: Inside the Compromise of Red Hat Packages
An in-depth look at the Miasma supply chain attack that compromised Red Hat npm packages. Learn how the malware spread, stole credentials, abused trusted publishing, and the steps teams can take to mi
📅 Jun 5, 2026 • 📰 Harness Blog
📄 GitHub Universe is back: All together now, in the agentic era
GitHub Universe is back: returning to the historic Fort Mason Center in San Francisco on October 28–29, 2026. The post GitHub Universe is back: All together now, in the agentic era appeared first on T
📅 Jun 4, 2026 • 📰 GitHub Blog
📄 Securing CI/CD for an open source project: Controlling who runs what
Part one The last twelve months have been rough on the open source supply chain. Axios was compromised on npm and shipped a remote access trojan inside otherwise normal-looking releases. LiteLLM’s PyP
📅 Jun 4, 2026 • 📰 CNCF Blog
📄 GitHub Copilot app: The agent-native desktop experience
At Microsoft Build 2026, GitHub introduced new tools, updates, and surfaces so agents can work the way you already work. The post GitHub Copilot app: The agent-native desktop experience appeared first
📅 Jun 2, 2026 • 📰 GitHub Blog
🏗️ IaC
📄 Amazon Bedrock AgentCore Runtime introduces interactive shells for terminal access into agent sessions
Amazon Bedrock AgentCore Runtime now supports interactive shells through a new InvokeAgentRuntimeCommandShell API, opening a persistent, PTY-backed terminal directly into a running agent session over
📅 Jun 5, 2026 • 📰 CloudFormation Updates
📄 Trigger Deployments on Git Tags
A git tag is how many teams mark a release as ready. Pulumi Deployments can now act on that signal directly: configure a tag-based trigger, push a version tag like v1.2.0, and Pulumi automatically run
📅 Jun 5, 2026 • 📰 Pulumi Blog
📄 Use Your Mac for AI Agents: Self-Host Gemma 4 12 B with Pulumi and Tailscale
If you run AI tools and agents, you’ve probably accepted three tradeoffs: your data leaves your network, you can’t work offline, and your bill scales with usage. Open-weight models now run well on con
📅 Jun 4, 2026 • 📰 Pulumi Blog
📄 Why Choose Pulumi Over Terraform?
Terraform is a proven infrastructure as code tool with a large provider and module ecosystem. Many teams choose Pulumi when they want to keep that infrastructure as code model, but write and maintain
📅 Jun 2, 2026 • 📰 Pulumi Blog
📊 Observability
📄 From Cool Demo to Production-Ready: How We Made an AI Travel Agent Trustworthy with New Relic
A walkthrough of taking an AI Travel Agent (WanderAI) from a demo to production, covering OpenTelemetry tracing, AI monitoring, SLOs, and prompt injection defense.
📅 Jun 8, 2026 • 📰 New Relic Blog
📄 Building the Future of Telemetry in the Open
New Relic Experimental is our open-source incubator designed to bridge the gap between emerging tech and enterprise observability.
📅 Jun 8, 2026 • 📰 New Relic Blog
📄 Errors, traces, logs, metrics: when to reach for what
Errors, traces, logs, and metrics overlap enough that it's hard to know which to use. Here's when to reach for each signal, with a real debugging walkthrough.
📅 Jun 5, 2026 • 📰 Sentry Blog
📄 Supercharge SAP on AWS: Intelligent Observability for the hybrid enterprise
Supercharge SAP on AWS transformation with New Relic's intelligent observability. Get full-stack visibility across hybrid and RISE with SAP environments.
📅 Jun 3, 2026 • 📰 New Relic Blog
📄 New Relic and Microsoft: Intelligent Observability for the Agentic Era
See how New Relic and Microsoft are embedding Intelligent Observability into Azure workflows and what we’ve built for teams deploying AI in production.
📅 Jun 2, 2026 • 📰 New Relic Blog
🔐 Security
📄 Threats Making WAVs - Incident Response to a Cryptomining Attack
Guardicore security researchers describe and uncover a full analysis of a cryptomining attack, which hid a cryptominer inside WAV files. The report includes the full attack vectors, from detection, in
📅 Jun 8, 2026 • 📰 Linode Blog
📄 What is AI Governance? Frameworks, Principles, and Best Practices
AI agents are moving fast. According to our State of Agentic AI report, 60% of organizations already have AI agents in production, yet 40% cite security and compliance as the number-one barrier to sca
📅 Jun 5, 2026 • 📰 Docker Blog
📄 Secure Code Warrior Leverages AI to Extend DevSecOps Training Reach
Secure Code Warrior this week extended the capability of its artificial intelligence (AI) agent to make it possible to surface relevant training insights in real time as application developers are wri
📅 Jun 5, 2026 • 📰 DevOps.com
📄 Build security into ITOps from the start with automation
It's no secret that IT operations is a complex area. Teams face demanding workloads, where many tasks have to be completed quickly. Objectives typically focus on smooth and resilient operations, and e
📅 Jun 5, 2026 • 📰 Red Hat Blog
📄 Planning your path forward from Amazon Linux 2: Why consistency is the ultimate upgrade
Amazon Linux 2 reaches end of life (EOL) on June 30, 2026. If your migration isn't already underway, the window to move deliberately rather than reactively is narrowing. Migrating business-critical wo
📅 Jun 5, 2026 • 📰 Red Hat Blog
📄 Friday Five — June 5, 2026
InfoWorld - IBM and Red Hat want to become the ‘security clearinghouse’ for open source applications in the enterpriseInfoWorld looks at IBM and Red Hat's Project Lightwell, a $5 billion initiative ba
📅 Jun 5, 2026 • 📰 Red Hat Blog
📄 So You Have an AI Security Budget. Now what?
An AI security budget should fund more than visibility. The real priority is unified governance and enforcement across agentic development and production apps.
📅 Jun 4, 2026 • 📰 Snyk Blog
📄 Node-gyp Supply Chain Compromise: A Self-Propagating npm Worm That Hides in binding.gyp
A new npm worm is abusing binding.gyp to trigger node-gyp during install, letting malicious packages run code without lifecycle scripts. It steals credentials, persists in GitHub, and self-propagates
📅 Jun 4, 2026 • 📰 Snyk Blog
📄 Type Level Security: The future of secure AI code generation?
Secure-by-design types can turn common bugs into compile-time errors. This post explores how type-level security could help prevent entire classes of AI-generated vulnerabilities.
📅 Jun 4, 2026 • 📰 Snyk Blog
📄 What is Software Supply Chain Security?
Software supply chain attacks have accelerated faster than most security teams anticipated. Sonatype's 2026 State of the Software Supply Chain report identified more than 454,000 new malicious package
📅 Jun 3, 2026 • 📰 Docker Blog
📄 Harness May 2026 Product Updates: 60+ New Features
See 60+ Harness updates from May 2026 across AI-native development, software delivery, security, artifact management, cost visibility, and engineering insights. | Blog
📅 Jun 3, 2026 • 📰 Harness Blog
📄 The New Security Risks of the Agentic Development Lifecycle
AI agents are changing how software gets built, and with it, where security risk begins. Learn why securing the process matters as much as securing the code.
📅 Jun 3, 2026 • 📰 Snyk Blog
💾 Databases
📄 The Laptop Return that Broke a RAG Pipeline
Editor’s note: This post originally appeared on The New Stack and is republished with permission. The original version is available here. A few months ago, one of our users filed a bug report that stu
📅 Jun 4, 2026 • 📰 TiDB Blog
📄 What’s new with Google Data Cloud
June 1 - June 5 Beyond the Query: Powering AI Agents with Bigtable, Firestore & Memorystore Discover the latest advancements in Google Cloud's NoSQL Database portfolio, including Bigtable, Firestore,
📅 Jun 4, 2026 • 📰 Google Cloud Blog
📄 Get Started with Meko: Agent Memory with Built-in Discernment
With Meko, your project context lives in a datapack any MCP-connected client can read. This allows you to switch tools without losing context, share useful information with your team while keeping sel
📅 Jun 4, 2026 • 📰 Yugabyte Blog
📄 PostgreSQL 19 Beta 1 Released!
The PostgreSQL Global Development Group announces that the first beta release of PostgreSQL 19 is now available for download. This release contains PostgreSQL 19 feature previews ahead of general avai
📅 Jun 4, 2026 • 📰 PostgreSQL News
📄 Agentic Supplier Management with MongoDB Atlas, Voyage AI, and Multi-Modal Search
Retail supply chains are not a back-office logistics function; they are a high-stakes, board-level concern. Imagine learning suddenly that shipment rerouting surcharges have doubled due to new regiona
📅 Jun 3, 2026 • 📰 MongoDB Blog
📄 Powering the Inference Era: Inside the DigitalOcean Data & Learning Layer
Building an AI-native application requires a data layer that can do two things at once: handle the structured, transactional queries your application runs on, and understand meaning well enough to pow
📅 Jun 3, 2026 • 📰 DigitalOcean Blog
📄 AI reasoning explained: smarter models still need context
Every few months, a new AI model drops with higher benchmark scores, and the reaction is predictable: "This one finally reasons." The leaderboard shuffles. And teams building production AI systems sti
📅 Jun 3, 2026 • 📰 Redis Blog
📄 Semantic layer vs context layer: where BI modeling ends & AI grounding begins
Your BI semantic layer solved a hard problem: getting every team, dashboard, and report to agree on what shared metrics like "revenue," "active customer," or "customer acquisition cost" actually mean.
📅 Jun 3, 2026 • 📰 Redis Blog
📄 Dear cqlsh: Your dependencies were killing us (P.S. We rewrote you in Rust)
A story of rewriting cqlsh in Rust…with Claude Code and a lot of planning Dear cqlsh, I vouched for you. I told the team you were fine. I forked you, catered to you, vendored your dependencies and you
📅 Jun 2, 2026 • 📰 ScyllaDB Blog
📄 The Beautiful Game: Winning at Scale with a Multi-Agent Strategy
During major live sporting events, peak traffic reaches unprecedented levels, and customers expect a flawless in-the-moment experience. The right data infrastructure separates the platforms that win f
📅 Jun 2, 2026 • 📰 Yugabyte Blog
📄 Why your AI doesn't understand your business (& how teams fix it)
Your AI can summarize documents and answer questions about almost anything on the internet. But ask it about your business, and things fall apart. It pulls stale pricing, ignores internal policies, or
📅 Jun 2, 2026 • 📰 Redis Blog
📄 Diving deep into Redis’s new array data type
The most popular data types in Redis are strings, lists, hashes, sets, and sorted sets. Each is purpose-built around a specific way of organizing data, enabling developers to solve a wide range of tec
📅 Jun 2, 2026 • 📰 Redis Blog
🌐 Platforms
📄 Keep Your Tech Flame Alive: Trailblazer Rachel Bayley
In this Akamai FLAME Trailblazer blog post, Rachel Bayley encourages women to step into the unknown and to be their authentic selves.
📅 Jun 8, 2026 • 📰 Linode Blog
📄 The Oracle of Delphi Will Steal Your Credentials
Our deception technology is able to reroute attackers into honeypots, where they believe that they found their real target. The attacks brute forced passwords for RDP credentials to connect to the vic
📅 Jun 8, 2026 • 📰 Linode Blog
📄 The Nansh0u Campaign – Hackers Arsenal Grows Stronger
In the beginning of April, three attacks detected in the Guardicore Global Sensor Network (GGSN) caught our attention. All three had source IP addresses originating in South-Africa and hosted by Volum
📅 Jun 8, 2026 • 📰 Linode Blog
📄 Simplified permissions for Amazon S3 Tables and Iceberg materialized views are now available in AWS GovCloud (US) Regions
AWS Glue Data Catalog now supports AWS IAM-based authorization for Amazon S3 Tables and Apache Iceberg materialized views. With IAM-based authorization, you can define all necessary permissions across
📅 Jun 5, 2026 • 📰 CloudFormation Updates
📄 Amazon OpenSearch UI is now available in GovCloud regions
Amazon OpenSearch Service expands its modernized operational analytics experience to GovCloud regions, including AWS GovCloud (US-East) and AWS GovCloud (US-West), enabling users to gain insights acro
📅 Jun 5, 2026 • 📰 CloudFormation Updates
📄 What’s new with Google Cloud
Want to know the latest from Google Cloud? Find it here in one handy location. Check back regularly for our newest updates, announcements, resources, events, learning opportunities, and more. Tip: Not
📅 Jun 5, 2026 • 📰 Google Cloud Blog
📄 Seeking Counsel: Ongoing Targeted Campaign Against US Law Firms
Written by: Chad Reams, Tufail Ahmed, Keith Knapp, Ashley Frazer, Tyler McLellan Introduction From January through May 2026, Mandiant identified a financially motivated data theft extortion campaign e
📅 Jun 5, 2026 • 📰 Google Cloud Blog
📄 Your AI bill is out of control. Cloudflare can fix it now.
AI Gateway now features real-time spend limits to prevent runaway token bills across multiple AI providers. By integrating with Cloudflare Access, companies can use identity-driven budgets and policie
📅 Jun 5, 2026 • 📰 Cloudflare Blog
📄 From metal to agent: Why agentic AI is an application evolution
We’re moving beyond simple prompts. The next frontier is agentic AI: autonomous systems that don’t just talk, but act across your enterprise. But as we move into this era, I’m hearing a consistent con
📅 Jun 5, 2026 • 📰 Red Hat Blog
📄 Model Evaluations: Prove Your Routing Policy Actually Works
Most teams running inference at scale do not fail because they cannot find a “good” model. They fail because they ship a routing policy that looks fine in a playground, but drifts the moment it sees r
📅 Jun 4, 2026 • 📰 DigitalOcean Blog
📄 What's new for Managed Service for Apache Spark clusters
At Google Cloud, our goal is to let you run large-scale analytical and data science workloads with maximum efficiency so you can process big data pipelines, machine learning, and ETL tasks. We recentl
📅 Jun 4, 2026 • 📰 Google Cloud Blog
📄 Debug deployment failures faster with the Deployments tab in AWS Elastic Beanstalk
Introduction When a deployment fails, finding the root cause often means piecing together information from multiple sources. You wait for the deployment to finish, request a log bundle, download it, a
📅 Jun 4, 2026 • 📰 AWS DevOps Blog
📰 Misc
📄 Visual Studio Code 1.124
Learn what's new in Visual Studio Code 1.124 (Insiders) Read the full article
📅 Jun 10, 2026 • 📰 VS Code Blog
📄 With Foundry, Microsoft bets the enterprise AI battle is about reliability, not capability
The agentic AI wave has produced no shortage of impressive demos. What it has produced less of is agents that The post With Foundry, Microsoft bets the enterprise AI battle is about reliability, not c
📅 Jun 8, 2026 • 📰 The New Stack
📄 Microsoft unlocks Visual Studio for developers left behind by its own AI
Microsoft used its Build 2026 conference last week to announce a series of updates to its flagship Visual Studio IDE The post Microsoft unlocks Visual Studio for developers left behind by its own AI a
📅 Jun 8, 2026 • 📰 The New Stack
📄 AI teams now deploy 1,000 times a month. Your pipeline wasn’t built for that.
There’s mounting evidence that AI coding tools are delivering on their less outlandish promises. With adoption shifting from 76% in The post AI teams now deploy 1,000 times a month. Your pipeline wasn
📅 Jun 7, 2026 • 📰 The New Stack
📄 Microsoft just made the agent runtime free — and kept everything around it
Microsoft has the engineers to build its own agent runtime. At Build 2026 last week, it chose not to, shipping The post Microsoft just made the agent runtime free — and kept everything around it appea
📅 Jun 7, 2026 • 📰 The New Stack
📄 AI Is Accelerating DevOps, Poor Integrations Are Slowing It Down
As AI speeds up software delivery, the real bottleneck isn’t scanning or CI. It’s how safely and predictably change moves across tools, teams, and companies. Something strange is happening in DevOps r
📅 Jun 5, 2026 • 📰 DevOps.com
📄 IronWorm Malware Shares Shai-Hulud Traits, Takes Threat to ‘Next Level’
Open source software developers continue to come under attack, with the latest threat being a custom malware that shares many of the attributes of the notorious Shai-Hulud self-propagating worm but co
📅 Jun 5, 2026 • 📰 DevOps.com
📄 Cloudflare Acquires VoidZero to Advance Open Source Vite Ecosystem
Cloudflare this week acquired VoidZero, the maintainer of open source tools such as Vite, Vitest, Rolldown, Oxc, and Vite+ that are used widely to build web application frameworks. Rita Kozlov, vice p
📅 Jun 5, 2026 • 📰 DevOps.com
📄 Why Zig Isn’t 1.0 (Yet)
Most programming languages follow a familiar trajectory: early experimental releases, rapid iteration, and then – at some point – a 1.0 version that signals stability and the potential for serious ado
📅 Jun 5, 2026 • 📰 JetBrains Blog
📄 Java Annotated Monthly – June 2026
A fresh edition of Java Annotated Monthly has landed! The world of software development keeps moving at full speed, and this month’s selection helps you keep up without drowning in tabs. Inside, you’l
📅 Jun 5, 2026 • 📰 JetBrains Blog
📄 Beyond tokens per watt – using Ubuntu 26.04 LTS for AI
Tokens per watt (TpW) – the measure of useful AI work produced per watt of energy consumed – is the metric at top of mind for CEOs, heads of AI, and infrastructure teams alike. With the tremendous cos
📅 Jun 5, 2026 • 📰 Ubuntu Blog
📄 Cyber Resilience Act (CRA): How SUSE Provides Innovation and Trust in the Secure Software Era
The European Union’s Cyber Resilience Act (CRA) represents a historic evolution in the global digital landscape. Rather than viewing it as a regulatory hurdle, forward-thinking enterprises recognize t
📅 Jun 4, 2026 • 📰 SUSE Blog
We earn commissions when you shop through the links below.
DigitalOcean
Cloud infrastructure for developers
Simple, reliable cloud computing designed for developers
DevDojo
Developer community & tools
Join a community of developers sharing knowledge and tools
SMTPfast
Developer-first email API
Send transactional and marketing email through a clean REST API. Detailed logs, webhooks, and embeddable signup forms in one dashboard.
QuizAPI
Developer-first quiz platform
Build, generate, and embed quizzes with a powerful REST API. AI-powered question generation and live multiplayer.
Want to support DevOps Daily and reach thousands of developers?
Become a SponsorFound an issue?
Help us improve this content by reporting any errors, typos, or suggestions for enhancement.