Spotlight

How a Supply Chain Attack Made Me Sign Every Container Image I Ship

Samarth

This article shows how to sign every container image using Cosign keyless signing in GitHub Actions and enforce signatures at pod admission with Kyverno, using the chalk/debug npm attack as the real-world motivation.

More articles →

Tools and utilities

  • KubeSolo – Ultra-lightweight Single-Node Kubernetes

    KubeSolo is a single-node Kubernetes distribution optimized for edge, IoT and embedded devices.

  • K8sQuest

    K8sQuest is a local Kubernetes learning game with 50 progressive challenges where you fix broken clusters using kubectl with real-time monitoring, progressive hints, and post-mission debriefs running on kind.

  • Cluster API

    Cluster API is a Kubernetes subproject that provides declarative APIs and tooling to provision, upgrade, and operate Kubernetes clusters across infrastructure providers using Kubernetes-style automation patterns.

  • Kappal

    Kappal runs your existing docker-compose.yaml on Kubernetes using familiar commands like up, down, logs, exec.

  • Kubie – isolated per-shell Kubernetes context and namespace manager

    Kubie is a tool that provides an alternative to kubectx, kubens, and the k on prompt modification script, offering context switching, namespace switching, and prompt customization.

More projects →

Events starting soon

Discover more events onn Kube Events →

The Hidden Cost of Slow Autoscaling
The Hidden Cost of Slow Autoscaling

Forced platform migrations are usually treated as something to survive. At Scout24, a mandatory OS migration became an opportunity to rethink Kubernetes autoscaling, node provisioning, and infrastructure efficiency.

John Ford explains how Scout24 moved its EKS-based Infinity platform from a polling autoscaler and over-provisioned capacity to Karpenter and Bottlerocket. The result was faster node startup, a safer migration path, and about a 30% infrastructure reduction without major downtime.

In this interview:

  • Why two-minute node provisioning forced a 25% capacity buffer
  • How Karpenter made the Bottlerocket migration safer
  • What broke around EC2 metadata, AWS SDKs, and cgroups
  • How the new foundation enables Spot, ARM, and GPU workloads

Learn from production

More case studies →

Matching jobs

    • DevOps Engineer with MaintainX

    • Salary: $117K to $302.17K a year

    • Location: remote from

    • Tech stack: Kubernetes

    • Developer Advocate with MariaDB plc

    • Salary: $45K to $382.8K a year

    • Location: remote from

    • Tech stack: Kubernetes, SQL, Java, Python, Redis, Kafka, Datadog, Grafana, Prometheus, Splunk

    • Engineering Manager with MaintainX

    • Salary: $58.5K to $473K a year

    • Location: based in the office in San Francisco, CA, USA

    • Tech stack: Kubernetes

    • Software Engineer with Manychat

    • Salary: US$9 to US$533.5K a year

    • Location: based in the office (and remote from home) in Amsterdam, NL

    • Tech stack: Kubernetes, Docker, Python, SQL, Redis, PostgreSQL, Grafana, Prometheus

    • Support Engineer with MariaDB plc

    • Salary: $45K to $224.4K a year

    • Location: remote from

    • Tech stack: Kubernetes, Docker, Java, Redis, Cassandra, Kafka

Discover more Kubernetes jobs on Kube Careers →

Subscribe to Learn Kubernetes Weekly

Trusted by 77K engineers. Delivered 185 issues and counting.

or subscribe via

Build something

More tutorials →

Call for Papers closing soon

  1. 3

    days

    DevOpsDays Istanbul 2026

    The Call For Paper is open until 31 May 2026 at GMT-4. More info →
    • Location: Istanbul, TR

    • In-person conference organized by DevOps Turkey.

    • The conference starts on the 29 September 2026.

    • Apply here
  2. 3

    days

    DevOps Midwest 2026

    The Call For Paper is open until 31 May 2026 at GMT-4. More info →
    • Location: St. Louis, MO, USA

    • In-person conference organized by Sketch.

    • The conference starts on the 22 August 2026.

    • Apply here
  3. 4

    days

    KubeCon + CloudNativeCon North America 2026

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Los Angeles, CA, USA

    • In-person conference organized by Linux Foundation.

    • The conference starts on the 26 October 2026.

    • Apply here
  4. 4

    days

    Heapcon 2026

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Belgrade, RS

    • In-person conference organized by heapspace.

    • The conference starts on the 6 November 2026.

    • Apply here
  5. 4

    days

    Cloud Native Days Norway

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Bergen, NO

    • In-person conference organized by CND Norway.

    • The conference starts on the 27 October 2026.

    • Apply here
  6. 4

    days

    Devopsdays Istanbul

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Istanbul, TR

    • In-person conference organized by Devopsdays.

    • The conference starts on the 24 October 2026.

    • Apply here
  7. 4

    days

    Kubernetes Community Days Melbourne 2026

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Melbourne, AU

    • In-person conference organized by KCD Australia.

    • The conference starts on the 4 August 2026.

    • Apply here

Thanks to our sponsors who make Kube Today possible

Find out more about being a sponsor →

More articles

Even more articles →