Filter by source
All sources GoCardless 6188 PubNub: 2462 Vercel 1539 Ariya Hidayat 849 Serverless 848 Jake Trent 812 Drew DeVault 783 Nic Raboy 733 Neon 479 Supabase 424 Soundcloud 409 SitePoint 406 Johannes Brodwall 378 Databricks 366 Jeremy Kun 323 PostHog 286 Real Python 286 Graham King 257 Carlos Becker 251 MapTiler 250 Scott Johnson 250 Lea Verou 242 Laravel 232 Matt Aimonetti 231 Andrew Bancroft 214 Stanko Tadić 186 Twilio 181 Atomic Object 176 Cloudflare 170 Nvidia 168 Trivago 158 Freek Van der Herten 155 Stack Overflow 145 The Daily WTF 136 Discord 134 WyeWorks 134 Dan Luu 133 Raymond Chen 133 Una Kravets 132 Swizec Teller 129 GitHub Old 128 Reginald Braithwaite 121 Radek Pazdera 118 Warp 114 Antirez 110 Codrops 110 Jane Street 105 Android 104 Cerner 103 AdRoll 102 Auth0 102 Jake Wharton 101 Changelog 100 Nelson Elhage 98 OCTO Technology 96 Ilija Eftimov 94 Marek Majkowski 94 Thoughtbot 89 AWS 88 dbt Labs 88 Finn.no 86 Nick Desaulniers 86 Hostinger 84 Hayden James 81 Luciano Mammino 79 Martin Fowler 78 Wingify 78 Marcelo Rinesi 77 Monica Dinculescu 77 Matt Warren 76 Docker 75 Drivy 75 Jan Lelis 75 Jessie Frazelle 75 Paweł Chudzik 73 Toptal 73 .NET 69 Nordic APIs 69 Mykhailo Kozik 68 Lerner Consulting 67 T.J. Maher 67 Timescale 66 Axel Rauschmayer 64 Mozilla Release 64 Ebay 62 Kotlin 62 Tania Rascia 60 0xADADA 59 Khan Academy 59 Jake Yesbeck 58 Confluent 57 Evil Martians 54 jOOQ 53 Tailscale 51 Sam Saffron 50 Sentry 49 Monstermuffin 48 RoseHosting 48 Huon Wilson 45 HackerEarth 44 Philip Walton 44 Dennis Felsing 43 SurveyMonkey 43 Fly.io 42 Robin Ward 41 Philipp Oppermann 40 Gleb Bahmutov 39 Facebook AI Research 38 The Pragmatic Engineer 38 Dean Hume 37 Rust 36 Josh Sherman 35 Alex Russell 34 Stripe 33 Joe Nelson 32 Tumblr 32 8th Light 31 Addy Osmani 31 Grab 31 Armin Ronacher 30 Domenico Luciani 30 Lazarus Lazaridis 30 Palantir 30 Pamela Fox 30 Airbnb 29 Brandwatch 29 Evan Miller 29 IPFS 29 Ruslan Spivak 28 Vanilla Java 28 Bartlomiej Filipek 27 Daniel Doubrovkine (dB.) 27 Jonathan Snook 27 Petr Mitrichev 27 Pinterest 27 Red 27 Mozilla Hacks 26 Bad Concurrency 25 CSC - IT Center For Science - Cloud Team 25 Dereuromark 25 Evan Hahn 25 GameChanger 25 Guido van Rossum 25 Jay Fields 25 Jeff Preshing 25 Julia Evans 25 Life Plus Linux 25 Mark Seaborn 25 Okta 25 Oona Räisänen 25 Srinivas Tamada 25 Stephen Colebourne 25 Steve Yegge 25 PagerDuty 24 Squarespace 24 Kogan.com 23 Criteo 22 GitHub 22 Babbel 21 Elegant Code 21 Crystal 20 Dave Cheney 20 David Walsh 20 Eli Bendersky 20 Guardian 20 HomeAway 20 Justin Weiss 20 Michael Herman 20 Miguel Quinones 20 Mike Ash 20 Ole Begemann 20 Paul Irish 20 Robert C. Martin 20 Stefan Parker 20 Target 20 Yahoo 20 Dropbox 19 Gusto 19 Netflix 19 Instacart 18 Nikola Brežnjak 18 The Coded Self 18 Aaron Patterson 17 Jeff Atwood 17 Thumbtack 17 Erlang Solutions 16 Stack Abuse 16 Wealthfront 16 Arkency 15 Bigcommerce 15 Edward Faulkner 15 Filippo Valsorda 15 High Scalability 15 Hypriot 15 Jacopo Tarantino 15 Jerry Gamblin 15 John Wittenauer 15 Lambda the Ultimate 15 Localytics 15 Matthew Green 15 Medium 15 Microsoft Python 15 Postmark 15 RocksDB 15 Slack 15 Spotify 15 Yegor Bugayenko 15 Advanced Web Machinery 14 Helpshift 14 Housing.com 14 HubSpot 14 OLX 14 REA Group 14 Robin Wilson 14 Zach Holman 14 Amit Merchant 13 Blender 13 Chris Wellons 13 Grofers 13 Indeed 13 Nextdoor 13 Rob Allen 13 Scott Hanselman 13 Henrik Warne 12 Jon Skeet 12 Mary Rose Cook 12 Nicolas Liochon 12 Novoda 12 Steve Bellovin 12 Abu Ashraf Masnun 11 Badoo 11 Bazaarvoice 11 Blundell's Android Tutorials 11 Canva 11 Feedzai 11 Haptik 11 Hashrocket 11 JobTeaser 11 Kevin Burke 11 Lyft 11 Marco Pivetta 11 Michael Crump 11 Paypal 11 RisingStack 11 Small Improvements 11 VNGRS 11 Vinted 11 Zendesk 11 Alan Storm 10 Appnexus 10 Artsy 10 BBC 10 Benchling 10 Bill the Lizard 10 Bohops 10 Bootstrap.com 10 Brendan Eich 10 Brendan Gregg 10 Brujo Benavides 10 Clever 10 Curalate 10 Daily JS 10 Daily Tech Video 10 Daniel Schmidt 10 Deliveroo 10 Dot Dev (.dev) 10 Dragan Djuric 10 Eddie Smith 10 Eric Elliot 10 Eric Lippert 10 Erik Runyon 10 Evan Jones 10 Federico Cargnelutti 10 Findmypast 10 Flickr 10 Freeletics 10 GoSquared 10 Groupon 10 Harry's 10 Henrik Lau Eriksson 10 High Scalability 10 Hootsuite 10 Idontgetoutmuch's Weblog 10 Itamar Turner-Trauring 10 Jamis Buck 10 Jesal Gadhia 10 Joel Spolsky 10 Juan Treminio 10 Junior Grossi 10 Kirill Shevchenko 10 Larry Land 10 Matt Cutts 10 Matt Might 10 Mesosphere 10 Miro Cupak 10 Miro 10 NSHipster 10 New York Times 10 Nick Craver 10 Ofer Zelig 10 OpenDNS 10 Panorama Education 10 Pat Shaughnessy 10 Piotr Pasich 10 Pony Foo 10 Postman 10 Ramon Fried 10 ReactJS News 10 Regular Geek 10 Remind 10 RetailMeNot 10 Riot Games 10 Schakko 10 Skyscanner 10 Stitch Fix 10 Strava 10 Teamwork 10 Tikhon Jelvis 10 Tinder 10 Transferwise 10 TrueCar 10 Undocumented Matlab 10 Universe 10 UpGrad 10 VTS 10 Vlad Mihalcea 10 Wilfred Hughes 10 Wojtek Gawroński 10 XING 10 Yammer 10 Yifan Lu 10 Zolmeister 10 eFounders 10 Josh Haberman 9 Nate Berkopec 9 Wemake.services 9 Mike Fogus 8 Ian Hummel 7 Ilya Grigorik 6 K. Harrison 6 Sensible 6 James Long 5 Thomas Young 5 Edgar Aroutiounian 4 Avenue Code 3 Bandcamp 3 James Hague 3 Raymond Hettinger 3 Algolia Anders Aarvik Ariejan de Vroom Asana Atlassian Bjørn Johansen Blake Erickson Bryan Cantrill Capgemini Chen Hui Jing Chien Tran Cloudera Cloudsmith CockroachDB Code with style! CodeName One Codelitt Codeship Commercetools Credit Karma Crowdfire Deezer DoorDash Dragan Gaic Engine Yard Entelo Envato Envoy Eventbrite Federico Tomassetti Figma GIPHY Galois Go GoDaddy Grafana Guilherme Rodrigues Hashnode Heroku Honeybadger Honeycomb IMVU Ievgen Kuzminov Instagram Jobandtalent John Resig Jonathan Dekhtiar Just Eat Kinvolk Kolosek Kyle Kingsbury LINE Linear LiveRamp Liveblocks Made Tech Marc Plano-Lesay Microsoft Edge Moove-it Mozilla Automation Team NPR Apps Nicolai Parlog (CodeFX) Oursky Oxide Computer Paul Lewis Peter Norvig Peter Steinberger Peteris Krumins PicCollage PlanetScale Prezi PullReview Rachel Kroll Radim Řehůřek Ray Wenderlich React Native Render Retool Schibsted Tech Polska Sharethis Shopify Sketch Sky Betting & Gaming Soshace Speedledger Sqreen Square Stackshare Swift Swiggy Takipi Temporal Turso Vena Solutions VersionEye Wayfair William Kennedy Zed Zendesk(old) theScore
75 articles Visit blog →

31. Docker Content Trust: Retirement and Migration Guidance (www.docker.com)

TLDR: Docker Content Trust (DCT) and the Notary v1 service at notary.docker.io are being fully retired (first announced in July of 2025). This blog explains what is changing, who is affected, and how to move to modern alternatives.  Ten years ago, Docker Content Trust (DCT) gave the container ecosys...

34. 5 Software Supply Chain Security Best Practices for Development Teams (www.docker.com)

Understanding software supply chain security is one thing. Putting it into practice across a real pipeline, with real deadlines and real constraints, is another. Most organizations recognize that their software supply chain is a growing attack surface, but translating that awareness into concrete, r...

35. What is AI Governance? Frameworks, Principles, and Best Practices (www.docker.com)

AI agents are moving fast. According to our State of Agentic AI report, 60% of organizations already have AI agents in production, yet 40% cite security and compliance as the number-one barrier to scaling them further. And that gap between adoption and oversight is exactly where AI governance lives....

36. Hardened Images Explained: Fewer CVEs, Smaller Attack Surface (www.docker.com)

When security teams scan their container environments for the first time, they often discover hundreds of known vulnerabilities, and almost none of them trace back to application code. The overwhelming majority come from packages that shipped with the base image: shells, compilers, debug utilities, ...

37. What is Software Supply Chain Security? (www.docker.com)

Software supply chain attacks have accelerated faster than most security teams anticipated. Sonatype's 2026 State of the Software Supply Chain report identified more than 454,000 new malicious packages published to open source repositories in 2025, bringing the cumulative total to over 1.2 million s...

38. How to Secure AI Agents: A Practical Overview for Development Teams (www.docker.com)

In our State of Agentic AI report, 45% of organizations said they struggle to ensure the tools their agents use are secure and enterprise-ready. That number reflects a broader reality: AI agents are moving into production faster than the security practices around them are maturing. The challenge is ...

39. What is Sandbox Security? (www.docker.com)

If you're already familiar with sandboxing as an isolation technique, sandbox security is the next layer: the policies, controls, and enforcement mechanisms that make sure those isolation boundaries actually hold under real-world pressure. According to our State of Agentic AI report, 40% of responde...

40. Coding Agent Horror Stories: The rm -rf ~/ Incident (www.docker.com)

This is Part 2 of our AI Coding Agent Horror Stories series, an in-depth look at real-world security incidents exposing the vulnerabilities in AI coding agents, and how Docker Sandboxes deliver workspace-scoped isolation that contains the worst failures at the execution layer. In part 1 of this seri...

41. Mitigating CVE-2026-31431 (“Copy Fail”) in Docker Engine (www.docker.com)

CVE-2026-31431 is a Linux kernel vulnerability that was recently disclosed. This CVE does not compromise Docker infrastructure. That said, Docker Engine's default profiles prior to v29.4.3 allowed containers to create AF_ALG sockets, which is the syscall surface the exploit uses. You are not exposed...

43. Meet Gordon: Docker’s AI Agent For Your Entire Container Workflow (www.docker.com)

Gordon understands your environment, proposes fixes, and takes action across your entire Docker workflow. Now generally available. Image 1: Gordon in Docker Desktop Why Gordon Exists  Developers are more productive than ever. AI coding assistants are writing code, merging PRs and cutting review cycl...

45. Custom MCP Catalogs and Profiles: Advancing Enterprise MCP Adoption (www.docker.com)

We’re excited to announce the general availability of Custom Catalogs and Profiles for managing Model Context Protocol (MCP) servers. These two complementary capabilities fundamentally change how teams package, distribute, and manage AI tooling.  Custom MCP Catalogs let organizations curate and dist...

46. NIST Narrows the NVD: What Container Security Programs Should Reassess (www.docker.com)

On April 15, NIST announced a prioritized enrichment model for the National Vulnerability Database. Most CVEs will still be published, but fewer will receive the CVSS scores, CPE mappings, and CWE classifications that container scanners and compliance programs have historically relied on. The change...

47. Docker AI Governance: Unlock Agent Autonomy, Safely (www.docker.com)

Introducing Docker AI Governance: centralized control over how agents execute, what they can reach on the network, which credentials they can use, and which MCP tools they can call, so every developer in your company can run AI agents safely, wherever they work. Your laptop is the new prod Agents ar...

48. Comparing Different Approaches to Sandboxing (www.docker.com)

Whether you are a software engineer, a product manager, or a designer, this quote should fundamentally change how we approach our daily routine. We are no longer just building interfaces; we are creating environments where agents can operate autonomously with minimal human interaction. What could be...

49. Generate Images Locally with Docker Model Runner and Open WebUI (www.docker.com)

We've all been there: you need to generate a few images for a project, you fire up an AI image service, and suddenly you're wondering what happens to your prompts, how many credits you have left, or why that "safe content" filter rejected your perfectly reasonable request for a dragon wearing a busi...

50. Precision Container Security with Docker and Black Duck (www.docker.com)

The complexity of modern containerized applications often leaves developers drowning in a sea of "noise"—vulnerabilities that exist in the file system but pose zero actual risk to the application. The integration between Black Duck and Docker Hardened Images (DHI) provides a definitive answer to thi...

53. Trivy, KICS, and the shape of supply chain attacks so far in 2026 (www.docker.com)

Catching the KICS push: what happened, and the case for open, fast collaboration In the past few weeks we've worked through two supply chain compromises on Docker Hub with a similar shape: first Trivy, now Checkmarx KICS. In both cases, stolen publisher credentials were used to push malicious images...

54. Why MicroVMs: The Architecture Behind Docker Sandboxes (www.docker.com)

Last week, we launched Docker Sandboxes with a bold goal: to deliver the strongest agent isolation in the market. This post unpacks that claim, how microVMs enable it, and some of the architectural choices we made in this approach. The Problem With Every Other Approach Every sandboxing model asks yo...

55. Why We Chose the Harder Path: Docker Hardened Images, One Year Later (www.docker.com)

We're coming up on a year since launching Docker Hardened Images (DHI) this May, and crossing a milestone earlier this month made me stop and reflect on what we've actually been building. Earlier this month, we crossed over 500k daily pulls of DHIs, and over 25k continuously patched OS level artifac...

56. How to Analyze Hugging Face for Arm64 Readiness (www.docker.com)

This post is a collaboration between Docker and Arm, demonstrating how Docker MCP Toolkit and the Arm MCP Server work together to scan Hugging Face Spaces for Arm64 Readiness. In our previous post, we walked through migrating a legacy C++ application with AVX2 intrinsics to Arm64 using Docker MCP To...

59. Gemma 4 is Here: Now Available on Docker Hub (www.docker.com)

Docker Hub is quickly becoming the home for AI models, serving millions of developers and bringing together a curated lineup that spans lightweight edge models to high-performance LLMs, all packaged as OCI artifacts. Today, we’re excited to welcome Gemma 4, the latest generation of lightweight, stat...
Type to search HN and engineering blog articles
Press Escape to close  |  to navigate  |  Enter to open