Archives
All the articles I've archived.
Security Thursdays by yisusvii — 2026-09-04
Security Thursdays 2026-09-04 — research window Aug 28–Sep 3: SeaweedFS unauth IAM, Orval import-time RCE, pnpm install path escapes, NLTK incomplete fixes, fast-uri SSRF, OpenChoreo gateway exposure, and OSV-Scanner.
DevOps & SRE Weekly Digest — 2026-09-02
Weekly DevOps and SRE digest, Aug 26 – Sep 2 2026 — Kubernetes 1.37 GA, Terraform 1.16.0 GA, Grafana 13.2.1 security fixes (CVE-2026-12704, CVE-2026-14199), Flux v2.9.5, OTel Collector v0.160.0.
OpenMAIC: Turning Documents into Multi-Agent AI Classrooms
OpenMAIC tops GitHub trending today — what this open-source multi-agent classroom generator does, how it's built, how to self-host it, and what to check before deploying it.
Security Thursdays by yisusvii — 2026-08-27
Security Thursdays 2026-08-27 — research window Aug 20–26: Apache Tomcat auth/constraint CVEs, Chrome 152 sandbox escapes, pantheon-agents PyPI malware, Camel GHSA wave, asyncssh SCP fix, and gosec v2.29.0.
Hermes Agent vs OpenClaw in 2026: Which AI Agent Wins?
A 2026 comparison of Hermes Agent (Nous Research) and OpenClaw — architecture, channels, memory, skills, security, cost, and which scenarios each wins.
Passive Income Projects and Ideas for the AI Automation Era
Creative project and product ideas for semi-passive income with AI agents, automation pipelines, and DevOps tooling — plus an honest 'passive' disclaimer.
OpenAI Codex CLI: Terminal-Native Coding Agent
OpenAI's Codex CLI tops GitHub trending — what the project does, how it's built, how to install it, and what to check before using it on real codebases.
DevOps & SRE Weekly Digest — 2026-08-19
Weekly DevOps and SRE digest, Aug 12–19 2026 — OpenTofu security patches, Terraform CVE-2026-14978, Grafana 13.2.0, Prometheus 3.14.0, OTel Collector v0.159.0.
MoneyPrinterTurbo: All-in-One AI Short Video Generator
MoneyPrinterTurbo tops GitHub trending — what the project does, how it's built, how to install it, and what to check before running it in production.
Semantica: The Open-Source Palantir for AI Agents
Semantica topped GitHub trending this week — what the project is, why it exists, how to install it, and how to verify its security before adopting.
Debugging Production with Cloud CLIs and AI Agents
Combine az, aws, gcloud, and gh with coding agents like Codex or Claude Code to investigate production incidents faster — without granting write access.
AI Backends: Cosmo Federation & Apollo Subgraphs on EKS
How AI features reshape backend architecture — a WunderGraph Cosmo federated router, Apollo Server 4 subgraphs on EKS, DynamoDB, and OpenSearch.
FinOps for Centralized AWS Bedrock AI Cost Allocation
A practical FinOps architecture for centralized Amazon Bedrock — track, allocate, and govern AI costs across products, teams, and AWS accounts.
AWS AI Technologies Worth Adopting: Cost & Performance
A practical guide to the AWS AI technologies teams should prioritize in 2026 based on cost, latency, scalability, governance, and production performance.
Top GitHub Repos for Agentic AI and Extraction, Part 2
A mid-2026 follow-up to our February ranking of agentic AI and document extraction repos — what changed, what consolidated, and what's newly trending.
Caveman: Does Talking Like a Neanderthal Cut Your AI Bill?
A data-driven benchmark of JuliusBrussee/caveman — the token-compression skill for AI coding agents. Real token savings measured with tiktoken on Copilot.
Senior Android Developer in 2026: Blueprint to Get Hired
What senior Android engineering looks like in 2026 — technical depth, system design, AI literacy, and the soft skills that turn interviews into offers.
Enterprise AI Wars 2026: Bedrock vs Foundry vs Vertex AI
A technical enterprise comparison of AWS Bedrock, Azure AI Foundry, and Google Vertex AI in 2026 — agents, RAG, governance, and MLOps.
Cost-Effective Azure Kubernetes Security Stack (2026)
Build a cost-effective security platform on AKS with ACR and GitHub Actions CI/CD — Trivy, Falco, Checkov, Kubescape, Grafana, and Dependabot.
Manage Python Versions with pyenv and venv (All Platforms)
Manage multiple Python versions — including Python 3.15 — on Linux, macOS, and Windows with pyenv and virtual environments (venv).
The Ultimate Guide to Playwright Website Testing
Modern Playwright testing — latest CLI workflows, GitHub Actions automation, the Playwright MCP server, and enterprise auth with Entra ID and Okta.
AI Meets SRE in 2026: Autonomous Ops, Tools & Learning
The biggest AI and SRE developments of 2026 — autonomous on-call agents, evolved observability stacks, must-follow GitHub repos, and top courses.
Kubernetes Toolset: The Essential Ecosystem Explained
A breakdown of the Kubernetes ecosystem — container orchestration, GitOps, ML pipelines, and LLM inference across 21 essential tool integrations.
SRE in 2026: How Reliability Engineering Has Evolved
How SRE evolved since Google's 2016 book — Kubernetes complexity, unified observability, AIOps, platform engineering, and autonomous operations.
The Origins of Site Reliability Engineering at Google
How Site Reliability Engineering was born at Google — SLIs/SLOs/SLAs, error budgets, toil, incident management, and why SRE became an industry standard.
New Trends on Auth Security (2026)
The 2026 authentication landscape — passkeys (WebAuthn), M2M auth, policy engines like OPA and Cerbos, identity-aware proxies, and AI-driven risk auth.
What is the New DevOps Agent in AWS?
What the AWS DevOps agent is, how it works with Lambda, EventBridge, Bedrock, and Terraform, and why it marks the next evolution of autonomous cloud ops.
Python, TensorFlow & PyTorch: Enterprise AI Stack Guide
Build a production AI stack with Python, TensorFlow, and PyTorch — installation, GPU setup, distributed training, model serving, and security practices.
MLflow vs Kubeflow: Enterprise MLOps Architecture Guide
A production-grade MLflow vs Kubeflow comparison — architecture, Ubuntu installation, Kubernetes deployment patterns, security, and top GitHub projects.
Installing NVIDIA NemoClaw Securely: Guide & Best Practices
A production-grade guide to NVIDIA NemoClaw — run OpenClaw, Hermes, and LangChain agents in OpenShell sandboxes. Architecture, install, network policies.
Installing OpenClaw Securely on Ubuntu (Step-by-Step Guide)
A security-first guide to installing OpenClaw on Ubuntu — verified install methods, sandboxing, firewall rules, API key management, and Docker isolation.
Java JDK 26: New Features & Enterprise Migration Guide
JDK 26's language refinements and API upgrades — every new feature with code examples, enterprise impact analysis, and a step-by-step migration checklist.
TensorFlow in 2026: Key Applications and Alternatives
Where TensorFlow is used in 2026, which industries rely on it most, and the modern alternatives challenging its dominance in the ML ecosystem.
Kamal: Deploy Web Apps Anywhere with Zero Downtime
A comprehensive guide to Kamal — 37signals' tool for deploying containerized apps to bare-metal servers with zero downtime. Setup and pricing.
Dokku: The Smallest PaaS Implementation You'll Ever See
A complete guide to Dokku — the original open-source Heroku alternative on Docker. Covers git-push deploys, plugins, and cost analysis.
CapRover: Free, Self-Hosted PaaS with a Proven Record
An in-depth guide to CapRover — the battle-tested open-source PaaS for your own servers. Covers installation, adoption, use cases, and pricing.
Dokploy: The Lightweight Self-Hosted PaaS Built on Docker
A detailed guide to Dokploy — the minimal open-source PaaS for Docker apps. Covers installation, adoption, use cases, and cost analysis.
Coolify: Open-Source, Self-Hosted Heroku Alternative
A complete guide to Coolify — the self-hosted PaaS for deploying apps, databases, and services on your own servers. Setup, adoption, and pricing.
Qovery: Kubernetes Deployment on Your Own Cloud Account
A comprehensive guide to Qovery — Heroku-level simplicity on your own AWS, GCP, or Azure account. Covers setup, adoption, use cases, and pricing.
Northflank: The Full-Stack Cloud Platform for Modern Teams
An in-depth guide to Northflank — Heroku's ease with Kubernetes power. Covers setup, adoption, use cases, and cost analysis for startups.
Fly.io: Deploy Apps Close to Your Users Worldwide
A deep dive into Fly.io — run apps on micro-VMs across 30+ regions worldwide. Covers installation, adoption, multi-region architecture, and pricing.
Render: The Modern Cloud Platform for Developers
A comprehensive guide to Render — the managed cloud platform built to replace Heroku. Covers setup, adoption, real-world architectures, and pricing.
Railway: Deploy Apps Without Managing Infrastructure
A complete guide to Railway — deploy apps, databases, and cron jobs from a Git push. Covers installation, adoption, real-world examples, and pricing.
Agent Skills for SRE/DevOps: Claude Code, Codex & Cloud
Updated:How the open Agent Skills standard works across Claude Code, Codex, APIs, plugins, and CI — plus a hands-on Azure Terraform compliance skill example.
Top Tech Publications & Developer Resources for 2026
The best technical publications, developer communities, and engineering blogs to follow in 2026 — InfoQ and DZone-level depth, strong editorial standards.
Top GitHub Repos for Agentic AI and Document Extraction
Updated:The most popular open-source GitHub repos for agentic AI frameworks and document extraction in 2026, ranked by stars and forks, with analysis of each.
Why Postgres is the Only Database You Need for AI
Exploring the rise of pgvector, the power of relational context in RAG, and why Postgres is becoming the gold standard for AI-driven applications.
Document Extraction and Chatbot Agents in 2026
Updated:A current guide to document extraction and chatbot agents in 2026 — hybrid parsing, agentic retrieval, evaluation, security, and build-vs-buy decisions.
Agentic AI Architecture Patterns for Document Extraction
Architecture patterns for agentic document extraction — orchestration, guardrails, human-in-the-loop review, and AWS-based reference implementations.
Advanced Prompt Engineering Techniques in Spring AI
Advanced prompt engineering in Spring AI — system prompts, few-shot templates, structured output, and techniques for reliable LLM responses in Java.
Deploying Spring AI Applications to Kubernetes
Deploy Spring AI applications to Kubernetes — containerization, secrets for API keys, autoscaling, health probes, and production-ready YAML manifests.
Implementing RAG with Spring AI: A Practical Guide
Add retrieval-augmented generation to Spring AI apps — embeddings, vector stores, chunking strategies, and grounded LLM answers over your own data.
Building Custom MCP Servers for Legacy Systems
Build custom MCP servers that expose legacy systems to AI agents — wrapping decades of business logic in Java and Spring Boot behind a modern protocol.
Spring AI + Model Context Protocol: Context-Aware AI Apps
Build context-aware enterprise Java apps with Spring AI and the Model Context Protocol (MCP) — connect LLMs to tools, data sources, and external systems.
Azure Kubernetes: Automated GitOps Pipelines with ArgoCD
Move from manual kubectl deploys to automated GitOps on AKS with ArgoCD — app-of-apps setup, sync policies, rollbacks, and CI pipeline integration.
Kubernetes Monitoring: Grafana, Prometheus, Loki & Alloy
Set up Kubernetes observability with Grafana Alloy, Prometheus metrics, and Loki logs via Helm — dashboards, log queries, and alerting for production clusters.
Welcome to My Blog: Cloud, DevOps, and AI Engineering
Kickoff post for yisusvii Blog — what to expect: hands-on guides on cloud computing, DevOps, Kubernetes, and AI engineering from real production work.