#containers
20 posts · Last used 18d
Checked 25 popular infra/app repos. Of the 16 with a clear primary image, 8 (50.0%) ship a final stage with no non-root USER line. Half of the images developers actually pull. Method and per-file data in the study.
#containers #docker #appsec
https://zennoxa.com/research/container-root-user-2026
Jails, Not Containers: FreeBSD Isolation Done Right – Umair Khurshid | Klara Systems
Containers play a major role in modern infrastructure, but they are not the right answer for every workload. This article explores how FreeBSD jails provide purpose-built isolation, predictable security boundaries, and deep ZFS integration—making them ideal infrastructure-grade services where stability is essential. …
Via |
#FreeBSD #jails #Linux #containers
Replying to
@henry@techlore.tv so many peeps have said this in the past few days, & it is exasperating, coz it is not trueFirefox just made them nativethey did not "just" do this now. in my
and
i have been using the native #containers without an addon, for at least a year. both browser variants have had this native capability ipso facto for at least one year... otherwise i could not have been using this capability.
why are so many peeps being so misleading about this?
#firefoxnightly #firefox
Replying to
@linuxiac@mastodon.social @mozilla@mastodon.social you & many other tech sites are pushing this line, also Mozilla themselves, about the "new" native #Containers. it's totes blowing my mind. i have been using this already for the last year at least, sans AO, in my
and
, & so simply cannot understand how anyone can now call it "new" 🤷😮🤯.
user_pref("privacy.userContext.enabled", true);
user_pref("privacy.userContext.newTabContainerOnLeftClick.enabled", true);
user_pref("privacy.userContext.ui.enabled", true);
These reports seem rather misleading afaict.
cc: @firefoxnightly@mastodon.social#userJS #firefox #firefoxnightly #dropbearpooterising #linuxwomen
Reading up a bit on Linux containers
I wonder if the efficiency of them is close to that of freeBSD jails
https://linuxcontainers.org/
#Containers #VM #freeBSD #jails #programming #XEN #networking
📦️ Jails, Not Containers: FreeBSD Isolation Done Right - Klara Systems https://klarasystems.com/articles/jails-not-containers-freebsd-isolation-done-right/
#freebsd #bsd #freebsdjails #containers
Einen kleinen Linux-Container ohne Docker bauen 2026
Ein praktischer 2026 Walkthrough zum Bau eines kleinen isolierten Linux-Containers mit overlayFS, cgroups, namespaces, pivot_root und Kernel-Primitiven statt Docker.
https://www.alekseialeinikov.com/de/blog/topics/devops/kleinen-linux-container-ohne-docker-bauen-2026
#Containers #Linux #Docker
If you want to try @rolle@mementomori.social`s #MastodonBirdUI theme along with the "for you" feed algorithm, here is a guide how to run it locally in containers. The setup is suitable for testing and developing. Have fun!
Of course you can also use other version images if you just want to try out podman.
https://help.mementomori.social/try-birdui-containers/podman
#podman #mastodon #containers
📦 vilaca/awesome-k8s-tools
List of container/k8s tools.
A curated list of 500+ open source Kubernetes and container tools updated daily with rankings by GitHub stars
⭐ Stars: 1058
📅 Last Update: Jul 03, 2026
https://github.com/vilaca/awesome-k8s-tools
#selfhosted #homelab #selfhost #selfhosting #opensource #kubernetes #containers
Apple’s Swift-powered container tool for macOS hits 1.0 with persistent Linux machines, host integration, and broader workflow improvements.
https://linuxiac.com/apple-container-1-0-released-as-a-native-docker-alternative-for-macos/
#apple #macos #opensource #containers
🎛️🐳 WSL primește propriul runtime nativ pentru containere Linux, cu comenzi similare cu Docker 🚀🪟
Windows Subsystem for Linux (WSL) primește o actualizare majoră care promite să schimbe radical modul în care dezvoltatorii gestionează containerele pe Windows. Microsoft introduce un runtime nativ de containere integrat direct în WSL, echipat cu un utilitar în linie de comandă care imită aproape perfect sintaxa și comportamentul Docker.
Această mișcare transformă WSL dintr-un simplu mediu de rulare Linux într-o platformă de containerizare de sine stătătoare, capabilă să concureze direct cu soluțiile tradiționale.
Iată principalele noutăți și avantaje ale acestui nou runtime nativ:
🔹 Adio Docker Desktop sau Podman:
Până acum, pentru a rula containere în siguranță pe Windows, utilizatorii depindeau de aplicații desktop complexe precum Docker Desktop (care implică costuri de licențiere în mediile enterprise) sau de alternative precum Podman. Noul runtime este încorporat direct în arhitectura WSL, eliminând complet nevoia de unelte software terțe.
🔹 Sintaxă familiară și comenzi „Docker-like”:
Dezvoltatorii nu vor fi nevoiți să învețe un set nou de instrucțiuni. CLI-ul integrat folosește aceleași concepte și comenzi fundamentale cu care comunitatea este deja obișnuită (cum ar fi run, build, ps, images sau stop), făcând tranziția complet invizibilă pentru scripturile și fluxurile de lucru existente.
🔹 Performanță brută și pornire instantanee:
Fiind o soluție nativă care comunică direct cu micro-kernelul Linux din WSL, noul runtime elimină în totalitate overhead-ul (consumul suplimentar de resurse) generat de straturile de traducere ale aplicațiilor mari. Containerele pornesc în fracțiuni de secundă și au o amprentă de memorie RAM extrem de redusă.
🔹 Viteză masivă pentru volumele de date (I/O):
Una dintre cele mai mari probleme istorice ale dezvoltatorilor pe Windows a fost viteza lentă de citire/scriere atunci când mapau directoare din Windows în containere Linux. Prin integrarea directă în WSL, accesul la sistemul de fișiere devine unificat și mult mai rapid, optimizând rularea aplicațiilor care procesează volume mari de date (baze de date, medii de build).
Această strategie din partea Microsoft simplifică enorm viața programatorilor, oferind o alternativă gratuită, extrem de rapidă și „out-of-the-box” pentru oricine folosește deja Windows ca platformă principală de dezvoltare hardware și software.
#WSL #WindowsSubsystemForLinux #Docker #Containers #Linux #Microsoft #Developers #CloudNative #TechNews
#Microsoft Announces Public Preview For #Linux #Containers On #WSL
Microsoft shipped the first public preview of #WSLContainers "#WSLC" as their latest extension of the Windows Subsystem for Linux on #Windows11.
The WSLC preview brings all the capabilities for container lifecycle management, various networking options, GPU support is working from day one, SDK integration for C++ and C#/WinRT, and other tooling and capabilities.
https://www.phoronix.com/news/Microsoft-Preview-WSL-WSLC
G.
Cleaning Day.
Painting - Gouache On Paper.
Cleaning Day is a gouache painting showing different containers used for cleaning, a red bucket with a white cloth, plastic bottles and containers in blue, yellow, semitransparent, showing cleaning liquids inside.
[ Prints : https://james-mccormack.pixels.com/featured/cleaning-day-james-mccormack.html?utm_source=mastodonIE&utm_medium=social ]
#cleaningday #bottle #bucket #cleaning #bottles #containers #tiles #cloth
Docker Engine is safe against CVE-2026-31431 now.
Patch ASAP:
https://github.com/moby/moby/releases/tag/docker-v29.4.2
#docker #containers #linux #copyfail
New blog post: Speeding Up Forgejo CI with a Custom OCI Image
My blog's pipeline spent more time installing dependencies than actually building the site. Two commits and one Containerfile later, that step is gone entirely.
Bonus: Forgejo ships with a built-in OCI container registry, so the whole thing is self-contained on a single instance. No Docker Hub, no external registry.
https://blog.hofstede.it/speeding-up-forgejo-ci-with-a-custom-oci-image/
#Forgejo #CICD #Containers #DevOps #SelfHosting #OCI #linux
Curso Desenvolvimento Ágil: DevOps Docker Gratuito da Samsung Ocean com Certificado
https://guiadeti.com.br/curso-desenvolvimento-agil-devops-docker-gratuito/#backend #cloudcomputing #containers #desenvolvimentoweb #devops #docker #engenhariadesoftware #samsungoceanhttps://guiadeti.com.br/curso-desenvolvimento-agil-devops-docker-gratuito/?fsp_sid=1258
Podman 5.8
just dropped and it's quietly setting the stage for 6.0.
The highlights:
- Quadlet multi-file install (bundle your whole stack in one file, finally)
- Automatic BoltDB -> SQLite migration
- AppArmor support in Quadlet unit files
- podman exec --no-session for faster exec calls
If you're running Quadlet-based deployments, this one's worth your attention.
Curso Gerenciar o Kubernetes no Google Cloud: aprenda GKE na prática em 30 minutos
https://guiadeti.com.br/gerenciar-kubernetes-google-cloud-gke/#cloudcomputing #containers #devops #gke #googlecloud #infraestrutura #kuberneteshttps://guiadeti.com.br/gerenciar-kubernetes-google-cloud-gke/?fsp_sid=737


