Insights for the modern cloud
In-depth guides, tutorials, and best practices for AWS, Azure, GCP, and OCI.

GKE ClusterNetworkPolicy introduces tiered enforcement for cluster-wide network security
ClusterNetworkPolicy adds admin, network policy, and baseline tiers to GKE, enabling centralized security guardrails without overriding developer namespace policies.

ReadyOn’s Four Walls Model for Tenant Isolation on Amazon EKS
ReadyOn uses four independent layers—Kubernetes namespaces, Karpenter node pools, VPC security groups, and per-tenant Aurora databases—to isolate tenant workloads on EKS for zero-trust security.

Three DR patterns for AWS Outposts and Local Zones with clear RTO/RPO trade-offs
AWS outlines DNS failover, active/active load balancing, and hybrid database replication for disaster recovery spanning Outposts racks and Local Zones, detailing recovery objectives for each approach.

Running Multi-Day AZ Evacuation Drills with ARC Zonal Shift
Learn how to run a 48-72 hour Availability Zone evacuation drill using ARC Zonal Shift across ECS, EKS, RDS, and Aurora PostgreSQL with step-by-step CLI commands and observability practices.

AI-powered BEC scams use deepfake execs and fake invoices to steal ACH payments
Microsoft details a new AI-assisted business email compromise campaign that impersonates executives and forges invoices to trick finance teams into sending fraudulent ACH payments.

How Storm-3068 turned a leaked credential into full Azure tenant takeover
Attackers used a compromised developer identity to pivot from source code repos to cloud admin rights, exposing gaps in identity hygiene and pipeline security.

Azure Developer CLI Extension Framework GA Enables Custom Dev Workflows
The Azure Developer CLI (azd) extension framework is now generally available, allowing teams to build and share custom workflows for project initialization, deployment, and validation.

GKE ClusterNetworkPolicy introduces tiered enforcement for cluster-wide network security
ClusterNetworkPolicy adds admin, network policy, and baseline tiers to GKE, enabling centralized security guardrails without overriding developer namespace policies.

Spanner Omni GA: Deploy Google-grade distributed SQL anywhere
Spanner Omni is now generally available, offering the same multi-model capabilities as managed Spanner for self-managed deployment on-premises, in other clouds, or locally.

How to connect your coding agent to Google Cloud data with Data Agent Kit
Data Agent Kit is now generally available, letting coding agents like Claude Code and Antigravity work directly with BigQuery, Bigtable, and Spark using MCP tools and Google-authored skills.