DevOps Bulletin

DevOps Bulletin

Digest #181: GitHub Actions Bypass, K8s Databases, Azure Token Flaw, Postgres Partitioning and Running Linux in Docker

GitHub Actions fork exploit, Kubernetes operators solving database management, Grab’s auth system for 180M users, Azure Entra ID token flaw, and Tinder’s API gateway at 1B swipes.

Mohamed Labouardy's avatar
Mohamed Labouardy
Sep 27, 2025
∙ Paid

Welcome to this week’s edition of the DevOps Bulletin!

GitHub Actions just got called out for a fork-based bypass, letting imposter commits sneak past reviews. Kubernetes, long mocked for struggling with stateful workloads, now has operators that make managing Postgres clusters as easy as deployments. Grab explained how it built an auth system for 180M u…

Keep reading with a 7-day free trial

Subscribe to DevOps Bulletin to keep reading this post and get 7 days of free access to the full post archives.

Already a paid subscriber? Sign in
© 2025 Mohamed Labouardy
Privacy ∙ Terms ∙ Collection notice
Start your SubstackGet the app
Substack is the home for great culture